Skip to main content

Vectra XDR

Download With Dependencies

Vectra XDR pack empowers the SOC to create incidents using Vectra AI's Attack Signal Intelligence.

Vectra XDR pack allows the security operations center to create incidents based on prioritized Entities, powered by Vectra AI's Attack Signal Intelligence. This pack enables security teams to synchronize the Vectra XDR Entities with Cortex XSOAR incidents in real time, making it feasible to manage operations from a single place.

What does this pack do?
  • Fetch entities and their detections from Vectra XDR.
  • List and Describe Entities and Detections.
  • List, Create, Update, and Resolve Entity Assignments.
  • List Assignment Outcomes.
  • List, Create, Update, and Delete Entity notes.
  • List, Update, and Remove Entity tags.
  • List, Assign, and Unassign members in Group.
  • Mark and Unmark Entity’s detections as fixed.
  • Download PCAP of detection.

Support

If you have questions or concerns about the content you're receiving, please reach out for support at https://support.vectra.ai or support@vectra.ai.

For more information, visit our Cortex XSOAR Developer Docs

Vectra XDR pack allows the security operations center to create incidents based on prioritized Entities, powered by Vectra AI's Attack Signal Intelligence. This pack enables security teams to synchronize the Vectra XDR Entities with Cortex XSIAM incidents in real time, making it feasible to manage operations from a single place.

What does this pack do?
  • Fetch entities and their detections from Vectra XDR.
  • List and Describe Entities and Detections.
  • List, Create, Update, and Resolve Entity Assignments.
  • List Assignment Outcomes.
  • List, Create, Update, and Delete Entity notes.
  • List, Update, and Remove Entity tags.
  • List, Assign, and Unassign members in Group.
  • Mark and Unmark Entity’s detections as fixed.
  • Download PCAP of detection.

Support

If you have questions or concerns about the content you're receiving, please reach out for support at https://support.vectra.ai or support@vectra.ai.

For more information, visit our Cortex XSIAM Developer Docs

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByPartner
CreatedNovember 26, 2023
Last ReleaseNovember 20, 2024
Network Security
Asset Management
Vulnerability Management
Breach Notification
Incident Response
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.