Analyze discoveries, search for, create a ticket in Jira, and post a message in Slack
Workflow Description
Scheduled workflow that analyzes security discoveries, retrieves related data, creates Jira tickets automatically, and notifies your team on Slack for rapid incident response and coordination.
How it works
- 1.Trigger workflow execution on a predefined schedule
- 2.Fetch security discoveries from external data source
- 3.Split discoveries into batches for parallel processing
- 4.Search for detailed data associated with each discovery
- 5.Create a Jira ticket for each discovery with aggregated information
- 6.Send notification message to Slack channel with ticket details
Use cases
- Automate detection and tracking of security vulnerabilities in Jira
- Alert security operations team immediately upon new threat discovery via Slack
- Reduce mean time to response by eliminating manual ticket creation steps
Requirements
- Active API connection to security discovery data source
- Valid authentication credentials for Jira and Slack
- Configured Jira project and ticket template for automation
Service Value
Ready-made workflow template for automation delivery and service execution.
Apps Used
Details
How to Use
- 1.Click "Download Template"
- 2.Open your n8n dashboard
- 3.Go to Workflows > Import from File
- 4.Select downloaded file and configure credentials
Nodes Used (18)
Schedule Trigger
Schedule Trigger
Split out detections
Item Lists
Get recent detections from Crowdstrike
HTTP Request
Get detection details
HTTP Request
Split out behaviours
Item Lists
Look up SHA in Virustotal
HTTP Request
Look up IOC in Virustotal
HTTP Request
Split In Batches
Split In Batches
Merge behaviour descriptions
Item Lists
Set behaviour descriptions
Set
Create Jira issue
Jira
Post notification on Slack
Slack
Sticky Note
Sticky Note
Sticky Note1
Sticky Note
Pause 1 second
Wait
Sticky Note2
Sticky Note
Sticky Note3
Sticky Note
Sticky Note4
Sticky Note