Creating Description Templates From Investigations

Although you can enter a description for an investigation in rich text, free-form, using a template not only saves time but also enforces consistency to descriptions entered by multiple users of your organization.

Note: You must have Org admin privileges to create and manage description templates.

You can save existing rich text description templates or create new ones from scratch for further use with other investigations.

To save an existing description as a template:

  1. Navigate to ThreatStream > Research > Investigations.

  2. Click an investigation with a description that you want to use a template.

  3. On the Description tab, click Templates > Save as a Template.


  4. In the dialog box that opens, enter a name for the new template and modify the description, if necessary.

  5. Click Save.

To create a template from scratch:

  1. Create a new investigation. See Creating Investigations .

  2. Open the details page of the new investigation.
  3. On the Description tab, click Templates > Save as a Template.
  4. In the dialog box that opens, enter a name and description for the template.
  5. Click Save.

The newly created template can be found in ThreatStream Settings under the Manage Templates tab and on the list of Templates in investigations. To learn how to edit or remove templates, see Managing Description Templates.