<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Alert/Incident handling process template in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/367152#M409</link>
    <description>&lt;P&gt;Hi AsifSid,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-pro-admin/investigation-and-response/investigate-incidents.html" target="_self"&gt;Here's a good document&lt;/A&gt; on investigating and managing incidents within Cortex XDR.&amp;nbsp;It provides an in-depth walkthrough around incidents, including taking ownership, adjusting the status, reviewing details, gathering more information from external integrations, and taking action. There's even a video that you could watch to understand more about incident management &lt;A href="https://live.paloaltonetworks.com/t5/cortex-xdr-walkthroughs/incident-management/ta-p/310119" target="_self"&gt;here&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Finally, Cortex XDR recently rolled out a new feature called Remediation Suggestions. I'd recommend &lt;A href="https://live.paloaltonetworks.com/t5/cortex-xdr-walkthroughs/remediate-an-incident/ta-p/347276" target="_self"&gt;reviewing this video&lt;/A&gt; to understand its capabilities and how it can help you better-manage your incidents.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please give these materials a look and let me know if you are looking for something else in particular.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 03 Dec 2020 21:30:55 GMT</pubDate>
    <dc:creator>gjenkins</dc:creator>
    <dc:date>2020-12-03T21:30:55Z</dc:date>
    <item>
      <title>Alert/Incident handling process template</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/363930#M376</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does any one have a sample template or document for Cortex alert /incident managment procedure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Asif Siddiqui&lt;/P&gt;</description>
      <pubDate>Thu, 19 Nov 2020 06:04:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/363930#M376</guid>
      <dc:creator>AsifSid</dc:creator>
      <dc:date>2020-11-19T06:04:24Z</dc:date>
    </item>
    <item>
      <title>Re: Alert/Incident handling process template</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/367152#M409</link>
      <description>&lt;P&gt;Hi AsifSid,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-pro-admin/investigation-and-response/investigate-incidents.html" target="_self"&gt;Here's a good document&lt;/A&gt; on investigating and managing incidents within Cortex XDR.&amp;nbsp;It provides an in-depth walkthrough around incidents, including taking ownership, adjusting the status, reviewing details, gathering more information from external integrations, and taking action. There's even a video that you could watch to understand more about incident management &lt;A href="https://live.paloaltonetworks.com/t5/cortex-xdr-walkthroughs/incident-management/ta-p/310119" target="_self"&gt;here&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Finally, Cortex XDR recently rolled out a new feature called Remediation Suggestions. I'd recommend &lt;A href="https://live.paloaltonetworks.com/t5/cortex-xdr-walkthroughs/remediate-an-incident/ta-p/347276" target="_self"&gt;reviewing this video&lt;/A&gt; to understand its capabilities and how it can help you better-manage your incidents.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please give these materials a look and let me know if you are looking for something else in particular.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2020 21:30:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/367152#M409</guid>
      <dc:creator>gjenkins</dc:creator>
      <dc:date>2020-12-03T21:30:55Z</dc:date>
    </item>
    <item>
      <title>Re: Alert/Incident handling process template</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/385150#M551</link>
      <description>&lt;P&gt;Thank you so much Gjenkins&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Asif Siddiqui&lt;/P&gt;</description>
      <pubDate>Wed, 10 Feb 2021 17:45:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/385150#M551</guid>
      <dc:creator>AsifSid</dc:creator>
      <dc:date>2021-02-10T17:45:47Z</dc:date>
    </item>
    <item>
      <title>Re: Alert/Incident handling process template</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/385437#M556</link>
      <description>&lt;P&gt;No problem,&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/87372"&gt;@AsifSid&lt;/a&gt;! Glad to help.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Feb 2021 16:23:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/alert-incident-handling-process-template/m-p/385437#M556</guid>
      <dc:creator>gjenkins</dc:creator>
      <dc:date>2021-02-11T16:23:00Z</dc:date>
    </item>
  </channel>
</rss>

