We are using Palo Alto Networks Cortex XSOAR for automation.
Security Project Manager at a retailer with 10,001+ employees
Reliable, overall beneficial capabilities, but feature improvement needed
Pros and Cons
- "The most valuable features of Palo Alto Networks Cortex XSOAR are its overall track record and features that fit our use case."
- "Palo Alto Networks Cortex XSOAR could improve the Panorama feature. We had to turn it off because it was not working properly."
What is our primary use case?
What is most valuable?
The most valuable features of Palo Alto Networks Cortex XSOAR are its overall track record and features that fit our use case.
What needs improvement?
Palo Alto Networks Cortex XSOAR could improve the Panorama feature. We had to turn it off because it was not working properly.
For how long have I used the solution?
I have been using Palo Alto Networks Cortex XSOAR for approximately six months.
Buyer's Guide
Palo Alto Networks Cortex XSOAR
January 2025
Learn what your peers think about Palo Alto Networks Cortex XSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
832,138 professionals have used our research since 2012.
What do I think about the stability of the solution?
Palo Alto Networks Cortex XSOAR is a stable solution.
What do I think about the scalability of the solution?
The scalability of Palo Alto Networks Cortex XSOAR is fine for what we are using it for.
We have our SecOps department of user 50 people that are using the solution for alerts. We plan to increase usage in the future.
How are customer service and support?
The support from Palo Alto Networks Cortex XSOAR could improve. However, a lot of the support is poor.
What about the implementation team?
We have three people in the security operations that do the maintenance and support of Palo Alto Networks Cortex XSOAR.
What's my experience with pricing, setup cost, and licensing?
The price of Palo Alto Networks Cortex XSOAR is comparable to other solutions in the market.
What other advice do I have?
I rate Palo Alto Networks Cortex XSOAR a six out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Vice President Global Technology Infrastructure Automation at a financial services firm with 10,001+ employees
Detects and whitelists certain IP addresses based on where they're coming from
Pros and Cons
- "The solution is very reliable."
- "The solution is very expensive."
What is our primary use case?
We use Palo Alto as a firewall, a system for detecting and whitelisting certain IP addresses or to block certain IP addresses based on where they're coming from. We then send the logs to another log management tool for more forensics and analysis before we make a decision.
We're basically using Palo Alto for firewalling and sending those logs to another security monitoring tool to make decisions based on analytics that it provides us.
What is most valuable?
The solution is very reliable. The performance is great.
The scalability of the solution is excellent.
We find the solution to be very robust. Palo Alto has been in the industry a long time and the solution reflects that.
The initial setup is very straightforward. It's not hard to deploy.
What needs improvement?
The solution is very expensive. They would get more clients if it wasn't so pricey.
For how long have I used the solution?
I've been using the solution for about four years at this time. It's been a while.
What do I think about the stability of the solution?
The solution is very reliable in terms of performance. It doesn't crash or freeze. There are no bugs or glitches.
What do I think about the scalability of the solution?
The solution is extremely scalable. If a company needs to expand it, it can do so easily.
How are customer service and technical support?
The technical support has been very good. Palo Alto is top of the line. They've been in the industry a long time and their support team reflects that knowledge. We are very satisfied with their level of support.
Which solution did I use previously and why did I switch?
I also work with Fortinet. We've used them for around the same amount of time.
How was the initial setup?
We found the initial setup to be quite straightforward. It's not hard to do. A company shouldn't have too much of a problem getting it up and running.
What's my experience with pricing, setup cost, and licensing?
I cannot speak to the exact cost of the solution or how much our organization pays.
However, it is my understanding that the product is extremely expensive.
What other advice do I have?
I'm not sure which version of the solution we're using at this time.
I'd rate the solution at an eight out of ten. We've been quite pleased with its capabilities. The only thing is it is pretty expensive.
I'd recommend other users work both with Palo Alto and Fortinet. They are great together. They compliment each other nicely.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Palo Alto Networks Cortex XSOAR
January 2025
Learn what your peers think about Palo Alto Networks Cortex XSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
832,138 professionals have used our research since 2012.
Security Operations Center Analyst (L2 at Thales
An easy-to-setup solution with good technical support services
Pros and Cons
- "It is a scalable solution."
- "They should provide integration with machine learning platforms."
What is our primary use case?
We use the solution for incident orchestration.
How has it helped my organization?
