---
title: Palo Alto Networks Cortex XSOAR Reviews
meta_title: 'Palo Alto Networks Cortex XSOAR Reviews 2026: Details, Pricing, & Features
  | G2'
meta_description: Filter 28 reviews by the users' company size, role or industry to
  find out how Palo Alto Networks Cortex XSOAR works for a business like yours.
aggregate_rating:
  rating_value: 4.6
  review_count: 28
  scale: '5'
date_modified: '2026-07-17'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---

# Palo Alto Networks Cortex XSOAR Reviews
**Vendor:** Palo Alto Networks  
**Category:** [Security Orchestration, Automation, and Response (SOAR) Software](https://www.g2.com/categories/security-orchestration-automation-and-response-soar)  
**Average Rating:** 4.6/5.0  
**Total Reviews:** 28
## About Palo Alto Networks Cortex XSOAR
Palo Alto Networks&#39; Cortex XSOAR is a comprehensive Security Orchestration, Automation, and Response (SOAR) platform designed to streamline and enhance security operations. By integrating automation, case management, real-time collaboration, and threat intelligence management, Cortex XSOAR empowers security teams to respond to incidents more efficiently and effectively. Key Features and Functionality: - Process Standardization and Automation: Cortex XSOAR offers over 270 out-of-the-box playbooks, enabling the automation of numerous security use cases. These playbooks orchestrate response actions across more than 350 third-party products, facilitating seamless integration and operational consistency. - Security-Focused Case Management: The platform unifies alerts, incidents, and indicators from various sources into a single case management framework. This consolidation accelerates incident response by providing a comprehensive view of security events. - Real-Time Collaboration: Cortex XSOAR includes a Virtual War Room equipped with built-in ChatOps and a command-line interface. This feature allows security teams to collaborate in real time, execute commands across the entire product stack, and manage incidents more effectively. - Threat Intelligence Management: The platform aggregates disparate threat intelligence sources, customizes and scores feeds, and matches indicators against the organization&#39;s specific environment. This capability enables security teams to take informed actions swiftly. Primary Value and Problem Solving: Cortex XSOAR addresses the challenges faced by security teams, such as the overwhelming volume of alerts and the need for rapid incident response. By automating repetitive tasks and standardizing processes, the platform reduces the time spent on incidents by up to 90%, allowing analysts to focus on critical threats. The integration of threat intelligence management with SOAR capabilities ensures that organizations can operationalize threat feeds effectively, enhancing their overall security posture. Additionally, the platform&#39;s extensive integration ecosystem, with over 360 third-party integrations, enables organizations to orchestrate complex workflows across their existing security infrastructure without extensive custom development.



## Palo Alto Networks Cortex XSOAR Pros & Cons
**What users like:**

- Users value the **powerful automation** capabilities of Cortex XSOAR, enhancing incident response efficiency and customization. (3 reviews)
- Users enjoy the **great UI** of Palo Alto Networks Cortex XSOAR, which enhances usability and customization significantly. (2 reviews)
- Users admire the **accuracy of information** in Palo Alto Networks Cortex XSOAR, enhancing safety and efficiency in operations. (1 reviews)
- Users value the **powerful automation** capabilities of Cortex XSOAR for efficient incident response management. (1 reviews)
- Users appreciate the **direct customer support** of Palo Alto Networks Cortex XSOAR, enhancing their overall experience. (1 reviews)
- Data Management (1 reviews)
- Ease of Use (1 reviews)
- Easy Integrations (1 reviews)
- Users value the **integration capabilities** of Cortex XSOAR, enabling effective incident management across large environments. (1 reviews)
- Integrations (1 reviews)

**What users dislike:**

- Users find the **learning curve steep** , requiring significant time and effort to effectively manage Cortex XSOAR&#39;s complexities. (2 reviews)
- Users feel that the **limited customization** options hinder the overall reporting experience in Cortex XSOAR. (1 reviews)
- Users find **logging issues** arise from hard-to-read data logs that require opening in a new tab for clarity. (1 reviews)
- Users find **log management issues** frustrating, as reading data logs quickly is challenging due to window size limitations. (1 reviews)
- Users find the **reporting lacking** and desire enhanced customization options for a better experience. (1 reviews)
- Users find the **time consumption** of Palo Alto Networks Cortex XSOAR frustrating as it requires significant effort to manage effectively. (1 reviews)

