Category: Security · View source ↗
Security
SOC Classification Tree
Classify a security ticket down the Incident, Request, and Problem tree and set type, subtype, and item consistently for reporting and routing.
Runs as: Skill — you run it in Super Magic and confirm each write; there’s no Flow trigger for this one.
Connectors: Thread — native, no connector required
Role: Dispatcher, Security & Compliance Owner
Outcome: Fewer Escalations & Less Noise, Time & Cost Savings (Capacity)
When to use: A new security-board ticket needs its classification set; a tech asks whether an alert is an Incident or a Request; or a classification cleanup pass across recently opened security tickets.
Run it: on one ticket · or across recently opened security tickets (a classification cleanup pass).
Related topics
Your security & compliance runbooksIntake Classification TreeConfigure Auto Categorization in ThreadWas this page helpful?
⌘I