Hi, we are about to activate Cortex XDR agent with Default Policy Rules (i.e. Default Exploit, Malware, Restrictions, Agent settings and Exceptions profiles) on some Windows servers which contain a huge amount of data (terabytes). Are there some recommended best practices to follow or some functionalities that should be disabled in order to avoid any kind of impact on these kind of servers in terms of performances? For example, we were told that "File Search and Destroy" feature could cause a huge overhead for some time after the agent has been activated. Furthermore, can anyone provide an estimate of how long a Cortex XDR malware scan on 1 TB of data might take? Thanks in advance.
... View more