Skip to main content

Impelix IMPACT Integration
with Palo Alto Networks Cortex

The Impelix IMPACT platform ingests telemetry from your all your security products as well as third-party feeds (threat intelligence, cybersecurity risk, business resilience intelligence, etc.) and delivers event correlation, security control efficacy, and compliance monitoring.

We believe that the more data ingested into IMPACT, the more context you will have regarding security incidents, which will allow effective and efficient incident response and compliance management. Therefore, we encourage and facilitate connecting vendor products telemetry with Impelix IMPACT platform.

Palo Alto Networks Cortex

Cortex Configuration

Generate API key as detailed here: https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-api/cortex-xdr-api-overview/get-started-with-cortex-xdr-apis

Impelix IMPACT Configuration
  • Go to Admin > SOAR > Cortex XDR API > Config
  • Click the checkbox for Enable Cortex Detection API
  • Paste the API Key ID and the API Key
  • Click the disk icon (Save)
  • Click Jobs and go to Artifacts from Cortex XDR
  • Select Triggers, expanding Manual Trigger and Interval Trigger
  • Toggle both to State: ENABLED
  • The Interval Trigger is set to 2 hours by default, but you can update it to what best suits your organization.
  • Click the disk icon (Save)

The Next Evolution of SIEM

Avoid alert noise, high cost of data ingestion, and incident response complexity.
Move to our Automated SecOps and Enterprise Risk Management Platform.
✔︎ Respond     ✔︎ Investigate     ✔︎ Prevent     ✔︎ Comply
Schedule a Demo