Build your playbook
Build a playbook by configuring tasks, logic, and settings.
Depending on your use case, you can use or customize a system playbook or develop a new playbook from scratch.
Developing a new playbook from scratch enables a tailored solution for your use case, whereas customizing a system playbook can save time, reduce complexity, and be a more efficient way to meet your organization's specific security and issue response needs.
Important
The ability to create, edit, or share custom playbooks is governed by access management. If certain options are unavailable, contact your administrator. For more information, see Manage access to playbooks and scripts.
Follow these steps to build a playbook.
Task 1. Choose from existing playbooks or create your own
Search for an out-of-the-box playbook to use, customize it, or create one based on your use case. Use the Automation Engineer agent to create, modify, and query playbooks (preview).
Task 2. Configure playbook settings
Define playbook settings, such as playbook triggers, inputs and outputs, and general settings.
Task 3. Add objects from the Task Library
The Task Library contains AI prompts, scripts, sub-playbooks, and tasks that enable you to communicate with end users, set conditions, and store relevant data.
Task 4. Customize your playbook
Add scripts and sub-playbook loops, filter and transform data, extract indicators, extend context, create issue fields, poll, and more.
Task 5. Test your playbook
Set breakpoints, conditional breakpoints, skip tasks, and input and output overrides in the playbook debugger.
See Test your playbook.
Last updated
Was this helpful?
