Platform:
Security Operations
Duration:
2 Days
Format:
Instructor-led training

Successful completion of this instructor- led course with hands- on lab activities should enable participants to:

  • Investigate and manage incidents
  • Describe the Cortex XDR causality and analytics concepts
  • Analyze alerts using the Causality and Timeline Views
  • Work with Cortex XDR Pro actions such as remote script execution
  • Create and manage on-demand and scheduled search queries in the Query Center
  • Create and manage the Cortex XDR rules BIOC and IOC
  • Working with Cortex XDR assets and inventories
  • Write XQL queries to search datasets and visualize the result sets
  • Work with Cortex XDR's external-data collection

Cybersecurity Analysts and Engineers, Security Operations Specialists

Participants must have taken the course EDU-260 (Cortex XDR: Prevention and Deployment).

Related Certifications: PCDRA, Security Operations Generalist

Palo Alto Networks Training Credits allow you a single point of purchase for training for use throughout the year. Training credits are redeemable by all employees within an organization for any Palo Alto Networks open enrollment, private on-site, or online course offered by our Authorized Training Partners (ATPs).