Configure Slack chat connector for major security incidents
Integrate and collaborate with Slack to resolve Major Security Incident to view and filter collaboration chat activities.
Configuring and subscribing to a Slack chat environment, retrieving chat conversations from within specified channels, and archiving the Slack and associated channels are included as part of the incident closure process. A designated Slack environment and related Slack API configuration is required to create individual channels that are specific to a Major Security Incident.
To configure Slack, activate Slack as the chat provider. You can then create chat channels for the various stakeholders and groups communicating about activities and track chat conversations to resolve the Major Security Incident. The Slack and Slack API configuration includes:
- Get started with Slack chat connector configuration
- Activate Slack as a channel provider
- Create a chat channel template for Slack
Get started with Slack chat connector configuration
Review the following information before you start working with Slack as a connector application.- Create a chat channel template for Slack
Configure Chat Teams and Channel Templates to create chat teams and channels to collaborate, track the chat conversations, and add users and user groups to those Chat Channels. These Channel templates are created in Slack when a major security incident is promoted. - Activate Slack as a channel provider
Activate Slack by validating the Slack connection. - View chat message activities in Slack
Chat message activity is recorded and displayed on the Collaboration tab of the Major Security Incident Management workspace.
Parent Topic:Configuring Major Security Incident Management
Related topics