---
sourceDocument: Store Version History Release Notes
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/store-release-notes

 Release :

    - store

ft:locale :

    - en-US

ft:publication_title :

    - Store Version History Release Notes

ft:clusterId :

    - rnst

bundleId :

    - rnst


---

# Security Incident Response integration with FireEye HX release notes

# Security Incident Response integration with FireEye HX release notes {#ariaid-title1}

Release version: Store  
Updated August 6, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Security Incident Response integration with FireEye HX release notes

The Security Incident Response integration with FireEye HX enables ServiceNow customers to enhance their security operations by seamlessly connecting endpoint threat detection and response capabilities from FireEye HX with the ServiceNow Security Incident Response (SIR) module.
This integration simplifies the investigation and remediation of security incidents by allowing analysts to perform endpoint-focused actions such as network containment, host profiling, and querying directly within ServiceNow without switching tools.
Show full answer Show less  

## Key Features

* **Endpoint Threat Management:** Inspect, analyze, and contain threats on endpoints using FireEye HX's advanced capabilities integrated into ServiceNow.
* **Network Containment:** Perform remediation actions on compromised endpoints swiftly within the SIR workspace.
* **Host Profiling and Querying:** Implement profiles to gather detailed host information and execute specific queries or actions on endpoints from ServiceNow.
* **Automation Enhancements:** Migration of workflows to Flow Designer flows improves automation and process efficiency for incident response.
* **Security and Compliance Improvements:** Upgraded dictionary-level fields to strict read-only to prevent unauthorized changes, enhanced access control with Query range ACLs, and inclusion of security fixes across multiple releases.
* **Integration Stability and Logging:** Improved parsing of endpoint data, enhanced logging for troubleshooting, and fixes related to token management and cloud instance connectivity.
* **Support for Analyst Workspace:** Integration supports the Analyst Workspace interface, improving usability for security analysts.
* **Table Maintenance:** Introduction of Table Cleaner rules for managing high impact and churn tables related to incident response data.

## Key Outcomes

* Security teams can respond faster and more effectively to endpoint threats by leveraging integrated FireEye HX capabilities within the ServiceNow platform.
* The integration reduces the need for context switching between tools, streamlining analyst workflows and improving incident remediation speed.
* Enhanced security controls and strict read-only enforcement protect critical configuration data from unauthorized modification.
* Improved automation and workflow management lead to greater operational efficiency in security incident handling.
* Regular updates and security fixes ensure the integration remains secure, reliable, and compliant with evolving standards.  
Version history for the Security Incident Response integration with FireEye HX on the ServiceNow Store.
Important:  
For details on system requirements and family compatibility, view the application listing on the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home) website.

## Version history

Version 1.1.2 - August 2026
:   Fixed: FireEyeHx MID scripts under iPKI/JWT auth by removing the unsupported config lookups.

Version 1.1.1 - June 2026
:   New: Introduced Query range ACL's in FireEye HX.

Version 1.1.0 - December 2025
:   New: Upgraded all dictionary-level read-only fields to Strict Read-Only to enhance security and prevent unauthorized changes.This update ensures the server consistently enforces read-only behaviour across all UIs, scripts, and
    integrations.

Version 1.0.14 - November 2024
:   New: Migration of Workflows to Flow Designer flows for Security Incident Response integration with FireEye Sighting Search, by enhancing the automation capabilities and process
    efficiency.{#store-secops-rn-sir-fireeye-hx__latest-store-secops-rn-sir-fireeye-hx}
{#store-secops-rn-sir-fireeye-hx__latest-store-secops-rn-sir-fireeye-hx}

Version 1.0.13 - March 2024

:   Fixed: Implemented parsing of fixed results from FireEye HX for "Get Network Statistics," "Get Running Services," "Get Running Processes," and "Get Logged On Users" capabilities. The data is now correctly associated
    with the Security Incident Response module.

Version 1.0.11 - August 2023
:   Fixed: Access Token action parsing script in the Keep-Alive Header of the cloud instance.

Version 1.0.10 - May 2023
:   New: Implement Table Cleaner rules for high impact/churn ServiceNow-owned tables from Security Incident Response for Security Incident Response integration with FireEye HX.

Version 1.0.8 - February 2023
:
    * Fixed:
      * Clean up of worknotes.
      * FireEye business rule was deleting any other tiles available for running additional endpoints capability.
      * Action Flatten Response giving null pointer exception.
      * Support for Analyst workspace.
      {#store-secops-rn-sir-fireeye-hx__ul_ybf_t2j_mxb}

Version 1.0.7 - November 2022
:
    * Changed: Utah Mandate: Update snc-app-parent version to 5.0.0.77
    * Fixed:
      * ServiceNow and FireEye Integration: When the Keep-Alive header is not present Get Token action fails for the FireEye cloud instance.
      * Improve the logging for FireEye HX Integration.
      {#store-secops-rn-sir-fireeye-hx__ul_h43_cxd_3vb}

Version 1.0.6 - May 2022
:   Fixed: This release includes security fixes.

Version 1.0.4 - December 2021
:   Fixed: This release includes security fixes.

Version 1.0.3 - October 2021
:   Fixed: Added additional password-related policies

Version 1.0.1 - August 2021
:
    * New:
      * With FireEye Endpoint Security (HX series), organizations can proactively inspect, analyze, and contain known and unknown threats on any endpoint.
      * The Gold Standard Security Incident Response integration with FireEye HX, makes it easier and efficient for Security Analysts to investigate and remediate security incidents in an instant without having to navigate between tools. You can use network containment to perform remediation actions on the endpoints, implement profiles to gather specific details about the host, and perform specific queries or actions on the endpoint.
      {#store-secops-rn-sir-fireeye-hx__ul_wf3_f43_mqb}