The solution helps us with incident analysis.
What is most valuable?
The solution has the best processing and incident analysis features.
What needs improvement?
The solution's price could be better. Also, they should provide integration with machine learning and artificial intelligence platforms.
For how long have I used the solution?
We have been using the solution for seven months.
What do I think about the stability of the solution?
I rate the solution's stability an eight out of ten.
What do I think about the scalability of the solution?
I rate the solution's scalability a ten out of ten.
How are customer service and support?
The solution's technical support team is good.
How would you rate customer service and support?
Positive
How was the initial setup?
The solution's initial setup process is easy. We implement it on the cloud and premises.
What was our ROI?
The solution generates a good return on investment.
What's my experience with pricing, setup cost, and licensing?
The solution's pricing needs improvement.
What other advice do I have?
I recommend the solution to others and rate it a ten out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Intern Cybersecurity at a computer software company with 10,001+ employees
The drag-and-drop interface enables analysts with no programming knowledge to create playbooks easily
Pros and Cons
- "The drag-and-drop interface enables analysts with no programming knowledge to create playbooks easily."
- "XSOAR could have more integration options."
What is our primary use case?
I'm currently evaluating XSOAR to see what the solution can do. I'm playing around with the various features.
What is most valuable?
The drag-and-drop interface enables analysts with no programming knowledge to create playbooks easily.
What needs improvement?
XSOAR could have more integration options.
For how long have I used the solution?
I have used XSOAR for two months.
What do I think about the stability of the solution?
XSOAR is stable.
How was the initial setup?
Setting up XSOAR is straightforward and takes about 30 minutes. It doesn't require any special technology to implement it in any architecture. You create a virtual machine, move the file to it, launch the installer, and let it run. It doesn't require any complex tasks.
What other advice do I have?
I rate Palo Alto Networks Cortex XSOAR nine out of 10.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Hybrid Cyber Security Team Lead at Dndx CyberSecurity
Easy to use and scalable
Pros and Cons
- "Palo Alto is easy to use."
- "The dashboard could be better."
What is our primary use case?
The solution is used for security.
What is most valuable?
Palo Alto is easy to use.
What needs improvement?
The dashboard could be better.
For how long have I used the solution?
I have used Palo Alto Network Cortex for six months.
What do I think about the stability of the solution?
There are issues with stability as it was giving false positives and has bugs. I rate the stability a seven out of ten.
What do I think about the scalability of the solution?
It is a scalable solution. There are two hundred users using the solution at present. I rate the scalability an eight out of ten.
What about the implementation team?
The solution was deployed by analysts.
What other advice do I have?
I rate the overall solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Business Development Manager at a tech services company with 11-50 employees
Comprehensive network and highly scalable solution
Pros and Cons
- "It is a scalable solution. I would rate scalability a ten out of ten."
- "There is room for improvement in terms of the pricing model."
What is our primary use case?
Our clients use it in our managed service platform, in our cloud. We also provide solutions to our clients on Service Cloud and XDR.
What is most valuable?
The advanced security capabilities and the automation available with the solution are the most valuable solution. Moreover, the scalability and ease of management are additional benefits.
What needs improvement?
There is room for improvement in terms of the pricing model.
For how long have I used the solution?
We've been selling and working with it for eight years.
What do I think about the stability of the solution?
It is a stable solution. I would rate stability a ten out of ten.
What do I think about the scalability of the solution?
It is a scalable solution. I would rate scalability a ten out of ten. Our clients are enterprise businesses.
How are customer service and support?
The customer support is good.
How would you rate customer service and support?
Positive
How was the initial setup?
Since we handled the installation ourselves in our environment, it's really easy for us to install.
It may not be the easiest installation, especially when configuring agents with specific functionalities. But the initial setup is relatively easy. Maintenance is ongoing. It's always required to ensure the system runs smoothly.
What about the implementation team?
The deployment process really depends on the client. It varies based on the complexity of the deployment. Each time is different. It could take anywhere from a few days to a week.
We probably have around six people involved in the process. When it comes to setup, it's all about proper planning and understanding the client's specific needs and requirements for the service.
What's my experience with pricing, setup cost, and licensing?
I would rate pricing a seven out of ten, where one is a low price, and ten is a high price. We use the annual subscription. There are no additional costs.
What other advice do I have?
I would advise them to explore the extensive features it offers in terms of organization and remediation. It's important to consider its seamless integration with other platforms and the wide range of services and products provided by the company.
