Suppress and Unsuppress Risks

This topic explains how to manage risks in ACE Cloud App Analyzer by suppressing and unsuppressing them.

Suppress (mute) a risk

If you need to suppress a risk due to a false positive, acknowledged risk, or any other reason, follow these steps:

Do the following:

  1. Locate the Security Issue whose risk you want to suppress.

  2. In the 'Actions' column of the alert you wish to manage, click on the Bell icon. The Select Suppression Level popup appears.

  3. Choose one of the following suppression levels:

    • Suppress only this specific occurrence of the risk: Choose this to silence only the current instance of the alert without affecting any future alerts of the same type.

    • Suppress all occurrences of this risk across all resources in this account: Select this to mute every alert triggered by this specific rule, but only within the current account. It prevents the rule from generating further alerts in this account’s scope.

    • Suppress all occurrences of this risk across all resources in all accounts: Use this to suppress the alert rule globally—across all accounts and all resources. This option is best for company-wide rules you no longer want to monitor.

    • Suppress all risks for this resource: Opt for this to mark the specific resource as trusted or safe. It will silence all future alerts, regardless of rule, that relate to this resource.

  4. Click Suppress to confirm your action. The Alert bell(s) display as .

Unsuppress (unmute) a risk

If an risk has been previously suppressed and you wish to re-enable notifications for it, you can easily unsuppress it by following these instructions:

Do the following:

  1. In the 'Actions' column of the risk you wish to manage, click on the Bell icon. The Confirm Unsuppression Level pop-up appears.

  2. Choose one of the following:

    • Unsuppress only this specific occurrence of the risk: Choose this to re-enable the alert for just this particular instance, without affecting other occurrences of the same risk elsewhere.

    • Unsuppress all occurrences of this risk across all resources in this account: Select this to restore alerts for every instance of this risk rule—but only within the current account. Useful if the rule was suppressed too broadly.

    • Unsuppress all occurrences of this risk across all resources in all accounts: Use this to reactivate the risk rule globally across all resources and accounts. Best for reversing a company-wide suppression.

    • Unsuppress all risks for this resource: Opt for this if you want to resume alerts for every risk type that may apply to this resource. This fully lifts its trusted or "safe" status.

  3. Click Unsuppress to confirm your action. The Alert bell(s) display as .

Delete all risk suppressions

To permanently delete all your risk suppressions for a specific account:

Do the following:

  1. Select the account in single-account view.

  2. Click on your username and select the Settings option.

    The My Account page opens.

  3. Click Delete all Suppressions.

    Note: Any global suppressions existing in the account are not deleted.

  4. Confirm your action to permanently delete all risk suppressions for the account.

To permanently delete all your risk suppressions for all providers:

Do the following:

  1. Select the account in multi-account view.

  2. Click on your username and select the Settings option.

    The My Account page opens.

  3. Click Delete all Global Suppressions.

  4. Confirm your action to permanently delete all risk suppressions globally.