| navigation_title | Cases | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| mapped_pages | |||||||||||||
| applies_to |
|
||||||||||||
| products |
|
||||||||||||
| description | Track incidents, document findings, and coordinate response efforts with cases in Elastic Security, Observability, or Stack Management. |
Cases give your team one place to investigate and resolve incidents. Attach alerts and evidence, collaborate in comments, and push updates to external systems like Jira or ServiceNow. You can use cases in {{elastic-sec}}, {{observability}}, or {{stack-manage-app}}.
| Your goal | Start here |
|---|---|
| Open your first case | Create cases |
| Set up connectors and team defaults | Configure case settings |
| Standardize case creation | Case templates |
| Control who can manage cases | Control access to cases |
| Use {{elastic-sec}} case features | Cases for {{elastic-sec}} |