Cortex XSOAR | Recorded Future
Cortex XSOAR

Cortex XSOAR

Table of Contents


Product Overview

Cortex XSOAR is a single platform that orchestrates actions across your entire security product stack for faster, more scalable incident response. Integrating Recorded Future with Cortex XSOAR enables you to proactively block threats before they impact your business, automatically detect risky IOCs in your environment, and triage alerts based on real-time, elite security intelligence.

Challenges Overcome Through Integration

Today’s ever-changing security landscape makes it nearly impossible for time-strapped security operations and incident response teams to mitigate every potential threat to their organization. Overwhelmed by manual processes and high alert volume, they’re unable to take advantage of the breadth of intelligence available, instead they focus only on internal logs and data.
Security teams need a platform that centralizes intelligence in real time and harnesses that information to drive action across security infrastructures.

Recorded Future empowers security teams with improved threat visibility and accelerated incident response. Integrating unprecedented intelligence into the security orchestration and automation features of Cortex XSOAR solves for the following use cases:

  • Threat detection
  • Alert triage
  • Threat prevention
  • Vulnerability prioritization

Integration Description

The Recorded Future and Cortex XSOAR integration instantly positions elite security intelligence at your fingertips within your SOAR platform, empowering you to:

  • Automate Recorded Future enrichment of IPs, URLs, domains, and file hashes as playbook-driven tasks within Cortex XSOAR
  • Access related entities for an indicator in Recorded Future from Cortex XSOAR in real time
  • Leverage hundreds of Cortex XSOAR product integrations to further enrich Recorded Future alerts and coordinate response across security functions
  • Run thousands of commands — including commands for Recorded Future — interactively via a ChatOps interface, while collaborating with other analysts and Cortex XSOAR’s chatbot