## Palo Alto Networks Cortex XSOAR Reviews
  ### 1. Unlocking Security Operations automation with Cortex XSOAR

**Rating:** 5.0/5.0 stars

**Reviewed by:** Jai P. | Cyber Security Engineer, Security and Investigations, Mid-Market (51-1000 emp.)

**Reviewed Date:** November 06, 2024

**What do you like best about Palo Alto Networks Cortex XSOAR?**

PAlo alto cortex xsoar comes for both On-Premises and Cloud which makes its implementation easy and best as per needs. It provide the easy and scalable deployment. It have its own threat intelligence Unit 42 through which it correlate the logs and find the threats before attack take place. It comes with marketplace with more than 1000 integrations, only you have to go to marketplace and download the integration which u want and can easily integrate just with one click add instances. When we talk about the customere support , plao alto team provide the support within 30 min for critical issues which is so fast to solve the challenges. XSOAR is used in organization frequently to reduce the chance of attack and  take action faster before attack take place. It have predefined reports and playbooks which comes with the content pack in marketplace.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Palo Alto cortex xsoar is fully advanced SOAR solutions with multiple features than others. As the product dont have anything which is dislikes rather than the cost which is little expensive but beacuse of features the cost less as per my views. As i face little challenges in integrating on-premises solution with cortex xsoar cloud. Rather than this this product can make life easier for security analyst to investigate and respond to threat, they not have to switch tab by tab for investigating threats.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

With the help of palo alto cortex xsoar we are able to take automated response on the sophsticated attacks and threats. Lets take and example of Phising attacks. An employee of my company get the phising mail that alert was generated by Cortex xdr with the help of sendedr email of link in the mail. Th xdr push the alert to cortex xsoar where we will identify whether the mail is really a phising mail of not. To do this we will investigate the alert for that we will go in incident and find the incident of phshing, after clicking on incident we will get thye basic information from the xdr investogation of incident and after going in wok plan we will select a playbook whether it is predefined or we had created before for phising attack that when we will get phising attack what action whould be taken. We will associate that playbook and run the playbook with the help of playbook the incident will b einvestigated and if found phsing than it will get blocked in the organizations. With the help of Cortex xsoar we are able to take response on the incident, threat or attacks which damage the organization before the attack happen. It helps in improving the security posture of my organization and also helps in compliance beacuse it have predefined reports. It also helps in preventing the organization from malicious activities or threats which can damage or occur data breach.

  ### 2. Powerful Tool with Clean Data and Seamless Integrations

**Rating:** 5.0/5.0 stars

**Reviewed by:** Pablo V. | Senior SOC Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** November 17, 2025

**What do you like best about Palo Alto Networks Cortex XSOAR?**

very strong and powerfull tool, it provides nice and clean data information, entities, links, and we can intragrate a lot of tools into it to work safe and faster

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

sometimes the results from data logs are not easy to read faster due to window size. We need to open them in a new tab

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

several tooling into a single merged with user friendly interface

  ### 3. One of the best SOAR platform easy to integrate with Sekoia and Recorded Future

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Manufacturing | Enterprise (> 1000 emp.)

**Reviewed Date:** February 05, 2025

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Pretty good perfomance on a very large environment like ours with 65,000+ Cortex XDR agents. We have it integrated with IOCs from Recorded Future and Sekoia CTI feeds, which works pretty well for us. We have playbooks to adjust incidents score and severity based on IOC risk score obtained through the integration.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Reporting can be improved and wish for more customization options

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Saves a lot of manual work on incident management. Our playbooks make it easier for the GSOC analysts to prioritize incidents based on incident score, which the playbooks update based on feeds from third-party CTI sources. We developed a playbook to automatically email weekly reports which include Excel attachments containig all Cortex XDR agents deployed at each site. This allows the local IT admins to take actions to fix or reinstall the agent when it may get corrupt or stop communicating. The Cortex XSOAR also helps automatically closing False Positive incidents, runs Cortex malware scans and our cyber security analysts can focus on more critical incidents.

