<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic XDR vs XSOAR in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439187#M1132</link>
    <description>&lt;P&gt;Hello people ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to figure out real difference between XDR and XSOAR.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;XDR is far more intelligent than. SIEM . So this means SIEM is killed ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;XDR can also perform incident response , so what is the real value of SOAR?&lt;/P&gt;</description>
    <pubDate>Wed, 06 Oct 2021 17:06:56 GMT</pubDate>
    <dc:creator>FWPalolearner</dc:creator>
    <dc:date>2021-10-06T17:06:56Z</dc:date>
    <item>
      <title>XDR vs XSOAR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439187#M1132</link>
      <description>&lt;P&gt;Hello people ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to figure out real difference between XDR and XSOAR.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;XDR is far more intelligent than. SIEM . So this means SIEM is killed ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;XDR can also perform incident response , so what is the real value of SOAR?&lt;/P&gt;</description>
      <pubDate>Wed, 06 Oct 2021 17:06:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439187#M1132</guid>
      <dc:creator>FWPalolearner</dc:creator>
      <dc:date>2021-10-06T17:06:56Z</dc:date>
    </item>
    <item>
      <title>Re: XDR vs XSOAR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439219#M1133</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/133520"&gt;@FWPalolearner&lt;/a&gt;, It appears that you are looking to understand more on the &lt;A href="https://www.paloaltonetworks.com/cortex" target="_self"&gt;Cortex Portfolio&lt;/A&gt;, which is one integrated platform for security operations. Each one of the security tools provides multiple solutions to your security posture. For example, Cortex XDR provides the ability to &lt;A href="https://www.paloaltonetworks.com/cortex/detection-and-response" target="_self"&gt;stitch together&lt;/A&gt; network, endpoint, cloud, and identity data for threat detection. Cortex XSOAR optimizes the SecOps workflow by&lt;A href="https://www.paloaltonetworks.com/cortex/security-operations-automation" target="_self"&gt; automating incident response with playbook automation&lt;/A&gt;. Please take a look at the Cortex Portfolio reference links mentioned above for additional details on the security tools and the additional solutions/use-cases. If you have any specific questions about any one of the security tools, then I suggest to contact your Palo Alto Networks representatives to assist with providing you a path forward.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 06 Oct 2021 18:54:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439219#M1133</guid>
      <dc:creator>WSeldenIII</dc:creator>
      <dc:date>2021-10-06T18:54:08Z</dc:date>
    </item>
    <item>
      <title>Re: XDR vs XSOAR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439376#M1134</link>
      <description>&lt;P&gt;Palo Alto Networks XSOAR is Security Orquestration and Response. There you can design and develop your process and procedures framework for your SOC and Security Operations and Response. Including there your playbooks for your analysts and Incident Responders. This is a very useful tool for Incident Response / Incident "Management"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;XDR is to detect, investigate and give lets say the technical response to the incident. In this last sentence technical response I mean that you might follow the processes, procedures,&amp;nbsp; playbooks ... that you have written on your Palo Alto XSOAR.&lt;/P&gt;&lt;P&gt;Palo Alto Cortex XDR will automatically detect the malicious/suspicious activity in your infrastructure/assets create the alerts within the incidents for your analysts who just go there to see that tons of technical work has been already done and all meaningful events are put together and in context. So your analysts will understand what is going on. Which kind of incident they are facing understanding the real threats taking place at your organization. They can even give a response gathering more information, malicious files, deletion of those files in all your infra, isolating endpoints or groups of them in just seconds and all this&amp;nbsp; with just a few clicks.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Oct 2021 10:50:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/xdr-vs-xsoar/m-p/439376#M1134</guid>
      <dc:creator>eluis</dc:creator>
      <dc:date>2021-10-07T10:50:35Z</dc:date>
    </item>
  </channel>
</rss>

