April 29, 2025
Trending News

Palo Alto expands AI detection within Cortex XSIAM

  • November 14, 2023
  • 0

Palo Alto aims to further reduce the time between detection and response by adding new AI capabilities to Cortex XSIAM. Customers can now also use their own models.

Palo Alto expands AI detection within Cortex XSIAM

Palo Alto Networks

Palo Alto aims to further reduce the time between detection and response by adding new AI capabilities to Cortex XSIAM. Customers can now also use their own models.

Palo Alto announces new AI applications for Cortex XSIAM, the SIEM platform launched late last year. Cortex SIAM puts artificial intelligence at the heart of detection and response so security teams can respond faster to suspicious activity. Instead of collecting logs and alerts like a traditional SIEM solution, the platform relies on granular data. Palo Alto says it collects five thousand petabytes of data every day.

Palo Alto is now making all of this data available to customers who have subscribed to Cortex SIAM. The security specialist is introducing a “Bring your own AI” module that allows companies to connect to the platform with self-created AI models. This allows them to feed models with internal security data and further automate the detection and response process. There are also 1,300 pre-built AI models behind Cortex SIAM.

Palo Alto also offers more overview in Cortex SIAM. The updated Command Center displays more information about data sources and alerts so security incidents can be identified and prioritized within a unified platform. The MITER ATT&CK Coverage Dashboard allows organizations to measure the strength of their overall defense against a wide range of tactics and techniques.

Every second counts

Attackers act faster than ever before. It used to take an average of 44 days for an attacker to spy on a victim’s data, but today it’s just a matter of hours. We learned from competitor CrowdStrike that the most skilled attackers only need a few minutes to get in and out. Security can’t keep up with speed, with an average organization taking 5.5 days to bring an incident under control.

Palo Alto believes artificial intelligence can be the solution to significantly reduce detection time from days to minutes. Therefore, it implements AI at different levels of the security portfolio. Last week it also launched a zero trust solution powered by AI.

Source: IT Daily

Leave a Reply

Your email address will not be published. Required fields are marked *