For the complete documentation index, see llms.txt. This page is also available as Markdown.
Cortex XSOAR 6.13

Create an Indicator Type

Create a custom indicator type.

When you create a custom indicator type, you configure fields and settings that impact how indicators of that type are enriched, how they are expired, how the verdict is calculated, etc.

Before you create a custom indicator type, you should familiarize yourself with the Indicator Type Profile parameters.

  1. Go to Settings → OBJECTS SETUP → Indicators → Types.

  2. Click the New Indicator Type button.

  3. In the Settings tab, add the required Indicator Type Profile parameters, such as name, regex, etc.

  4. In the Custom Fields tab, Map Custom Indicator Fields, as required.

Last updated

Was this helpful?