Applying Actions to Events

Role Availability Read-Only Investigator Analyst Manager

USM Anywhere enables you to respond to the event Any traffic or data exchange detected by LevelBlue products through a sensor or external devices such as a firewall.. Use this button to associate the item with an action In USM Anywhere you can execute an action from alarms, events, and vulnerabilities to run a scan, get forensic information, or execute a response for a configured BlueApp.. Depending on the USM Anywhere Sensor Sensors are deployed into an on-premises, cloud, or multi-cloud environment to collect logs and other security-related data. This data is normalized and then securely forwarded to USM Anywhere for analysis and correlation. you have installed, you will see different actions: