<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cortex XSIAM + XDR in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/544628#M4478</link>
    <description>&lt;P&gt;Thank you!!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BR&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&lt;/P&gt;</description>
    <pubDate>Fri, 02 Jun 2023 17:19:42 GMT</pubDate>
    <dc:creator>RFeyertag</dc:creator>
    <dc:date>2023-06-02T17:19:42Z</dc:date>
    <item>
      <title>Cortex XSIAM + XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/543668#M4447</link>
      <description>&lt;P&gt;Hello dear community,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;who of you is using XSIAM? How is it?&lt;/P&gt;
&lt;P&gt;Will XDR + XSIAM ever get together in one product?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BR&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&lt;/P&gt;</description>
      <pubDate>Sat, 27 May 2023 17:11:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/543668#M4447</guid>
      <dc:creator>RFeyertag</dc:creator>
      <dc:date>2023-05-27T17:11:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XSIAM + XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/543784#M4449</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/190671"&gt;@RFeyertag&lt;/a&gt;&amp;nbsp;all underlying components of XDR are already in XSIAM, and much more. Which means, you get the same set of agents send events/alerts to the management console in XSIAM for stitching. Using automation/playbooks, you can initiate actions on those alerts. There's also a massive chunk of XSOAR bits that have been introduced into XSIAM for additional use cases like data ingestion, integrations, playbook development, threat intel, attack surface management etc. So a rough analogy would be:&lt;BR /&gt;XSIAM = XDR + XSOAR + Xpanse&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Take a look at the following sections (Architecture and Concepts) :&amp;nbsp;&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-Administrator-Guide/Architecture" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-Administrator-Guide/Architecture&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 May 2023 07:30:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/543784#M4449</guid>
      <dc:creator>bbarmanroy</dc:creator>
      <dc:date>2023-05-29T07:30:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XSIAM + XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/544628#M4478</link>
      <description>&lt;P&gt;Thank you!!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BR&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 17:19:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/544628#M4478</guid>
      <dc:creator>RFeyertag</dc:creator>
      <dc:date>2023-06-02T17:19:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XSIAM + XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/556478#M5083</link>
      <description>&lt;P&gt;Hi Community,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would like to know few things about Cortex XSIAM solution:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Auto Discovery feature: If any new log source is added, can the solution notify?&lt;BR /&gt;2. How the asset risk score is calculated?&lt;BR /&gt;3. In XSIAM, full raw logs of XDR/SIEM will be available or only parsed data?&lt;BR /&gt;4. Upgradation of XDR/SOAR/TIP/SIEM will be done all at once or one at a time?&lt;BR /&gt;5. How do the solution mimnimizes log delay? How often do we observe delays?&lt;BR /&gt;6. Where are the DC and DR placed?&lt;BR /&gt;7. Do we have any feature in XSIAM for forensics?&lt;BR /&gt;8. How does the licensing work? How much EPS is supported without slowness?&lt;BR /&gt;9. Need to know the exact flow of data.&lt;BR /&gt;10. How many conectors are available? (API). In case if connector is not available, how much time does it take for integration?&lt;BR /&gt;11. Any OOTB use cases/policies available?&lt;/P&gt;</description>
      <pubDate>Tue, 05 Sep 2023 10:03:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xsiam-xdr/m-p/556478#M5083</guid>
      <dc:creator>hrishikeshkale</dc:creator>
      <dc:date>2023-09-05T10:03:27Z</dc:date>
    </item>
  </channel>
</rss>

