Palo Alto SecOps Pro: Threat Hunting
Threat hunting starts where alert-driven security stops. Instead of waiting for an existing rule to fire, analysts form a hypothesis…
Cybersecurity architecture, identity, network defense, vulnerabilities, threat detection, risk and incident response.
296 published articles in this category.
Threat hunting starts where alert-driven security stops. Instead of waiting for an existing rule to fire, analysts form a hypothesis…
Cortex XSIAM changes the shape of a security operations workflow by bringing detection, investigation, data analysis, automation, and response into…
Cortex XSOAR playbooks turn a security procedure into an executable workflow of tasks, conditions, commands, integrations, scripts, and sub-playbooks. The…
CrowdStrike Falcon is commonly discussed as an endpoint detection and response platform, but effective EDR operations depend on several connected…
Privileged access management exists to control the accounts and sessions that can make the most consequential changes in an environment.…
Ethical hacking is a controlled effort to discover and demonstrate security weaknesses before an attacker can exploit them. The current…
TLS inspection on a Palo Alto Networks firewall is not just a switch that exposes encrypted payloads. It is a…
NAT policy on Palo Alto Networks firewalls is straightforward only when engineers keep the original packet, the translated packet, routing,…
Security policy on a Palo Alto Networks next-generation firewall is more than a list of source and destination addresses. PAN-OS…
Threat Prevention on a Palo Alto Networks firewall is the inspection layer that sits behind an allow decision. Security policy…
Web and DNS controls solve different parts of the same problem. URL filtering governs where users and applications can browse…
GlobalProtect turns remote access into a policy and identity problem rather than only a VPN tunnel problem. A deployment normally…
High availability on Palo Alto Networks firewalls is not simply a second appliance waiting for the first to fail. A…
Panorama becomes valuable when firewall configuration must scale beyond a handful of independent appliances. The core design distinction is simple…
Prisma Access moves many network-security controls into a cloud-delivered service, but the architecture still has to solve familiar questions: how…