Echelon Requirements Reading
SecOps want ServiceNow to notify Torq whenever a security incident is raised, so their playbooks auto-trigger. Turn this into build-ready stories.
Request · SecOps team · #secops-intake
Analyzing the request & your instance1m 58s
Parsed the request Searched 24 sources
What they want: an outbound HTTP POST to Torq when a security incident is raised, to auto-trigger a playbook.
3 aspects are unclear — I need these confirmed before I can write clean stories.
Needs clarification
1.Which incidents trigger it — all security incidents, or only P1/P2?
2.What should Torq receive in the payload?
3.New Torq endpoint, or reuse your existing Torq connection?
Which incidents should trigger it?
P1 & P2 security incidents only
What should Torq receive?
number, priority, category, cmdb_ci, short_description
New endpoint or reuse?
Reuse the existing Torq connection
Response to 3 clarifications
Checking for a similar integration2m 41s
Viewed 24 records 2 connections
You already have a Torq outbound integration — here’s how this request differs.
Torq — Change Notificationsoutbound · Flow + REST Message Already live
What’s different
Existing
This request
Trigger
Change approved
Sec incident P1/P2
Consumer
Change team
SecOps playbooks
Payload
Change fields
Incident + CI + category
Connection
Torq (shared)
Reuse ✓
Decision · Build a new integration
Different trigger, table & consumer — bolting this onto the change flow would overload it. New integration, but reuse the Torq connection & credential alias.
Build-ready stories
Attached · secops-torq-integration.md
Written to your naming convention
Convention <squad>-<system>-<nn> · Epic SECOPS-INTEGRATIONS
SECOPS-TORQ-01Outbound REST Message + Custom Flow ActionIncident → Torq · POST
SECOPS-TORQ-02Trigger Flow on P1/P2 security incidentsfilter on priority + security category
SECOPS-TORQ-03Reuse Torq connection & credential aliasno new secrets — inherit existing alias
SECOPS-TORQ-04Payload mapping + retry & error handling
4 stories, each with acceptance criteria — linked to the epic, ready for sprint planning.
Ask Echelon to turn a request into stories, plan a build, or design to your standards…