Cortex XSIAM Discussions
Cortex XSIAM, the autonomous security platform powering the Modern SOC, operates across cloud and enterprise security operations, providing true end-to-end management of threats wherever they originate.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Discussions

Welcome to the Cortex XSIAM Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 2780 Views
  • 0 replies
  • 0 Likes

XQL query Help for custom XQL widgets

I would like to customize the standard "Detections By Actions" widget to filter only on true positive (resolved) incidents - for the last 30 days. And I would like to customize the standard "Open incidents by severity" widget to apply on all incidents, not only opened ones - for the last 30 days.I suppose it's possible by XQL-query but I'm a beg...

jennaqualls by Community Team Member
  • 3647 Views
  • 1 replies
  • 3 Likes
Labels