<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/594118#M7036</link>
    <description>&lt;P&gt;Step by step instruction how to achieve this:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://infosecotb.com/cortex-xdr-file-integrity-monitoring-for-pci-dss/" target="_blank" rel="noopener"&gt;Cortex XDR File Integrity Monitoring for PCI-DSS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 06 Aug 2024 11:28:44 GMT</pubDate>
    <dc:creator>Piotr_Kowalczyk</dc:creator>
    <dc:date>2024-08-06T11:28:44Z</dc:date>
    <item>
      <title>Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/543016#M4405</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I’ve read in &lt;A href="https://isacala.org/wp-content/uploads/2020/08/Cortex-XDR-Whitepaper_Coalfire.pdf" target="_blank"&gt;https://isacala.org/wp-content/uploads/2020/08/Cortex-XDR-Whitepaper_Coalfire.pdf&lt;/A&gt; that the PCI-DSS compliance with 10.5.5 and 11.5 can be achieved with BIOC rules. Unfortunately, there is no details. Has anybody done this and can share knowledge/experience with me?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 23 May 2023 09:18:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/543016#M4405</guid>
      <dc:creator>Piotr_Kowalczyk</dc:creator>
      <dc:date>2023-05-23T09:18:44Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/543054#M4408</link>
      <description>&lt;P&gt;I did create a File Integrity Monitoring rule for PCI that monitors our POS program files for any file action not performed by the POS program exe. Not sure if it would actually pass PCI audit though.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jruck_0-1684853051610.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/50300i7CB4B7BC8A83D6D5/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="jruck_0-1684853051610.png" alt="jruck_0-1684853051610.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 May 2023 14:44:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/543054#M4408</guid>
      <dc:creator>jruck</dc:creator>
      <dc:date>2023-05-23T14:44:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/543300#M4436</link>
      <description>&lt;P&gt;Hi Jruck,&lt;/P&gt;
&lt;P&gt;Thanks you for the reply.&lt;/P&gt;
&lt;P&gt;Unfortunately I don't think this meets PCI-DSS requirements which I'm referring to. They want us to monitor unauthorised logs and system files changes so it probably needs to be way more complex...&lt;/P&gt;</description>
      <pubDate>Thu, 25 May 2023 08:27:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/543300#M4436</guid>
      <dc:creator>Piotr_Kowalczyk</dc:creator>
      <dc:date>2023-05-25T08:27:32Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/565900#M5552</link>
      <description>&lt;P&gt;Hi Piotr!&lt;/P&gt;
&lt;P&gt;Were you able to meet the requirement 11.5 (or part of this) with Cortex XDR BIOC?&lt;/P&gt;</description>
      <pubDate>Wed, 15 Nov 2023 23:52:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/565900#M5552</guid>
      <dc:creator>danlav</dc:creator>
      <dc:date>2023-11-15T23:52:33Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/566125#M5561</link>
      <description>&lt;P&gt;Hi Dan,&lt;/P&gt;
&lt;P&gt;Yes, it required a lot of work as I had to design and create BIOC rules myself but once is set, it is working well.&lt;/P&gt;
&lt;P&gt;The hardest part was to find what to monitor. I used following:&amp;nbsp;&lt;A href="https://learn.microsoft.com/en-us/azure/defender-for-cloud/file-integrity-monitoring-overview" target="_blank"&gt;Track changes to system files and registry keys - Microsoft Defender for Cloud | Microsoft Learn&lt;/A&gt;&amp;nbsp;+ our important folders.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Nov 2023 09:34:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/566125#M5561</guid>
      <dc:creator>Piotr_Kowalczyk</dc:creator>
      <dc:date>2023-11-17T09:34:03Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/566767#M5592</link>
      <description>&lt;P&gt;Hi Piotr, Thank you so much!&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Nov 2023 21:45:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/566767#M5592</guid>
      <dc:creator>danlav</dc:creator>
      <dc:date>2023-11-22T21:45:54Z</dc:date>
    </item>
    <item>
      <title>Re: Cortex XDR File Integrity Monitor and PCI-DSS 10.5.5 and 11.5 requirements</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/594118#M7036</link>
      <description>&lt;P&gt;Step by step instruction how to achieve this:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://infosecotb.com/cortex-xdr-file-integrity-monitoring-for-pci-dss/" target="_blank" rel="noopener"&gt;Cortex XDR File Integrity Monitoring for PCI-DSS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Aug 2024 11:28:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cortex-xdr-file-integrity-monitor-and-pci-dss-10-5-5-and-11-5/m-p/594118#M7036</guid>
      <dc:creator>Piotr_Kowalczyk</dc:creator>
      <dc:date>2024-08-06T11:28:44Z</dc:date>
    </item>
  </channel>
</rss>

