Try our new research platform with insights from 80,000+ expert users
ShubhamAgarwal - PeerSpot reviewer
Specialist - Information Security at LPI
Real User
Top 20
Drastically reduces trivial tasks inside the SOC environment
Pros and Cons
  • "Cortex XSOAR's most valuable features are the playbooks, custom integration, the machine-learning model, and the layout, classifier, and mapper."
  • "Corex XSOAR could be improved by reducing the time it takes to process large amounts of data and increasing the number of integrations."

What is our primary use case?

I mainly use Cortex XSOAR to automate cybersecurity and the SOC environment.

To minimize manual tasks and increase level of automation. 

How has it helped my organization?

Cortex XSOAR drastically reduces trivial tasks inside the SOC environment, which provides a huge benefit for L1 analysts.

What is most valuable?

Cortex XSOAR's most valuable features are the playbooks, custom integration, the machine-learning model, and the layout, classifier, and mapper.

What needs improvement?

Corex XSOAR could be improved by reducing the time it takes to process large amounts of data and increasing the number of integrations. In the next release, Palo Alto should include popup features - for example, if someone is working on an incident, it should pop up and display in front of me once it's clicked.

Buyer's Guide
Palo Alto Networks Cortex XSOAR
August 2025
Learn what your peers think about Palo Alto Networks Cortex XSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
867,676 professionals have used our research since 2012.

For how long have I used the solution?

4 years

What do I think about the stability of the solution?

Cortex XSOAR is very stable in our environment, and we haven't seen any platform issues with it.

What do I think about the scalability of the solution?

Cortex XSOAR is scalable.

How are customer service and support?

Palo Alto's support services require a lot of improvement.

Which solution did I use previously and why did I switch?

I used Qradar SOAR . Cortex xsoar support is very good and contain lot of OOTB playbooks but comparatively qradar soar lack in OOTB Playbooks

How was the initial setup?

The initial setup is very easy. Also in latest version platform is managed by Palo alto cloud itself and rest of the configuration is done from UI itself. 

So zero load in configuring platform. 

What's my experience with pricing, setup cost, and licensing?

Cortex XSOAR's license price could be lower.

What other advice do I have?

I would give Cortex SOAR a rating of eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Nick Rama - PeerSpot reviewer
System Engineer at Nexus Technologies,Inc.
Real User
Top 5
A great scalable tool that provides functionalities related to patching and URL blocking
Pros and Cons
  • "The strengths of Palo Alto Networks Cortex XSOAR stem from the fact that it provides functionalities related to patching and URL blocking...It is a scalable solution."
  • "With Palo Alto Networks Cortex XSOAR, managing its setup phase can be a complicated task."

What is most valuable?

The strengths of Palo Alto Networks Cortex XSOAR stem from the fact that it provides functionalities related to patching and URL blocking, and its strengths are the major reason why I recommend the product to others.

What needs improvement?

With Palo Alto Networks Cortex XSOAR, managing its setup phase can be a complicated task. The aforementioned aspects of the solution can be considered for improvement. In the future, I need the product to provide me with the ability to manage its base.

In the future, I want Palo Alto Networks Cortex XSOAR to provide me with an option that allows me to do an automatic setup process. I also want Palo Alto Networks Cortex XSOAR to plan a way to minimize the need for too many configuration processes in an architecture. I feel that currently, the setup process of the product is really hard.

For how long have I used the solution?

I have experience with Palo Alto Networks Cortex XSOAR. My company has a partnership with Palo Alto Networks.

What do I think about the stability of the solution?

We don't face any issues with Palo Alto Networks Cortex XSOAR in our company right now. Certain issues only crop up with the firewall devices from Palo Alto Networks.

What do I think about the scalability of the solution?

It is a scalable solution.

How are customer service and support?

I rate the technical support a nine out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I only handle Palo Alto Networks.

How was the initial setup?

I did not manage the initial setup of the product, as it was taken care of by a product specialist.

Which other solutions did I evaluate?

I am more comfortable with Palo Alto Networks compared to its competitors.

What other advice do I have?

I can say that I am a bit satisfied with Palo Alto Networks Cortex XSOAR. I manage the product's setup phase, so I am getting familiarized with it.

I can only recommend Palo Alto Networks Cortex XSOAR after I personally complete the setup phase of the product in our environment. In general, after I complete the setup process of Palo Alto Networks Cortex XSOAR in my company, I will recommend it to others.

I rate the overall tool an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Palo Alto Networks Cortex XSOAR
August 2025
Learn what your peers think about Palo Alto Networks Cortex XSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
867,676 professionals have used our research since 2012.
Cemil Altug - PeerSpot reviewer
Hybrid Cyber Security Team Lead at dndx
Real User
Top 20
Easy to use and scalable
Pros and Cons
  • "Palo Alto is easy to use."
  • "The dashboard could be better."

What is our primary use case?

The solution is used for security. 

What is most valuable?

Palo Alto is easy to use. 

What needs improvement?

The dashboard could be better. 

For how long have I used the solution?

I have used Palo Alto Network Cortex for six months. 

What do I think about the stability of the solution?

There are issues with stability as it was giving false positives and has bugs. I rate the stability a seven out of ten. 

What do I think about the scalability of the solution?

It is a scalable solution. There are two hundred users using the solution at present. I rate the scalability an eight out of ten. 

What about the implementation team?

The solution was deployed by analysts. 

What other advice do I have?

I rate the overall solution an eight out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2125281 - PeerSpot reviewer
Intern Cybersecurity at a computer software company with 10,001+ employees
Real User
The drag-and-drop interface enables analysts with no programming knowledge to create playbooks easily
Pros and Cons
  • "The drag-and-drop interface enables analysts with no programming knowledge to create playbooks easily."
  • "XSOAR could have more integration options."

