See our SolarStorm response
  • Network Security
  • Cloud Security
  • Security Operations
  • More
  • Get support
  • Sign In
  • Get Started

Supercharge your security operations, today.

Transform your operations with scalable, automated processes for any security use case

Get the whitepaper Get the free edition
Too many alerts, not enough time
High alert volumes Inefficient prevention and an expanded threat surface have led to a growth in both the volume and sophistication of security alerts.
Disjointed processes Security teams must coordinate across a variety of detection, enrichment, response, and non-security tools while dealing with incidents.
Manual, repetitive tasks Security operations and incident response often involve tasks that, while important, are repetitive, laborious and don’t require nuanced human oversight.
Automation Rising
Discover the next big thing in SOAR
Introducing Cortex™ XSOAR Marketplace
Register now
Security automation and orchestration with Cortex™ XSOAR
  • Visual playbook editor
  • Live playbook review
  • Open, extensible product integrations
  • Codeless playbook creation
  • Regular content updates
  • Automate stakeholder engagement

Visual playbook editor

Easily build playbooks through a visual drag-and-drop interface that features thousands of automatable actions across security products, conditional paths, manual tasks and human approval for sensitive automations.

Live playbook review

Track progress with a real-time, task-by-task visualization of playbooks for each incident. This “Work Plan” view provides security teams with a seamless way to validate processes and troubleshoot when needed.

Open, extensible product integrations

Enable SOC automation with hundreds of built-in product integrations for automated alert ingestion, data transfer and enforcement across third-party solutions. A powerful internal SDK and PyCharm® plugin let you build your own custom integrations.

Codeless playbook creation

Use UI-based filters and transformers during playbook creation to manipulate incident data and implement complex automatable tasks without requiring any coding expertise.

Regular content updates

Realize compounding value from your Cortex XSOAR deployment with twice-monthly content updates that expand on out-of-the-box integrations, playbooks and automation scripts.

Automate stakeholder engagement

Standardize and automate engagement with security peers, other teams and end users through playbook tasks that send emails and collect data for incident context.

Easily build playbooks through a visual drag-and-drop interface that features thousands of automatable actions across security products, conditional paths, manual tasks and human approval for sensitive automations.
Track progress with a real-time, task-by-task visualization of playbooks for each incident. This “Work Plan” view provides security teams with a seamless way to validate processes and troubleshoot when needed.
Enable SOC automation with hundreds of built-in product integrations for automated alert ingestion, data transfer and enforcement across third-party solutions. A powerful internal SDK and PyCharm® plugin let you build your own custom integrations.
Use UI-based filters and transformers during playbook creation to manipulate incident data and implement complex automatable tasks without requiring any coding expertise.
Realize compounding value from your Cortex XSOAR deployment with twice-monthly content updates that expand on out-of-the-box integrations, playbooks and automation scripts.
Standardize and automate engagement with security peers, other teams and end users through playbook tasks that send emails and collect data for incident context.
Get the free edition

Recommended resources

  • Recommended resources
  • Recommended resources
Transforming Threat Intel Management with SOAR
Download whitepaper
Cortex XSOAR At-A-Glance
Download overview
Cortex XSOAR datasheet
Download
Cortex XSOAR in 5 Minutes
Watch video
Cortex XSOAR's native threat intel management capabilities
Watch video
Top Security Orchestration Use Cases
Download whitepaper
Gartner SOAR market guide
Download guide
How Cortex XSOAR maps with Gartner’s SOAR recommendations
Download the infographic
2019 State of SOAR Report
Download report
Security Orchestration for Dummies
Download eBook
Quick links
Get the free Community Edition
Get the free Community Edition
Request a Demo
Request a Demo
Cortex XSOAR Partner Integrations
Cortex XSOAR Partner Integrations
Build an Integration on Cortex XSOAR
Build an Integration on Cortex XSOAR
Join our DFIR Community
Join our DFIR Community
Check out our Playbooks on GitHub
Check out our Playbooks on GitHub

SOC Transformation:
Get started

Download your toolkit to get curated articles, case studies, demos and reports to help you transform your SOC.

By submitting this form, you agree to our Terms of Use and acknowledge our Privacy Statement.
Subscription Reward

Popular Resources

  • Blog
  • Communities
  • Content Library
  • Cyberpedia
  • Event Center
  • Investors
  • Tech Docs
  • Unit 42
  • Sitemap

Legal Notices

  • Privacy
  • Trust Center
  • Terms of Use
  • Documents

Popular Links

  • About Us
  • Careers
  • Contact Us
  • Manage Email Preferences
Report a Vulnerability
  • USA (ENGLISH)
  • AUSTRALIA (ENGLISH)
  • BRAZIL (PORTUGUÉS)
  • CANADA (ENGLISH)
  • CHINA (简体中文)
  • FRANCE (FRANÇAIS)
  • GERMANY (DEUTSCH)
  • INDIA (ENGLISH)
  • ITALY (ITALIANO)
  • JAPAN (日本語)
  • KOREA (한국어)
  • LATIN AMERICA (ESPAÑOL)
  • MEXICO (ESPAÑOL)
  • SINGAPORE (ENGLISH)
  • SPAIN (ESPAÑOL)
  • TAIWAN (繁體中文)
  • UK (ENGLISH)
  • Facebook
  • Linkedin
  • Twitter
  • Youtube
Create an account or login

© 2021 Palo Alto Networks, Inc. All rights reserved.