Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Add associated tasks to an observable

In addition to importing associated tasks (such as changes and incidents) as STIX data, you can add them to an observable manually.

Before you begin

Role required: sn_ti.admin

Procedure

  1. Navigate to All > Threat Intelligence > IoC Repository > Observables.

  2. Click the observable to which you want to add an associated task.

  3. Click the Associated Tasks related list.

  4. Click Edit.

  5. As needed, use the filters to locate the tasks you want to associate with the observable.

  6. Using the slushbucket, add the task to the Associated Tasks list.

  7. Click Save.

Parent Topic:Observables

Related topics

Define an observable

Add a related IoC to an observable

Add a related observable

Load more IoC data

Identify observable sources

Perform lookups on observables

Perform threat enrichment on observables