Not sure what you mean specifically by edited, but your options are "threat handled" set to either yes or no. You can also include "action taken" as a column if desired. You would go to new query, events, and either threat events or ens threat events if running ens, then choose your query type, add desired columns and then use threat handled in the filter.
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?