Wazuh automatically triggers appropriate actions in response to detected security incidents. These actions include deleting malicious files, blocking suspicious network connections, quarantining compromised endpoints, and others. Automating incident response actions allow organizations to reduce the Mean Time to Respond (MTTR), therefore minimizing the potential impact of security breaches.
![Automated Incident Response dashboard](https://wazuh.com/wp-content/themes/wazuh-v3/assets/images/use-cases/incident-response/dashboard-automated-response.png?ver=1735664783069)