  ### 4. Simplifying Threat Intelligence with Palo Alto Networks AutoFocus

**Rating:** 5.0/5.0 stars

**Reviewed by:** MATHEW SHIJOY R. | IT-HOD, Manufacturing, Mid-Market (51-1000 emp.)

**Reviewed Date:** May 16, 2025

**What do you like best about Palo Alto Networks Cortex XSOAR?**

It helps security teams cut through the noise of numerous alerts by distinguishing between high-impact threats and more common attacks. The tagging system, including Unit 42 tags, is particularly useful for this.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

While the interface is generally considered intuitive, some aspects like configuration might be complex, potentially leading to a steeper learning curve for new users.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

egularly reviewing and fine-tuning the configuration of security tools is crucial to reduce false positives and irrelevant alerts. This involves adjusting detection rules, setting appropriate thresholds, and creating baselines of normal network and system behavior to highlight anomalies more effectively.

  ### 5. I'm a network security engineer

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mohammed S. | Network Security Engineer, Telecommunications, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 23, 2025

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Help my organization to detect any suspicious activity and take the action against.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Complex in working and I toke a lot of time until could deal with.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Nothing

  ### 6. Great XSOAR, Easily customizible

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Retail | Enterprise (> 1000 emp.)

**Reviewed Date:** March 26, 2025

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Very customizable, great UI, very powerful when it comes to automating tasks for incident response. Good direct customer support.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

customer service, on-prem maintenance, does take time to learn the ropes

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Time to work incidents and time management when it comes to enrichment of palybooks

  ### 7. Purchase Worthy and Effective Product

**Rating:** 4.5/5.0 stars

**Reviewed by:** Perinban M. | Network Security Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** April 10, 2024

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Event labelling and prioritisation.
Personalised notifications for particular events and indications.
Personalised notifications for particular events and indications.
Unit 42 direct integration on the dashboard with minemeld integration via the indicationsIn comparison to your company's DNSC perspective, sectoral and views are excellent
I receive more information about the autofocus .

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

I am only able to directly integrate other suppliers into the PaloAlto system.
There aren't many application connectors; for automation, you need have your personal SOAR.
Privacy concerns: certain information or variables cannot be hashed on the cloud.
The cloud data sharing feature offers limit settings.
I don't see data going in, being analysed, or being integrated for the Prisma cloud side; it's intended for strata.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Specifically, AutoFocus helps you in monitoring threat trends associated with targeted cyberattacks, allowing you to take proactive measures to safeguard the network.

  ### 8. A short note on Palo Alto AutoFocus

**Rating:** 4.5/5.0 stars

**Reviewed by:** Vishal V. | Network Security Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 10, 2023

**What do you like best about Palo Alto Networks Cortex XSOAR?**

This feature is supported in PanOs 7.1 and later gives a complete intelligence summary of Firewall logs. It is a kind of repository of Palo Alto Networks which contains information regarding the available threat.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

1. It is solely related to Palo Alto Networks, we can't integrate with other vendors. 
2.UI should be improved for better response
3.This feature is mainly focused on strata only

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

It provides the complete threat intelligence report of threat logs. It helps security teams to easily track and analyze critical attacks without any additional IT Security resources, as the Palo Alto Autofocus feature enables automation which helps in the detection and cause of attacks.

  ### 9. XSOAR - Solution for all the automation

**Rating:** 4.0/5.0 stars

**Reviewed by:** Jatin . | Security Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** November 15, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Easy-to-use GUI, out-of-the-box scripts for most of the automation tasks, and supported integration packs for almost all the tools (at least from security perspective) help automate complicated and repetitive tasks quickly yet efficiently.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

This solution requires a dedicated team to create and modify the playbooks and other underlying configurations (mapper, classifier etc.). The pre-built playbooks are too generic to be used directly and require quite a few changes, instead of which one can work on creating a new one.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

It helps automate complicated and repetitive tasks, which saves a lot of upfront time while working on security investigations. We also leverage the platform as a ticketing solution to gather alerts from different security tools also for alerts; most of the details collect via automation which helps determine the next course of action quickly.

  ### 10. Simple and effective

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** May 12, 2023

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Simple GUI, easy-to-create playbook tending to your needs. The customer support is fantastic as well. Very knowledgable. The XSOAR teams has a quick response time.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

If they advertised the features more, it is leaning more toward a DYI tool. Compared to other competitors more research is required when navigating the dashboard.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

I am no longer using xsoar since my company switched to a new tool however XSOAR was fantastic for running automated phishing playbooks. Business performance was great.

