Palo Alto Networks EDU-260

Cortex XDR: Prevention and Deployment

Description

This instructor-led training enables you to prevent attacks on your endpoints. After an overview of the Cortex XDR components, the training introduces the Cortex XDR management console and demonstrates how to install agents on your endpoints and how to create Security profiles and policies.

The training enables you to perform and track response actions, tune profiles, and work with Cortex XDR alerts. It concludes by discussing basic troubleshooting of the agent, the on-premises Broker VM component, and Cortex XDR deployment.

Course Modules

1 - Cortex XDR Introduction

2 - Cortex XDR Main Components

3 - Cortex XDR Management Console

4 – Profiles and Policies

5 - Malware Protection

6 - Exploit Protection

7 - Cortex XDR Alerts

8 – Exclusions and Exceptions

9 - Response Actions

10 - Basic Troubleshooting

11 - Broker VM Overview

12 - Deployment Considerations

Objectives

Successful completion of this instructor-led course with hands-on lab activities should enable you to:

  • Describe the architecture and components of the Cortex XDR family • Use the Cortex XDR management console, including reporting
  • Create Cortex XDR agent installation packages, endpoint groups, and policies • Deploy Cortex XDR agents on endpoints
  • Create and manage Exploit and Malware Prevention profiles
  • Investigate alerts and prioritize them using starring and exclusion policies • Tune Security profiles using Cortex XDR exceptions
  • Perform and track response actions in the Action Center
  • Perform basic troubleshooting related to Cortex XDR agents
  • Deploy a Broker VM and activate the Local Agents Settings applet • Understand Cortex XDR deployment concepts and activation requirements
  • Work with the Customer Support Portal and Cortex XDR Gateway for authentication and authorization

Prerequisites

Participants must be familiar with enterprise product deployment, networking, and security concepts.

Target Audience

Cybersecurity analysts and engineers

Security operations specialists

Palo Alto Networks Education

The technical curriculum developed by Palo Alto Networks and delivered by Palo Alto Networks Authorized Training Partners helps provide the knowledge and expertise you need to protect our digital way of life. Our trusted certifications validate your knowledge of the Palo Alto Networks product portfolio and your ability to help prevent successful cyberattacks and safely enable applications.

Similar courses

Firewall Essentials: Configuration and Management (EDU-210)

More Information

Firewall: Troubleshooting

More Information

Panorama: Managing Firewalls at Scale

More Information

Palo Alto Networks, Basic Firewall Administration Training

More Information

Palo Alto Networks, PCNSE Exam Prep Workshop

More Information

Prisma Access SASE Security: Design and Operation

More Information

Cortex™ XSOAR Automation and Orchestration (EDU-380)

More Information

EDU-262 for Cortex XDR, Cortex XDR: Investigation and Response

More Information

Prisma SD-WAN: Design and Operation (EDU-238)

More Information

Cortex XSIAM: Security Operations and Automation (EDU-270)

More Information