Event and Alert Ingestion for Security Operations release notes
- UpdatedDec 17, 2020
- 1 minute read
Version history for the Event and Alert Ingestion for Security Operations on the ServiceNow Store.
Important: For details on system requirements and family compatibility, view the application
listing on the ServiceNow Store
website.
Version history
- Version 11.0.1 - December 2020
- Fixed: This release contains minor fixes.
- Version 11.0.0 - September 2020
- Fixed: Minor bug fixes.
- Version 10.1.1 - May 2020
- Changed: Support for related list mapping such as Assignment Group, Assigned to, Category and Sub-Category.
- Version 10.0.3 - March 2020
- Create multiple event profiles in your Now Platform instance that permit you to ingest and select sample fired correlated events.
- Map Splunk fired correlated events values to associated SIR security incident fields with dynamic drag-and- drop mapping.
- Aggregate fired correlated events to existing security incidents when you determine the new notable events are related to existing security incidents.
- Validate your mapping with a preview of the alert values in a security incident. You can edit the fields if you are not satisfied with the mapping.
- Retrieve historical alerts with a one-time retrieval, or, schedule and ingest on-going, future alerts on configurable intervals.