Skip to main content

Synchronize Torq Case Comment to Microsoft Sentinel Incidents - Workflow Template

Synchronize Torq Case Comment to a Sentinel Incident driven by a "Comment added" Trigger.

Updated today

Optimize your case management with this workflow template, which synchronizes comments from Torq cases to Microsoft Sentinel Incidents. Triggered by a new comment addition, it ensures your Sentinel incident records are automatically updated with relevant communication details. Perfect for enhancing collaboration and maintaining up-to-date incident documentation within the Microsoft Sentinel environment.

Use Cases

Case Management

Workflow Breakdown

  1. Workflow triggers when a new comment is added.

  2. Fetch Sentinel Incident ID from Case Custom Fields.

  3. Creates a new session on Microsoft Sentinel and updates an incident with the new comment.

Vendors

Utils, Torq Cases, Microsoft Sentinel

Tips

Did this answer your question?