Create a Case Report using a template
Generate a case report from a published report template, such as a post-investigation report or an executive summary, and then preview, publish, and share it.
Before you begin
Role required: sn_sec_tisc.analyst
Procedure
Navigate to Workspaces > Threat Intelligence Security Center > Threat Intel Library.
Select Reports > Case Reports.
Alternatively, select Reports > All Reports or Reports > My Reports.
Select New Case Report.
In the Create New Case Report window, enter the following details:
In Case Number, select the case number to generate the report.
In Generation Method, select Using Template.
Select Next.
Select the required report template to generate the report.
The report opens in the editor, populated from the selected template.
Use the report editor to build the report content.
- Select the
Edit report details icon**Edit report details** icon to edit the report name and description.
- Select the
Expand icon**Expand** icon to insert additional content — for example, Observables or Indicators — into the report.
- Type `/` to use a slash command and insert dynamic content, such as a record count, a specific record or field, or a system user. For the available slash commands and supported tables, see [Working with Reports in TISC](tisc-reports-lib-view.md).
- Select **Save Content** to save your changes and enable **Publish**.
- Select **Preview** to generate a PDF preview of the current content.
When your edits are complete, select Publish.
After publishing, download the report as a PDF or share it with stakeholders by email.
Parent Topic:Create Case Reports