Space banner This documentation supports the 23.3 version of BMC Helix for Security Incident Handling, which is available only to BMC Helix customers (SaaS).

Creating security cases manually


As a security case agent, you can use the Create case or the Quick Case options in BMC Helix Business Workflows to create security cases in the Security Incident Handling line of business.

While creating the security case, you can relate tickets, persons, and assets to the case. You can also create BMC Helix ITSM incidents or work orders from the case.

To create a security case by using the Create Case view

  1. Log in to BMC Helix Business Workflows.
  2. From the Line of Business list, select the Security Incident Handling line of business.
  3. Select Create > Case.
  4. Specify the details to create the security case.
    Learn about the fields in the case in 
    Creating cases from the Create Case page.

To create a security case by using the Quick Case view

While creating a case by using the Quick Case view, you cannot select the line of business. The line of business is assigned based on the case template that you select. If you do not specify a case template, the line of business is set to the default line of business that the case agent belongs to. If the case agent belongs to multiple lines of business, the first matching line of business is assigned.

  1. Log in to BMC Helix Business Workflows.
  2. If required, from the Line of Business list, select the Security Incident Handling line of business.
  3. Click Quick Case.
  4. Follow the prompts on the page to create a case. 
    Learn more about creating a case by using the Quick Case form in Creating cases from Quick Case.

Example of creating a security case manually

Bill is a security case agent in Apex Global. He creates a security case when an employee reports a lost laptop. The case goes through the various stages of security incident handling. He also relates the asset that is stolen to the case, adds tasks and evidence to the case. As defined by the assignment rules, the security case is assigned to Paul from the Apex Global Security support group. Paul then works on the case.  

To manage a security case

As a case agent working on a security case, you can manage the case in the following ways:

Action

Reference

Add and update case details.

Create evidence for the security case.

Change the stages of the security case.

Create and relate BMC Helix ITSM tickets.

Relate and manage assets.

Resolve the security case.

Where to go from here

Managing-security-cases

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*