List view in SIR Workspace
Summarize
Summary of List view in SIR Workspace
The List View in the SIR Workspace provides ServiceNow security analysts with organized access to key work items including Security Incidents, Response Tasks, Phishing Emails, Assessments, and Shift Handover Records. It features pre-applied filters and customizable views that enable analysts to quickly find, manage, and act on relevant records, enhancing operational efficiency in incident response workflows.
Show less
Key Features
- Security Incidents: Multiple filtered lists such as Assigned to Me, Assigned to Team, Unassigned, All Open, and All help analysts locate incidents efficiently. Analysts can configure columns, assign incidents to users, delete, create new incidents, apply quick filters, refresh the list, and export data in Excel, CSV, JSON, or PDF formats.
- Response Tasks: Similar to incidents, response tasks have filtered lists (Assigned to Me, Assigned to Team, Unassigned, All Open, All), column configuration, assignment capabilities, task creation, quick filters, refresh, and export options.
- Phishing Emails: Displays all phishing emails sorted by last update. Analysts can report phishing emails directly, delete emails, and export the list in various formats.
- Assessments: Lists pending and all assessments required for post-incident reviews, allowing analysts to complete necessary evaluations.
- Shift Handover Records: Allows viewing, creating, editing, copying, or deleting shift handover records. Records are filtered by team assignments or all records. Role-based access controls determine editing and viewing permissions.
- Personalization and Quick Filters: Analysts and managers can personalize list views and apply predefined quick filters to focus on high-priority work items without complex filtering.
- Bulk Actions: Capability to assign or close multiple security incidents simultaneously, facilitating efficient incident management especially for related or false positive incidents.
Practical Benefits for ServiceNow Customers
- Streamlines navigation and management of security incidents and response tasks through intuitive filtering and list customization.
- Enables rapid identification and prioritization of work items requiring immediate attention via quick filters.
- Supports collaboration by allowing analysts to assign work and share shift handover details securely.
- Facilitates reporting and tracking of phishing emails directly from the list view.
- Offers flexible export options to support reporting, audits, or integration with other tools.
- Improves operational continuity and handover between shifts with controlled access and editable shift handover records.
The list view consists of the security incidents, response tasks, phishing emails, and assessments.
The list view has pre applied filters such as Assigned to Me, Assigned to Team, Unassigned, All Open, All, and so on.
Using these list categories and filtered lists, analysts can quickly find the required Security Incidents and Response Tasks records that they need to work on.
To get to the list view, you need to click the list icon (). When you click a record in a list view, the record opens in a new tab.
List types
The following gives you an example view of the lists.
The list pane contains the following sections:
| List item | Description | Capability |
|---|---|---|
| Security Incidents | View the list of security incidents and navigate to the desired incident to start working on them. The following lists are available:
|
|
| Shift Handover Records | View the list of Shift Handover records. The following lists are available:
|
Shift Handover supports the following three roles:
|
| Response Tasks | View the list of response tasks and navigate to the desired response task to start working on them. The list view contains:
|
|
| Phishing Emails | View the list of all Phishing emails. The list view will be sorted based on the last update. |
|
| Assessments | View the list of assessments needed to perform post incident review.
|
Take assessments. |