Actions
Mitigate Threats
Apply a mitigation action to a group of threats that match the filter.
Your user role must have permissions to mitigate threats - Admin, IR Team, SOC. Only threats which you have permission to mitigate are countedas “affected” in response field.
You must use one of the filters before executing the action.

Preview this Workflow on desktop