Cortex XSIAM
Resources for Cortex XSIAM, Palo Alto Networks’ autonomous security platform powering the Modern SOC.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Cortex XSIAM

Welcome to the Cortex XSIAM resources page. Cortex XSIAM, the autonomous security platform powering the Modern SOC, operates across both cloud and enterprise security operations, providing true end-to-end-management of threats wherever they originate. This page provides information and resources to make your Palo Alto Networks journey as simple as possible. Ask your questions, find answers, connect with peers, and get access to troubleshooting resources all in one place.

Discussions

Author Topic Views Replies
sh4unz0r
05-29-2024

Unified Inventory

Hello, I have come across references to 'Unified Inventory' in the documentation for XSIAM, Xpanse, and Prisma Cloud. Could anyone please clarify if t... — Read more

posted in Cortex XSIAM Discussions

123 2
MDovirak
05-28-2024

Unified/Assets Inventory and XQL

Do we have the ability to call Unified Inventory or Assets Inventory via XQL Query? I have many interesting examples and potential use cases for how t... — Read more

posted in Cortex XSIAM Discussions

113 1
newuserofpalo
05-22-2024

XSIAM Cloud or Onprem?

Hi All, I'd like to enquire whether Cortex XSIAM offers on-premises solutions exclusively, or if it provides a combination of both on-premises and c... — Read more

posted in Cortex XSIAM Discussions

354 1
easupport-14217
04-11-2024

Custom Alert in XSIAM for Azure AD User Group Changes

Hello, I was wondering if someone could help point me in the right direction for setting up a custom alert in XSIAM when a user is removed from Azur... — Read more

posted in Cortex XSIAM Discussions

726 2
WilliamValente
03-13-2024

How to retrieve all XQL Correlations

Hi guys, i need a little help. Is there any dataset that contain all the correlations rules created?Or can I retrieve all correlations rules via XQL... — Read more

posted in Cortex XSIAM Discussions

737 3

Blogs

Securing Kubernetes Clusters: The Cortex XDR and XSIAM Approach

05-16-2024 — Kubernetes has revolutionized the way we deploy and manage applications, but its complexity and dynamic nature also introduce a new set of security challenges. Attackers are constantly looking for ways to exploit vulnerabilities in Kubernetes clus... — Read more

Labels: Cortex XDR Cortex XSIAM Kubernetes
539 by in Community Blogs

Cortex Copilot: In SecOps, You Should Secure Smarter, Not Harder

05-14-2024 — In security operations, analysts need every advantage to remain one step ahead of the attacker. This is why we created Cortex Copilot. — Read more

Labels: AI Automation Cortex XSIAM SOC Threat hunting
565 1 by in Community Blogs

Leading with a Prevention-First Approach for Cloud Detection and Response

04-25-2024 — As cloud computing continues to evolve and becomes the ad-hoc standard for many of the world’s largest enterprises, we also see attack surfaces growing and the escalation of cyberthreats targeting the cloud and traditional enterprise assets. These... — Read more

Labels: CDR Cloud Cortex XDR Cortex XSIAM detection and response XDR XSIAM
1431 by in Community Blogs

Threat Brief: Operation MidnightEclipse, Post-Exploitation Activity Related to CVE-2024-3400

04-24-2024 — This threat brief is frequently updated as new threat intelligence is available for us to share. The full update log is at the end of this post and offers the fullest account of all changes made. — Read more

Labels: Cortex Cortex XDR Cortex Xpanse Cortex XSIAM threat brief Threat Briefs and Assessments unit 42 unit42
2086 by in Community Blogs

What’s Next in Cortex — XSIAM for Cloud and Other Innovations

04-16-2024 — Security operations teams are tasked with solving a variety of different challenges. They face the complexities of protecting growing and dynamic cloud environments; investigating and resolving security incidents quickly; proactively managing risk... — Read more

Labels: Cortex Cortex XSIAM Cortex XSOAR XSIAM XSOAR
2044 by in Community Blogs

Cortex-XSIAM-Release-Notes

Videos

Digital Learning Courses

Visit Palo Alto Networks' learning platform, Beacon, for free technical knowledge and educational resources related to all of our products.

Please note: You need to be logged into SSO in order to view this content.