Category: Security · View source ↗
Security
SOC Classification Tree
Classify a security ticket down the Incident, Request, and Problem tree and set type, subtype, and item consistently for reporting and routing.
Runs as: Skill Run it in Super Magic and confirm each write. A Flow can also fire a shared skill through the Run Skill action (beta), though this one is written for a person to run rather than a ticket event.
Connectors: Thread
Role: Dispatcher, Security & Compliance Owner
Outcome: Fewer Escalations & Less Noise, Time & Cost Savings (Capacity)
When to use: A new security-board ticket needs its classification set; a tech asks whether an alert is an Incident or a Request; or a classification cleanup pass across recently opened security tickets.
Run it: on one ticket · or across recently opened security tickets (a classification cleanup pass).
Was this page helpful?