  ### 11. XSOAR - Nice Detection, Response and Automation

**Rating:** 4.5/5.0 stars

**Reviewed by:** Shagun J. | Senior Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** December 21, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

- Capability to integrate with other applications.
- Capability to perform automation and build playbooks.
- Ability to handle tickets and incidents.
- Can work as a centralized SIEM tool manager.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

- Frequent demisto engine disconnections.
- Tool becomes unresponsive when there is a high load of inputs.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

- Palo Alto Networks Cortex XSOAR is contributing as a centralized solution for all kinds of alerts in your organization with automation and a great response solution with integration with other tools and applications.

  ### 12. Best security solution for incident responders and SecOps

**Rating:** 5.0/5.0 stars

**Reviewed by:** Azar N. | Information Security Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** February 09, 2023

**What do you like best about Palo Alto Networks Cortex XSOAR?**

You can integrate and orchestrate all of your security solutions in one platform and manage all of your cases, incidents.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Cortex XSOAR can be more user-friendly in dashboards and configurations.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

I get visibility in security solutions in one platform and respond incidents.

  ### 13. "XSOAR is the Ultimate Leader"

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Logistics and Supply Chain | Enterprise (> 1000 emp.)

**Reviewed Date:** June 21, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

The Out of the Box content like Integrations for many security stacks or from multiple vendors will definitely reduce the custom efforts and its an easy adoption to the Analyst due to its User-friendly UI, Designing the playbooks is very easy and reduces the manual work by Automation, XSOAR will reduce the air gap on Security investigation and save SLA's for any type of alerts

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

The licensing part of the xsoar is a little costly matter and the response/delivery for any type of Future Requests for common and high-demand automation is a little slower(which needs to be improved)
There are no Best practice documents on System Optimization or Playbook optimization etc.
No proper troubleshooting docs for the System notifications which triggered on the system Diagnostics page

**Recommendations to others considering Palo Alto Networks Cortex XSOAR:**

Its a great product and can do wonders in terms of Automating Security Tasks..

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

We are using the XSOAR tool for multiple things

1. As a SOC Automation Tool
2. As a Reporting tool
3. As a ThreatHunting tool

  ### 14. Palo Alto Cortex XSOAR

**Rating:** 4.5/5.0 stars

**Reviewed by:** Charu C. | Sr. Infrastructure Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** March 11, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

We needed a single platform for our security operations to do end to end lifecycle management. We decide to choose Palo Alto's Cortex XSOAR and are very pleased with the results.  I highly recommend it.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Great product, a bit expensive. There is nothing to dislike about this product, it is well-designed, intuitive.

**Recommendations to others considering Palo Alto Networks Cortex XSOAR:**

Currently, the Palo Alto Cortex XSOAR is the best product available on the market and it provides complete cybersecurity protection. We were a Cisco shop but switched over to Palo Alto last year. Very pleased with the results.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

The Cortex XSOAR gives us a single platform for our security operations, a one-stop shop for orchestrating security, intel threats, managing incidents, investigations.

  ### 15. I tested it and Palo Alto Networks Cortex XSOAR is good product

**Rating:** 4.5/5.0 stars

**Reviewed by:** Rustam R. | Systems Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** December 17, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Mostly I like that it is natively integrated with other vendor's products

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Mostly I dislike in the Palo Alto Networks products is the high cost

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

It solves problems with the automating

  ### 16. PAN Cortex XSOAR

**Rating:** 4.0/5.0 stars

**Reviewed by:** Kavyansh P. | Software Engineer - II, Small-Business (50 or fewer emp.)

**Reviewed Date:** July 20, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Cortex XSOAR is easy to use. We can use it in the security domain.
We can easily fetch incidents and take appropriate actions on them.
It has its graphical dashboard, using that we can see insights on different - different parameters like period.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Installation is quite difficult on local machines. it has strict platform dependency. But have options to use Cortex XSOAR on GCP.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

I used this tool in a security-related project where we are dealing with some real-time threats, and by creating a playbook, and automated trigger. That's how we can achieve the full strength of XSOAR.

