logo

NJP

Threat Intelligence Security Center for Security Operations

Threat Intelligence Security Center for Security Operations

by Service-now.com

Empowering Security Operations: Collect, manage, and correlate comprehensive Threat Intelligence.

0 installs 0 reviews v4.7.0 Scoped Application Free-ish (consumes 491 tables) 491 tables
Developer Instance Sub-Production

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 51 -51
149 days of no change
2025-11-28 50 +1
15 days of no change
2025-11-12 49 +1
26 days of no change
2025-10-16 47 +2
22 days of no change
2025-09-23 46 +1
7 days of no change
2025-09-15 45 +1
47 days of no change
2025-07-29 44 +1
7 days of no change
2025-07-21 43 +1
7 days of no change
2025-07-13 42 +1
2 days of no change
2025-07-10 41 +1
14 days of no change
2025-06-25 40 +1
6 days of no change
2025-06-18 39 +1
8 days of no change
2025-06-09 38 +1
12 days of no change
2025-05-27 37 +1
2025-05-26 36 +1
26 days of no change
2025-04-29 35 +1
19 days of no change
2025-04-09 34 +1
1 days of no change
2025-04-07 33 +1
13 days of no change
2025-03-24 32 +1
5 days of no change
2025-03-18 31 +1
13 days of no change
2025-03-04 30 +1
11 days of no change
2025-02-20 28 +2
8 days of no change
2025-02-11 27 +1
6 days of no change
2025-02-04 26 +1
24 days of no change
2025-01-10 25 +1
71 days of no change
2024-10-30 21 +4

About

Threat Intelligence Security Center (TISC) is a comprehensive platform designed to bolster organization's cybersecurity posture by providing advanced threat intelligence capabilities. Built to address the evolving landscape of cyber threats, the TIP empowers security teams with actionable insights to proactively detect, mitigate, and respond to potential security incidents.

Key Features

- Curated catalog of popular OSINT Threat feed sources. 

- Integration of premium feeds to enhance threat intelligence. 

- Capability to automatically identify and extract all observables from the uploaded files. 

- Granular expiration policies 

- Data aggregation from diverse feeds, including STIX, MISP, JSON and more. 

- Enrichment capabilities, for the removal of false positives, confidence/scoring of indicators, validation of indicators, and the addition of contextual information. 

- Correlation rules for automatically establishing relationships between observables. 

- Customizable threat score calculator for nuanced threat assessment. 

- Integration of internal intelligence encompassing VR, SIR, Assets, Services, and CMDB. 

- User-specific dashboards tailored for Threat Intel personas. 

- Graphical visualization tools for comprehending Threat Intel data. 

- Dedicated Threat Intel Analyst Workspace for streamlined operations. 

- Threat hunting with case/task management functionalities and interactive investigation canvas 

- Automated MITRE ATT&CK Technique extraction and rollup. 

- Enable seamless integration with SIR and facilitate smooth data migration from Threat Intelligence within SIR to the Threat Intelligence Security Center. 

- Establish notification rules to trigger alerts based on threat intelligence. 

- Define data retention and cleanup policies. 

- Generate and share status reports and investigation summaries using Case reports' rich text editor experience and customizable report templates. 

- Domain separation support for MSSP use cases. 

- Integrate with security tools using TISC APIs. 

- Point integrations with security tools and sample flows for automated actions 

- Webhook support for real-time, trigger-based notifications 

- Data migration utility for migration from SIR Threat Intelligence module to TISC 

- Ingest and prioritize vulnerability intelligence so analysts focus on what's exploitable and relevant.  

- Playbooks to automate threat case investigation workflows for faster, consistent handling.  

- AI-generated case summaries for instant situational awareness and faster handoffs.  

Version History (11)
v4.7.0 2026-07-09 17:40:55
Fixed: Resolved modal loading issues when fetching related records in Investigation Canvas. Fixed the issue with Affected Services retrieval while...
v4.5.0 2026-06-16 17:11:10
New: AI-powered case summarization for threat intelligence workflows helps analysts create concise summaries with overviews, findings, actions,...
v4.3.0 2026-04-09 15:40:28
New: Automatically generate zero-day vulnerability records from flagged RSS feeds, extracting and correlating CPE, CWE, and CVE details. For mo...
v4.2.0 2026-03-12 16:35:43
New: RSS Feed Enhancements: The RSS feed schema, forms, and parsers now support tags, taxonomies, and expiration. Users can directly assign tags a...
v4.0.1 2025-12-11 15:03:52
New: Threat Intelligence External Sharing: The general availability of external sharing capabilities enables secure and seamless dissemination o...
v3.14.3 2025-10-16 15:12:10
New: Custom Feeds now supports MISP configuration. This allows events and attributes to be gathered directly through the MISP API using advanced f...
v3.14.2 2025-09-10 12:14:27
Fixed : Added a field in the CrowdStrike feed's additional settings section to filter by "Records type to ingest." Resolved an issue that was prev...
v3.14.0 2025-07-31 15:43:32
New: Import Intelligence: Introduced functionality to import observables into the Allowlist or Denylist directly from the Import Intelligence modu...
v3.12.0 2025-05-01 18:55:41
 New : Export Options for Threat Intelligence Library: Added support to export observables, indicators, and cases from the list views in STI...
v3.8.0 2025-01-30 16:13:47
New :  Added info icon on the canvas header from a case to view and access the canvas details. User now has ability to create a new canvas fr...

+ 1 more versions

ID: 67af77db43721110baf06e434ab8f2ad · Published: Jul 2026 · Updated: Sep 09, 2026