Overall, I would rate the solution a nine out of ten because the product offers a comprehensive network and cloud solution. We can provide clients with a complete end-to-end solution through a single vendor.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Business Development Manager at a tech services company with 51-200 employees
Has good stability and an easy initial setup process
Pros and Cons
- "The solution is easy to deploy."
- "The solution's technical support could be better."
What is our primary use case?
We use the solution to create playbooks for all the operational programs.
What needs improvement?
The solution's integration with non-security solutions will be helpful.
For how long have I used the solution?
We have been using the solution for almost two years now.
What do I think about the stability of the solution?
The solution is stable. I rate its stability an eight.
What do I think about the scalability of the solution?
I rate the solution's scalability as an eight. It is complex to scale.
How are customer service and support?
The solution's technical support team takes longer to reply to the queries.
How would you rate customer service and support?
Neutral
How was the initial setup?
The solution's initial setup process is straightforward.
What's my experience with pricing, setup cost, and licensing?
The solution's cost is reasonable. I rate its pricing as a five.
What other advice do I have?
I rate the solution an eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
A great scalable tool that provides functionalities related to patching and URL blocking
Pros and Cons
- "The strengths of Palo Alto Networks Cortex XSOAR stem from the fact that it provides functionalities related to patching and URL blocking...It is a scalable solution."
- "With Palo Alto Networks Cortex XSOAR, managing its setup phase can be a complicated task."
What is most valuable?
The strengths of Palo Alto Networks Cortex XSOAR stem from the fact that it provides functionalities related to patching and URL blocking, and its strengths are the major reason why I recommend the product to others.
What needs improvement?
With Palo Alto Networks Cortex XSOAR, managing its setup phase can be a complicated task. The aforementioned aspects of the solution can be considered for improvement. In the future, I need the product to provide me with the ability to manage its base.
In the future, I want Palo Alto Networks Cortex XSOAR to provide me with an option that allows me to do an automatic setup process. I also want Palo Alto Networks Cortex XSOAR to plan a way to minimize the need for too many configuration processes in an architecture. I feel that currently, the setup process of the product is really hard.
For how long have I used the solution?
I have experience with Palo Alto Networks Cortex XSOAR. My company has a partnership with Palo Alto Networks.
What do I think about the stability of the solution?
We don't face any issues with Palo Alto Networks Cortex XSOAR in our company right now. Certain issues only crop up with the firewall devices from Palo Alto Networks.
What do I think about the scalability of the solution?
It is a scalable solution.
How are customer service and support?
I rate the technical support a nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I only handle Palo Alto Networks.
How was the initial setup?
I did not manage the initial setup of the product, as it was taken care of by a product specialist.
Which other solutions did I evaluate?
I am more comfortable with Palo Alto Networks compared to its competitors.
What other advice do I have?
I can say that I am a bit satisfied with Palo Alto Networks Cortex XSOAR. I manage the product's setup phase, so I am getting familiarized with it.
I can only recommend Palo Alto Networks Cortex XSOAR after I personally complete the setup phase of the product in our environment. In general, after I complete the setup process of Palo Alto Networks Cortex XSOAR in my company, I will recommend it to others.
I rate the overall tool an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Download our free Palo Alto Networks Cortex XSOAR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2025
Popular Comparisons
Microsoft Sentinel
IBM Security QRadar
AWS Security Hub
Sumo Logic Security
ThreatConnect Threat Intelligence Platform (TIP)
ServiceNow Security Operations
Fortinet FortiSOAR
NetWitness NDR
IBM Resilient
McAfee ePolicy Orchestrator
Buyer's Guide
Download our free Palo Alto Networks Cortex XSOAR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which Do You Recommend, Phantom or Demisto?
- Which SOAR product has the better value: Palo Alto Networks Cortex XSOAR or Swimlane? Why?
- Which solution do you prefer: Microsoft Sentinel or Palo Alto Networks Cortex XSOAR?
- What are the Top 5 cybersecurity trends in 2022?
- What is the difference between SIEM and SOAR platforms?
- What is an incident response playbook and how is it used in SOAR?
- What are the latest trends in Security Operations Center (SOC)?
- What tools and solutions do you use for automated incident response in an enterprise in 2022?
- How to evaluate SIEM detection rules?
- Why a Security Operations Center (SOC) is important?