New FalconNgsCaseNotificationGroup - CrowdStrike/psfalcon GitHub Wiki

New-FalconNgsCaseNotificationGroup

SYNOPSIS

Create a Falcon NGSIEM case notification group

DESCRIPTION

Requires 'Case Templates: Write'.

PARAMETERS

Name Type Description Min Max Allowed Pipeline PipelineByName
Name String Notification group name X
Description String Notification group description X
Channel Object[] Objects containing 'channels' properties ('config_id', 'config_name', 'recipients', 'type') X

SYNTAX

New-FalconNgsCaseNotificationGroup [-Name] <String> [[-Description] <String>] [[-Channel] <Object[]>] [-WhatIf] [-Confirm] [<CommonParameters>]

REFERENCE

Endpoints

POST /casemgmt/entities/notification-groups/v1

falconpy

entities_notification_groups_post_v1

USAGE

Create a notification group

New-FalconNgsCaseNotificationGroup -Name Finance -Description 'Finance analysts and managers' -Channel @{ config_id = 'id'; type = 'slack' }

See Get-FalconWorkflowIntegration.

2025-09-26: PSFalcon v2.2.9

⚠️ **GitHub.com Fallback** ⚠️