Skip to main content
All Collections
Investigate Cases
Investigate Cases

Learn how to investigate and mitigate security threats as a SOC analyst using Torq case management.

14 articles
Stay on Top of Cases: Navigating Torq's Cases PageLearn how to track active and resolved cases on the Cases page efficiently.
Creating Cases in TorqLearn how to create a new case, including the necessary and optional attributes.
Navigating Case Timelines in Torq: Track Investigation ProgressLearn how to effectively log and retrieve information using the case timeline.
Examine Custom Fields in Torq Cases for Thorough InvestigationsLearn about custom fields in Torq cases, ensuring all relevant details are considered for a comprehensive review.
Understanding Observables: Enhance Threat Detection with TorqLearn about observables in Torq and how to use them efficiently.
Efficiently Store information: Leveraging Notes in Torq CasesLearn how to store information within Torq cases efficiently with notes.
Use Attachments in Torq Cases: Enhance Context and InformationLearn how to enhance cases with additional context or information by adding attachments.
Link Related Cases in Torq: Get the Full PictureLearn how to link related cases, enabling better identification and tracking of interconnected incidents.
Follow Runbook Instructions for Streamlined Investigations with TorqLearn how to follow runbook guidelines in Torq to ensure efficient and standardized investigations.
Review Events in Torq Cases for Thorough AnalysisLearn how to view and analyze events attached to Torq cases.
Take Action During Investigations: Trigger Workflows from Torq CasesLearn how to use workflows during your case management investigations by triggering them directly from a case.
Track Deadlines: Case SLAs in TorqLearn about SLA tracking with Torq to ensure timely case resolution.
Manage Cases Across Workspaces: Torq's Unified ViewLearn how to handle cases across multiple workspaces without needing constant workspace switching.
Completing Assigned Tasks in Torq CasesLearn how to navigate and complete tasks within your cases.