AI is making adversaries 100x faster

Human-driven operations can’t keep pace

Autonomous security is the only answer

Cortex® AgentiX: Unleash an AI agent workforce that’s trusted, skilled and keeps you 100% in control

SOLUTION

Security Automation in the AI Era

Personalized

Build and run intelligent agents grounded in your organization’s context and policies.

Autonomous

Agents reason, plan and execute workflows to independently resolve incidents.

Controlled

Agents are bound by the same roles and permissions as analysts, with human-in-the-loop approvals when needed.

Product Tour

CORTEX AGENTIX

The next generation of Cortex XSOAR®: Build, deploy and govern the agentic workforce of the future.

Put Expert AI Agents to Work for You

Powered by frontier AI, these agents act as intelligent teammates available 24/7 to plan and carry out complex workflows. You can prompt an agent in real time or trigger it autonomously. Choose from a library of specialized agents or easily build one to fit.

Maintain Absolute Control Over Agent Autonomy

Scale your agentic workforce while maintaining total control. Define when agents act independently or require approval for high-impact actions. Operating within existing roles and permissions, agents provide complete transparency into every step of their reasoning process.

Tag an Agent Anywhere in Your Workflow

Work hand-in-hand with specialized agents at every stage of detection and response for a faster, smarter experience.

Infuse Playbooks with Dynamic AI Reasoning

Stop building rigid, static workflows. Drop prebuilt AI prompts directly into your playbooks or easily write your own using natural language. Instantly automate complex tasks like summarizing raw logs, normalizing data and analyzing threats at scale.

API or MCP? We’ve Got You Covered

Accelerate automation with over 1,100 prebuilt integrations and native Model Context Protocol (MCP) support. Easily assign tools from external MCP servers to your agents, or use the Cortex MCP Server to safely query Cortex data from your LLM of choice.

Integrate Agentic AI Everywhere

Cortex AgentiX powers the Cortex Agentic Assistant, your interface to deploy and control AI agents across Cortex XSIAM®, Cortex XDR® and Cortex Cloud.

Customer Success

Over 1,000 Cortex customers have enabled AgentiX



Frequently asked questions

Cortex AgentiX is Palo Alto Networks' next-generation security automation solution designed to build, deploy, and govern an AI-driven agentic workforce. Powered by frontier AI, AgentiX deploys intelligent security agents that act as 24/7 teammates.
It improves SecOps by empowering AI agents to autonomously reason, plan, and execute complex workflows. This accelerates threat investigation and incident resolution while giving teams customizable control over agent autonomy and operational guardrails.
Yes, Cortex AgentiX is designed to keep you 100% in control of your AI workforce. Administrators can set strict boundaries, defining exactly when AI agents can act independently and when they require human-in-the-loop approvals for high-impact actions. Furthermore, agents are governed by your organization's existing roles and permissions, offering complete transparency into the AI’s reasoning and decision-making process at every step.
Absolutely. Cortex AgentiX empowers you to build highly personalized AI agents grounded in your organization’s specific context, data, and security policies. You can choose from a library of specialized, prebuilt agents—such as the Case Investigation Agent or Automation Engineer Agent—or easily build your own custom agents tailored to your unique security environment and threat landscape.
Cortex AgentiX fits seamlessly into your existing security architecture with over 1,100 prebuilt integrations. It also features native Model Context Protocol (MCP) support. This allows SecOps teams to easily assign external tools to their AI agents or use the Cortex MCP Server to securely query Cortex data (like Cortex XSIAM or XDR) from their preferred Large Language Model (LLM).

Engage with Us

​​Get the latest news, invites to events and threat alerts.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.