  ### 17. Palo Alto XSOAR Review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Manzar A. | Software Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** March 29, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Palo Alto XSOAR is the most complete SOAR tools I have seen so far. It has all the features required to be a complete SOAR Solution. I have made this tool as the baseline while doing POC with other SOAR tools.

It is easiest tool to work and manage and create automation scripts and playbooks

It provide features like:
Warroom 
Automation
Jobs
Palybook
Playground
Support for python as well as bash and Java.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Although it is most capable SOAR tool out there but it has few cons.
1. No clarity on infratrasture sizing for MSSP.
2. Price is little expensive.
3. HA and DR capabilities needs improvement.
4. Architecture becomes complex with high number of tenants in an MSSP enviroent.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

It's a SOAR tools which is designed to solve the problem faced by SOC teams.
It solve the issue of alert fatigue by doing automated response on the incidents triggered.
It reduces the effort put by SOC team and also reduce the number of member required in SOC team and also improves the SLA KPI.

  ### 18. Palo alto network cortex XSOAR review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Vinod S. | Storage Backup Administrator, Small-Business (50 or fewer emp.)

**Reviewed Date:** August 24, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

It has unique features, easy to use, users friendly. Customer support is good.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Reporting for all module not good. Need to improve.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

User friendly dashboard which is easy to us helps to operate. It helps to find single incident from multiple machine by its co relation feature.

  ### 19. Good SOAR solution

**Rating:** 4.0/5.0 stars

**Reviewed by:** Hoa D. | Technical Sales - IBM Security, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 13, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Supported a lot of 3rd parties applications through API integration, easy to implementation and integration

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

not support data breach guidelines for countries and industries. Need a simulation or testing playbooks before applying to production environments.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Incident response and security playbooks, helps improve security automation and MTTR (mean time to respond), reduce time and resources for SOC team, avoid misconfigurations and wrong clicks during investigation

  ### 20. Palo Alto network cortex xsoar

**Rating:** 5.0/5.0 stars

**Reviewed by:** Pardeep K. | Project Trainer, Enterprise (> 1000 emp.)

**Reviewed Date:** August 24, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Decreases the threat identification time

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

The product is costly as compared to Compitators

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Time involvment of L1 and L2 team

  ### 21. Palo Alto Network

**Rating:** 4.5/5.0 stars

**Reviewed by:** Parveen k. | Principal Consultant, Enterprise (> 1000 emp.)

**Reviewed Date:** August 25, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

User interface and faster incident response

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Report dashboard are not much user-friendly

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Reduce manual activity to avoid human which also help Reduce secrutity  incident.

  ### 22. Easy to use, user friendly interface, go for it

**Rating:** 4.5/5.0 stars

**Reviewed by:** Dinesh K. | Subject Matter Expert, Mid-Market (51-1000 emp.)

**Reviewed Date:** August 21, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Optimized framework result in automation

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

No polarity to create specific apps within layouts

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

It lowering time spent on incident resolution

  ### 23. Most Flexible SOAR Tool in the market

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** July 13, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Abundant features, availability of integration options

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Difficult to understand the product for beginners

**Recommendations to others considering Palo Alto Networks Cortex XSOAR:**

Definitely recommend the product.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

We are using XSOAR to automate security operations processes.

  ### 24. Ensures the cyberattacks

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Health, Wellness and Fitness | Mid-Market (51-1000 emp.)

**Reviewed Date:** July 13, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Provides Network security endpoint protection

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Provides the best practices for the security

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Cloud security and cloud delivered security services

  ### 25. complète orchestration tool

**Rating:** 3.5/5.0 stars

**Reviewed by:** Oussama S. | Cyber Security Architect, Enterprise (> 1000 emp.)

**Reviewed Date:** April 10, 2022

**What do you like best about Palo Alto Networks Cortex XSOAR?**

I like playbook concept with automatization and orchestration features.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

there is not enouph script command documentation and examples

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

orchestration, automatisation and data enrichment

  ### 26. Easy to use

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Insurance | Small-Business (50 or fewer emp.)

