Security Operations Hybrid Analysis Integration
Automate threat intelligence gathering with Hybrid Analysis.
Install Trend
View Install Data
| Date | Install Count | Change |
|---|---|---|
| 2026-09-09 | 0 | - |
| 134 days of no change | ||
| 2026-04-27 | 33 | -33 |
| 23 days of no change | ||
| 2026-04-03 | 34 | -1 |
| 65 days of no change | ||
| 2026-01-27 | 35 | -1 |
About
Hybrid Analysis permits access to threat intelligence from an open online community in which users analyze files and URLs for threats. Users share results and utilize research for more effective incident responses. When integrated with ServiceNow Security Operations, the threat intelligence results provide additional insight for security incidents or investigations.
Key Features
- Automatic threat intelligence lookups on file hashes, IP addresses, and URLs run upon incident creation.
- After the application is configured, the workflow launches automatically, and the Hybrid Analysis lookup execution and completion status are recorded in work notes on the Security Incident form.
- Observables can be looked up manually by attaching them to the Security Incident form and launching workflows.
- Results are displayed under the Threat Lookup Results tab at the bottom of the Security Incident form. Child observables and raw Hybrid Analysis lookup details are displayed in the Show IOC link under Related Links.