Exclude an issue

During the process of triaging and investigating issues, you might determine that an issue does not indicate threat. You can choose to exclude the issue, which hides the issue, excludes it from cases, and excludes it from search query results.

You can also set up issue exclusion rules that automatically exclude issues that match certain criteria. For more information, see [Issue exclusions](../../../../protect-your-endpoints/endpoint-security/install-and-manage-endpoints/set-up-endpoint-protection/set-up-endpoint-profiles-and-exception-rules/set-up-exception-profiles-and-rules/issue-exclusions).

Cortex XSIAM supports exclusion of up to 100,000 issues.

### How to exclude an issue

1. From the **Issues** page, locate the issue you want to exclude.
2. Right-click the row, and select Manage Issue → **Exclude Issue**.

 A notification displays indicating the exclusion is in progress.