Skip to content

We would like to inform you that both our Computer Pride Nairobi and Mombasa offices will be closed completely from Wednesday, 19th July 2023 to Thursday, 27th July 2023. We will resume our regular operations on Friday, 28th July 2023.

This closure is in observance of the special Ashara Mubaraka prayers. In case of any urgent inquiries or assistance, please feel free to contact us at info@computer-pride.co.ke.

Search...

Palo Alto Networks: Cortex XSIAM: Security Operations, Integration, and Automation

Courses Overview

The Palo Alto Networks: Cortex XSIAM: Security Operations, Integration, and Automation course is designed to provide cybersecurity professionals with the skills to manage, integrate, and automate security operations using the industry’s most comprehensive Security Incident and Asset Management (XSIAM) platform.
XSIAM delivers extensive visibility and control for protecting infrastructure, workloads, and applications across multi-cloud and hybrid environments. This course covers both foundational components and advanced capabilities, giving participants practical knowledge of incident handling, automation, integrations, and operational optimization.

By completing this course, you will be able to:
  • Explain the role of endpoint agents, XDR collectors, NGFWs, and Broker VMs in securing networks and devices
  • Use XQL queries to analyze logs for improved data ingestion and threat detection
  • Configure Threat Intelligence Management features to strengthen security operations
  • Automate workflows and apply External Dynamic Lists (EDLs) and indicator rules
  • Develop automation processes, manage indicators, and optimize dashboards for enhanced SOC performance
This course is intended for:
  • SOC, CERT, CSIRT, and XSIAM Engineers and Managers
  • MSSPs and Service Delivery Partners/System Integrators
  • Professional Services Consultants (internal or external)
  • Sales Engineers
  • SIEM and Automation Engineers

Participants will gain both theoretical and practical expertise in using Cortex XSIAM to secure enterprise environments. The course reviews XSIAM in depth — from its core components to advanced strategies for integrations, automation, workflow development, and dashboard optimization — equipping learners to enhance visibility, detection, and response.

  1. Course Overview
  2. Overview of Cortex XSIAM
  3. Software Components
  4. XQL
  5. Detection Engineering
  6. Integrations
  7. Automation
  8. Threat Intel Management
  9. Attack Surface Management
  10. UI Customizations
Participants should have:
  • A foundational understanding of cybersecurity concepts
  • Experience in incident analysis and the use of security tools for investigations