This playbook provides a semi-automated response to suspicious IP activity, allowing security analysts to evaluate and optionally block an IP on the Palo Alto Panorama Firewall. It includes threat enrichment using IBM X-Force, manual analyst approval, and SOAR-based case status tracking to ensure the response is accurate, accountable, and documented.
This playbook provides a semi-automated response to suspicious IP activity, allowing security analysts to evaluate and optionally block an IP on the Palo Alto Panorama Firewall. It includes threat enrichment using IBM X-Force, manual analyst approval, and SOAR-based case status tracking to ensure the response is accurate, accountable, and documented.
Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox