How Recorded Future and Cortex XSOAR Accelerate Investigation and Response
August 4, 2020 • The Recorded Future Team
In today’s ever-changing security landscape, incident response teams are time-strapped by manual processes and high alert volumes. When they are focused only on internal logs and data, these teams are unable to take advantage of the breadth of external intelligence available. This often results in threats slipping through the cracks — and potentially impacting their organizations.
Security teams need a platform that centralizes intelligence from the broadest range of sources in real time to drive informed action across every security process and workflow.
About Recorded Future’s Integration With Cortex XSOAR
Since 2018, Recorded Future has partnered with Cortex XSOAR (formerly Demisto) to position elite security intelligence within the SOAR interface. This integration empowers users to:
- Automate Recorded Future’s enrichment of IPs, domains, and file hashes as playbook-driven tasks within Cortex XSOAR
- Access related entities for indicators from Recorded Future in real time directly within Cortex XSOAR
- Leverage hundreds of Cortex XSOAR product integrations to further enrich Recorded Future alerts and coordinate responses across security functions
- Run thousands of commands interactively (including for Recorded Future) via a ChatOps interface while collaborating with other analysts and Cortex XSOAR’s chatbot
Recorded Future Content Packs Available in Cortex XSOAR Marketplace
Today, Recorded Future is proud to announce the inclusion of our content pack in the newly released Cortex XSOAR Marketplace, the industry’s most comprehensive security orchestration marketplace. The Cortex XSOAR Marketplace gives you access to an array of orchestration and automation tools from vendors and service providers, allowing you to:
- Leverage Industry Experts to Solve Your Toughest Security Use Cases: Deploy turn-key content packs that span integrations, playbooks, dashboards, and reports with a single click.
- Discover Highly Rated, Validated Content Packs: Identify the best SOAR content packs recommended by your peers and validated by the world’s leading cybersecurity company.
- Stay up to Date With Innovations in Security Automation: Continuously extend Cortex XSOAR with proven use cases contributed by SecOps users and SOAR partners in the largest SOAR community in the industry.
As a native extension of Cortex XSOAR, the Cortex XSOAR Marketplace enables customers to discover, share, and consume orchestration innovations contributed by the industry’s largest SOAR community.