• Linkedin
  • Twitter
  • Facebook
  • +52 (55) 5985 8587
  • |
  • Whatsapp1

EDU 262
Cortex XDR: Investigation and Response
Contact EDU 262

 

Overview

This instructor-led course teaches you how to use the Incidents pages of the Cortex XDR management console to investigate attacks. It explains causality chains, detectors in the Analytics Engine, alerts versus logs, log stitching, and the concepts of causality and analytics

You will learn how to analyze alerts using the Causality and Timeline Views and how to use advanced response actions, such as remediation suggestions, the EDL service, and remote script execution

Multiple modules focus on how to leverage the collected data. You will create simple search queries in one module and XDR rules in another. The course demonstrate how to use specialized investigation views to visualize artifact-related data, such as IP and Hash

Views. Additionally, it provides an introduction to XDR Query Language (XQL). The course concludes with Cortex XDR external-data collection capabilities, including the use of Cortex XDR API to receive external alerts

Duration

  • 3 days

Language

  • English
  • Portuguese
  • Spanish

Delivery Mode:

  • ILT
  • VILT

Descarga PDF

Contact us!

 

Location Mexico

06-Apr-2026 PALO ALTO NETWORKS. 210
Firewall Essentials: Configuration & Management
13-Apr-2026 PALO ALTO NETWORKS. 013
Panorama NGFW Management
15-Apr-2026 PALO ALTO NETWORKS. 330
Firewall Troubleshooting
18-Apr-2026 PALO ALTO NETWORKS. 045
Cortex XSOAR: Engineering Security Automation Solutions
20-Apr-2026 PALO ALTO NETWORKS. 042
Cortex XDR: Security Operations and Integration
23-Apr-2026 PALO ALTO NETWORKS. 041
Cortex XDR: Investigation and Analysis
27-Apr-2026 PALO ALTO NETWORKS. 023
Prisma Access Browser
04-May-2026 PALO ALTO NETWORKS. 021
Prisma Access SSE: Configuration and Deployment
11-May-2026 PALO ALTO NETWORKS. 022
Prisma SD-WAN: Design and Operation
25-May-2026 PALO ALTO NETWORKS. 014
Panorama Centralized Network Security Administration
25-May-2026 PALO ALTO NETWORKS. 044
Cortex XSIAM: Security Operations, Integration & Automation
25-May-2026 PALO ALTO NETWORKS. 044
Cortex XSIAM: Security Operations, Integration & Automation
28-May-2026 PALO ALTO NETWORKS. 043
Cortex XSIAM: Investigation & Analysis
01-Jun-2026 PALO ALTO NETWORKS. 210
Firewall Essentials: Configuration & Management
08-Jun-2026 PALO ALTO NETWORKS. 013
Panorama NGFW Management
10-Jun-2026 PALO ALTO NETWORKS. 330
Firewall Troubleshooting
22-Jun-2026 PALO ALTO NETWORKS. 042
Cortex XDR: Security Operations and Integration
25-Jun-2026 PALO ALTO NETWORKS. 023
Prisma Access Browser
25-Jun-2026 PALO ALTO NETWORKS. 041
Cortex XDR: Investigation and Analysis
próximas

¿PODEMOS AYUDARTE?