Palo Alto Networks and Phantom combine best-in-class protection with best-in-class security automation and orchestration, offering increased advanced threat visibility and protection that is fully synchronized across the security environment.
Palo Alto Networks can be quickly integrated with the Phantom Platform using Phantom Apps for AutoFocus threat intelligence, PA Series network firewalls, Panorama centralized management, and WildFire file analysis.
Phantom Apps for Palo Alto Networks automation actions like:
Palo Alto Networks and Phantom increase productivity with uses cases like these:
Use Case 1: Detect and Respond to Malware Infection with C2 Connectivity
Challenge: Shorten response time associated with discovery of an endpoint infected with malware and established C2.
Solution: Analyst to deploy a Playbook on Phantom platform which automates the investigation and containment phases through interaction with Palo Alto Networks Applications.
Response: Deploy a Playbook which covers the following steps:
Use Case 2: Detect and Respond to Suspicious Email
Challenge: Shorten response time associated with a phishing investigation.
Solution: Analyst to deploy a Playbook on Phantom platform which automates the investigation and containment phases through interaction with Palo Alto Networks Applications.
Response: Deploy a Playbook which covers the following steps:
Interested in seeing how Phantom and Palo Alto Networks can help your organization? Get the free Phantom Community Edition.
----------------------------------------------------
Thanks!
CP Morey
The Splunk platform removes the barriers between data and action, empowering observability, IT and security teams to ensure their organizations are secure, resilient and innovative.
Founded in 2003, Splunk is a global company — with over 7,500 employees, Splunkers have received over 1,020 patents to date and availability in 21 regions around the world — and offers an open, extensible data platform that supports shared data across any environment so that all teams in an organization can get end-to-end visibility, with context, for every interaction and business process. Build a strong data foundation with Splunk.