What is our primary use case?

I'm currently evaluating XSOAR to see what the solution can do. I'm playing around with the various features. 

What is most valuable?

The drag-and-drop interface enables analysts with no programming knowledge to create playbooks easily. 

What needs improvement?

XSOAR could have more integration options. 

For how long have I used the solution?

I have used XSOAR for two months.

What do I think about the stability of the solution?

XSOAR is stable. 

How was the initial setup?

Setting up XSOAR is straightforward and takes about 30 minutes. It doesn't require any special technology to implement it in any architecture.  You create a virtual machine, move the file to it, launch the installer, and let it run. It doesn't require any complex tasks. 

What other advice do I have?

I rate Palo Alto Networks Cortex XSOAR nine out of 10. 

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Business Development Manager at a tech services company with 51-200 employees
Real User
Has good stability and an easy initial setup process
Pros and Cons
  • "The solution is easy to deploy."
  • "The solution's technical support could be better."

What is our primary use case?

We use the solution to create playbooks for all the operational programs.

What needs improvement?

The solution's integration with non-security solutions will be helpful.

For how long have I used the solution?

We have been using the solution for almost two years now.

What do I think about the stability of the solution?

The solution is stable. I rate its stability an eight.

What do I think about the scalability of the solution?

I rate the solution's scalability as an eight. It is complex to scale.

How are customer service and support?

The solution's technical support team takes longer to reply to the queries.

How would you rate customer service and support?

Neutral

How was the initial setup?

The solution's initial setup process is straightforward.

What's my experience with pricing, setup cost, and licensing?

The solution's cost is reasonable. I rate its pricing as a five.

What other advice do I have?

I rate the solution an eight.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
reviewer2284569 - PeerSpot reviewer
Manager at a financial services firm with 5,001-10,000 employees
Real User
Top 5Leaderboard
Customizable playbooks are a big asset but integrations are a challenge
Pros and Cons
  • "Many different playbooks are available and can be customized."
  • "The solution requires DV but does not support open-source DV elastic searches."

What is our primary use case?

Our company uses the solution for security management and threat response. 

What is most valuable?

Many different playbooks are available and can be customized. 

What needs improvement?

Integrations with other applications are challenging and need to be improved. 

Reports or issues are often duplicated. 

The solution requires DV but does not support open-source DV elastic searches. 

For how long have I used the solution?

I have been using the solution for seven months. 

What do I think about the stability of the solution?

The solution has stability issues from the performance side and often duplicates reports or issues.

How are customer service and support?

The solution is not a Palo Alto product so technical support is inadequate. 

There is not a big focus on support for the solution so it takes a lot of time to receive responses for issues. 

How was the initial setup?

The setup might not be easy because it requires official customers. 

What about the implementation team?

Our company received technical support during installation.

What's my experience with pricing, setup cost, and licensing?

The solution is based on an annual licensing model that is expensive. 

What other advice do I have?

The solution is a good product that would be even better if technical support is improved and prices are discounted. 

Support is very important because there is a lot of follow up after implementations to properly manage changes and issues. 

I rate the solution a six out of ten. 

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Senior Information Technology Support Engineer at TSCNET Services GmbH
Real User
Easy to install, able to expand, and reliable
Pros and Cons
  • "It’s easy to install."
  • "The integration could be better. Cortex, for example, does not work with iPhone."

What is our primary use case?

We primarily use the solution for network inspection.

What is most valuable?

The solution works well.

It’s easy to install.

It’s stable.

The solution can scale as needed.

What needs improvement?

The stability could be better.

The integration could be better. Cortex, for example, does not work with iPhone.

For how long have I used the solution?

I’ve been using the solution for less than one year.

What do I think about the stability of the solution?

Right now, it’s been stable for us. We may consider something from Microsoft in the future. It’s possible it could be more stable.

What do I think about the scalability of the solution?

The solution is quite scalable. If a company needs to expand it, it can do so.

How are customer service and support?

At the moment, we don’t actually get support from Palo Alto as we’ve never needed any help. I can’t say how helpful or responsive they would be.

Which solution did I use previously and why did I switch?

We’ve also worked with CrowdStrike. We switched as we weren’t happy with their detection capabilities.

How was the initial setup?

The installation is very easy to set up. It’s not overly complex or difficult.

The deployment took less than a week. I recall we had it up and running within a couple of days.

What about the implementation team?

In our case, we went to a consultant for installation assistance. However, a company might likely be able to handle it on its own.

What's my experience with pricing, setup cost, and licensing?

I can’t speak to the exact cost of the solution.

What other advice do I have?

This is a SaaS product.

I’d rate the solution nine out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Nicolo Corrado - PeerSpot reviewer
Consulente immobiliare at Libero
Real User
I have no complaints about the stability
Pros and Cons
  • "I have no complaints about Cortex's stability."

    What is our primary use case?

    I'm using Cortex XSOAR to manage our network security.

    For how long have I used the solution?

    I've been using Cortex XSOAR for about one year.

    What do I think about the stability of the solution?

    I have no complaints about Cortex's stability.

    What do I think about the scalability of the solution?

    As far as I know, Cortex XSOAR's scalability is okay. I'm just a user, so I don't know.

    How was the initial setup?

    Setting up Cortex is straightforward. This use case is the easiest to implement. I had help from two or three technicians.

    What other advice do I have?

    I rate Palo Alto Networks Cortex XSOAR eight out of 10. I would recommend it to others.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free Palo Alto Networks Cortex XSOAR Report and get advice and tips from experienced pros sharing their opinions.
    Updated: August 2025
    Buyer's Guide
    Download our free Palo Alto Networks Cortex XSOAR Report and get advice and tips from experienced pros sharing their opinions.