Forum Discussion
securityxpert1122
May 31, 2022Copper Contributor
How to close sentinel bulk incidents
I would like to know how we can close multiple incidents in bulk using KQL query or any other tested option. Appreciate quick response.
Rod_Trent
Microsoft
May 31, 2022See if the following helps: https://github.com/Azure/Azure-Sentinel/tree/master/Playbooks/Update-BulkIncidents