Contact our team for any help or assistance.
0845 470 1000     Contact

Cortex XDR 2: Prevention, Analysis, and Response (EDU-260)

 

Course Overview

    This course is three days of instructor-led training that will help you to:
  • Differentiate the architecture and components of the Cortex XDR family
  • Describe Cortex, Cortex Data Lake, the Customer Support Portal, and the hub
  • Activate Cortex XDR, deploy the agents, and work with the management console
  • Work with the Cortex XDR management console, describe a typical management page, and work with the tables and filters
  • Create Cortex XDR agent installation packages, endpoint groups, policies, and profiles
  • Create and manage exploit and malware profiles, and perform response actions
  • Describe detection challenges with behavioral threats
  • Differentiate the Cortex XDR rules BIOC and IOC, and create and manage them
  • Describe the Cortex XDR causality analysis and analytics concepts
  • Triage and investigate alerts and incidents, and create alert starring and exclusion policies
  • Work with the Causality and Timeline Views and investigate threats in the Query Center

The technical curriculum developed and authorized by Palo Alto Networks and delivered by Palo Alto Networks Authorized Training Partners helps provide the knowledge and expertise that prepare you to protect our digital way of life. Our trusted certifications validate your knowledge of the Palo Alto Networks product portfolio and your ability to help prevent successful cyberattacks and safely enable applications.

Who should attend

  • Cybersecurity Analysts
  • Cybersecurity Engineers
  • Security Operations Specialists

Prerequisites

Participants must be familiar with enterprise security concepts.

Course Objectives

    Successful completion of this instructor-led course with hands-on lab activities should enhance the student’s understanding of:
  • How to activate a Cortex XDR instance
  • Create agent installation packages to install the Cortex XDR agents
  • Create security policies and profiles to protect endpoints against multi-stage, fileless attacks built using malware and exploits; respond to attacks using response actions
  • Understand behavioral threat analysis, log stitching, agent-provided enhanced endpoint data, and causality analysis
  • Investigate and triage attacks using the incident management page of Cortex XDR and analyze alerts using the Causality and Timeline analysis views; use API to insert alerts
  • Create BIOC rules
  • Search a lead in raw data sets in Cortex Data Lake using Cortex XDR Query Builder
Online Training

Duration 3 days

Price (excl. VAT)
  • £ 2,250.—
  • Palo Alto Training Credits: 31 PTC
Classroom Training

Duration 3 days

Price (excl. VAT)
  • United Kingdom: £ 2,250.—
  • Palo Alto Training Credits: 31 PTC

Schedule

This course is guaranteed to run. Please see our complete terms and conditions for full details of this offer.
Instructor-led Online Training:   This computer icon in the schedule indicates that this date/time will be conducted as Instructor-Led Online Training.
This is a FLEX course, which is delivered both virtually and in the classroom. Please note, local pricing is applicable.
English
European Time Zones
Online Training Time zone: Greenwich Mean Time (GMT)
Online Training Time zone: British Summer Time (BST)
Online Training Time zone: British Summer Time (BST)
Online Training Time zone: British Summer Time (BST)
5 hours difference
Online Training Time zone: Eastern Daylight Time (EDT)
Online Training Time zone: Eastern Daylight Time (EDT)
Online Training Time zone: Eastern Daylight Time (EDT)
Online Training Time zone: Eastern Daylight Time (EDT)
6 hours difference
Online Training Time zone: Central Standard Time (CST) Guaranteed date!
Online Training Time zone: Central Standard Time (CST) Guaranteed date!
Online Training Time zone: Central Standard Time (CST) Guaranteed date!
Online Training Time zone: Central Standard Time (CST)
Online Training Time zone: Central Standard Time (CST)
Online Training Time zone: Central Standard Time (CST) Guaranteed date!
Online Training Time zone: Central Standard Time (CST) Guaranteed date!
Online Training Time zone: Central Daylight Time (CDT) Guaranteed date!
Online Training Time zone: Central Daylight Time (CDT)
Online Training Time zone: Central Daylight Time (CDT)
7 hours difference
Online Training Time zone: Pacific Daylight Time (PDT)
Online Training Time zone: Pacific Daylight Time (PDT)
8 hours difference
Online Training Time zone: Pacific Standard Time (PST)
Online Training Time zone: Pacific Standard Time (PST)
Online Training Time zone: Pacific Daylight Time (PDT)
Online Training Time zone: Pacific Daylight Time (PDT)
This is a FLEX course, which is delivered both virtually and in the classroom. Please note, local pricing is applicable.
United Kingdom
London, City This is a FLEX course.   Time zone: Europe/London Book now:
Book online training
Book classroom training
London, City This is a FLEX course.   Time zone: Europe/London Book now:
Book online training
Book classroom training
London, City This is a FLEX course.   Time zone: Europe/London Book now:
Book online training
Book classroom training

Fast Lane Flex™ Classroom If you can't find a suitable date, don't forget to check our world-wide FLEX training schedule.