**Reviewed Date:** September 27, 2021

**What do you like best about Palo Alto Networks Cortex XSOAR?**

The automation part and the playbook creation part are awesome. The way it is responding to the customers and incidents is also very good.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

For building automation, there is not a lot of good documentation. The documentation is there, but it is not very good from my perspective. There should be an improvement in this area. I don't see issues with anything else. In terms of new features, I have heard that other products have EBA functionality. It would be good if this functionality could be added.

**Recommendations to others considering Palo Alto Networks Cortex XSOAR:**

I would love to see more flexibility on what we can display and design on the dashboards.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

In the SOC environment, I guess it will carry out around 50% of the work.

  ### 27. Great Identification Tool

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** December 10, 2018

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Palo Alto Networks AutoFocus is incredibly while suited for empowering companies and customers to identify and prevent targeted attacks on a a network. I really like the Dashboard, which provides advanced statistical breakdowns on pretty much every facet of the network, including DNS, downloads, requests, applications, and even maps.

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

It is hard to dislike this software because it provides for pretty much every use-case I have. The user interface could be a little bit better in terms of UX, but it is a beautiful dashboard. The tool really allows you to see things at a surface level and then dig deeper as necessary.

**Recommendations to others considering Palo Alto Networks Cortex XSOAR:**

This is an incredibly complete solution by a company that provides for the likes of Microsoft. You can trust this solution and its quality to deliver, even at companies with 10,000+ employees.

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

Prevention of Malware/targeted attacks on a network. Threat/Risk removal from our business and our business intelligence.

  ### 28. Very good networking solution

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Education Management | Mid-Market (51-1000 emp.)

**Reviewed Date:** December 10, 2018

**What do you like best about Palo Alto Networks Cortex XSOAR?**

Their VPN solution is amazing, easy to use and stable. Besides that there are other products, but I haven't used them all

**What do you dislike about Palo Alto Networks Cortex XSOAR?**

Although it's a security feature, but I do not like the 2FA

**What problems is Palo Alto Networks Cortex XSOAR solving and how is that benefiting you?**

It allows us to detect threat from various sources


## Palo Alto Networks Cortex XSOAR Discussions
  - [What is Palo Alto Networks Cortex XSOAR used for?](https://www.g2.com/discussions/what-is-palo-alto-networks-cortex-xsoar-used-for)
  - [add more use](https://www.g2.com/discussions/add-more-use) - 1 upvote

- [View Palo Alto Networks Cortex XSOAR pricing details and edition comparison](https://www.g2.com/products/palo-alto-networks-cortex-xsoar/reviews?section=pricing&secure%5Bexpires_at%5D=2026-07-22+03%3A24%3A35+-0500&secure%5Bsession_id%5D=b2735ad2-5993-4d7c-a204-787578e77078&secure%5Btoken%5D=f71718b51f03860a89a496ac04d42aeb270682db7203a3eecc55322d7830c231&format=llm_user)
## Palo Alto Networks Cortex XSOAR Integrations
  - [Microsoft Sentinel](https://www.g2.com/products/microsoft-sentinel/reviews)

## Palo Alto Networks Cortex XSOAR Features
**Orchestration**
- Asset Management
- Security Workflow Automation
- Deployment
- Sandboxing

**Automation**
- Workflow Mapping
- Workflow Automation
- Automated Remediation
- Log Monitoring

**Information**
- Proactive Alerts
- Malware Detection
- Intelligence Reports

**Orchestration**
- Security Orchestration
- Data Collection
- Threat Intelligence
- Data Visualization

**Personalization**
- Endpoint Intelligence
- Security Validation
- Dynamic/Code Analysis

**Response**
- Alerting
- Performance Baselin
- High Availability/Disaster Recovery

**Generative AI**
- AI Text Summarization
- Generate Attack Scenarios
- Generate Threat Detection Rules
- Generate Threat Summaries

**Agentic AI - Threat Intelligence**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

## Top Palo Alto Networks Cortex XSOAR Alternatives
  - [Microsoft Sentinel](https://www.g2.com/products/microsoft-sentinel/reviews) - 4.4/5.0 (273 reviews)
  - [Tines](https://www.g2.com/products/tines/reviews) - 4.7/5.0 (396 reviews)
  - [Splunk SOAR (Security Orchestration, Automation and Response)](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/reviews) - 4.4/5.0 (39 reviews)

