AI Buyer Insights:

Moog, an UKG AutoTime customer evaluated Workday Time and Attendance

Citigroup, a VestmarkONE customer evaluated BlackRock Aladdin Wealth

Swedbank, a Temenos T24 customer evaluated Oracle Flexcube

Michelin, an e2open customer evaluated Oracle Transportation Management

Cantor Fitzgerald, a Kyriba Treasury customer evaluated GTreasury

Wayfair, a Korber HighJump WMS customer just evaluated Manhattan WMS

Westpac NZ, an Infosys Finacle customer evaluated nCino Bank OS

Moog, an UKG AutoTime customer evaluated Workday Time and Attendance

Citigroup, a VestmarkONE customer evaluated BlackRock Aladdin Wealth

Swedbank, a Temenos T24 customer evaluated Oracle Flexcube

Michelin, an e2open customer evaluated Oracle Transportation Management

Cantor Fitzgerald, a Kyriba Treasury customer evaluated GTreasury

Wayfair, a Korber HighJump WMS customer just evaluated Manhattan WMS

Westpac NZ, an Infosys Finacle customer evaluated nCino Bank OS

List of Palo Alto Cortex XDR Customers

loading spinner icon



Apply Filters For Customers

Logo Customer Industry Empl. Revenue Country Vendor Application Category When SI Insight
B&B HOTELS Italia Leisure and Hospitality 1000 $212M Italy Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2020 n/a
In 2020, B&B HOTELS Italia deployed Palo Alto Cortex XDR as the core endpoint detection and response platform. The deployment established an Extended Detection and Response (XDR) capability to centralize telemetry, detection, and response across the company IT estate in Italy, driven by the internal security and systems team including a System Administrator and Cyber Security Engineer based in Milan. Configuration work concentrated on agent deployment to Windows and Linux endpoints, integration with Active Directory for host and user context, and instrumentation of VMware vSphere for hypervisor visibility. Palo Alto Cortex XDR was configured for behavioral analytics, custom detection rules, centralized alert triage, automated containment actions, and local forensic data capture to support incident investigations and root cause analysis, using centralized console policies to standardize endpoint hardening. The implementation integrated Cortex XDR with existing network and security telemetry, including Fortinet firewall and SD-WAN logs, IPsec VPN monitoring, and Zscaler cloud proxy for internet traffic context. Events and alerts were forwarded to the organization’s log centralization and SIEM systems and correlated with vulnerability scan data from Qualys and identity signals from OKTA SSO/MFA to enrich detections, while aligning response workflows with backup and recovery procedures leveraging Veeam and Azure DR. Governance emphasized alignment with NIST and ISO 27001 audit requirements, incorporation of vulnerability management and red team findings into detection rule sets, and formalized incident response and forensic playbooks. Deployment governance used standardized policies, phased agent rollout, and defined escalation pathways into the cyber operations team for incident handling and root cause analysis, with ongoing responsibilities for endpoint and network hardening, continuous monitoring, and audit evidence preparation.
Better Home & Finance Holding Company Banking and Financial Services 1250 $120M United States Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2020 n/a
In 2020, Better Home & Finance Holding Company deployed Palo Alto Cortex XDR as part of a consolidation strategy that unified network, cloud, endpoint, and security operations under Palo Alto Networks platforms. The deployment positioned Palo Alto Cortex XDR within an Extended Detection and Response (XDR) architecture alongside Next-Generation Firewalls, Prisma Access, Prisma Cloud, Cortex XSOAR, and Unit 42 Managed Detection and Response service to create a single vendor security fabric for the organization. Implementation focused on SecOps automation and cross-domain visibility. Palo Alto Cortex XDR was configured to centralize threat detection and response across endpoint telemetry and broader telemetry sources, while Cortex XSOAR was implemented to enrich alerts, triage incidents, and automate playbooks. During a four-week evaluation, Cortex XDR detected custom red team malware, and Cortex XSOAR enabled automation of approximately 90 percent of routine responses, reducing manual investigation load on the SOC. The stack was integrated with Better’s cloud estate to provide visibility and posture management, with Prisma Cloud evaluating AWS resources and enabling consistency across dozens of accounts and hundreds of servers, and plans to extend coverage into Microsoft Azure environments. Prisma Access delivered cloud-based Zero Trust Network Access to support remote and hybrid work, enabling secure access for employees within five days and scaling to cover the full staff. Unit 42 MDR operates as an extension of the internal security team, providing 24/7 monitoring and response. Governance and operational impact centered on tightening collaboration between security and engineering teams, improving incident handling workflows, and consolidating tool management under a unified platform. Better reported improved mean time to respond and cited lower total cost compared to a multivendor approach, while Palo Alto Networks customer support and technical account engagement assisted rollout and adoption across Security, Engineering, and IT operations.
InnovaPuglia Professional Services 250 $40M Italy Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2020 n/a
In 2020 InnovaPuglia deployed Palo Alto Cortex XDR as a core component of its Extended Detection and Response (XDR) tooling to support Security Operations Center monitoring and endpoint defense. The effort aligned with SOC responsibilities for public administration and large enterprise customers and emphasized continuous monitoring, network visibility, and protection of critical data. Cortex XDR was configured to deliver endpoint protection, threat detection and correlation, forensic data capture, and threat hunting workflows, with policy tuning and alert triage built into SOC processes. Palo Alto Cortex XDR served as the primary endpoint detection and response engine, ingesting telemetry for investigation and supporting forensic analysis activities conducted by the SOC team. The implementation integrated Cortex XDR telemetry into existing security telemetry and visibility layers, including SIEM event monitoring with FortiSIEM, network packet capture and visibility from Gigamon, and perimeter controls such as Radware balancers and WAF services. Cortex XDR workflows were operated alongside firewall and network device configurations from Palo Alto, Fortinet, and Cisco ASA, and tied into access and identity controls using FortiNAC, FortiToken, and FortiAuthenticator, as well as DNS security with Cisco Umbrella and vulnerability scanning outputs from Greenbone and Qualys. Governance and operationalization were structured around SOC incident handling, security policy development, and alignment with AgID and the National Cybersecurity Framework, with cross-functional collaboration between network, identity, and incident response teams. Rollout and day to day operations emphasized scripted incident response playbooks, integrated alert escalation into existing SLAs, and continuous refinement of detection rules and forensic procedures to maintain endpoint and network security posture.
Government 500 $44M United States Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2022 n/a
Retail 10082 $19.7B United States Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2024 n/a
Professional Services 4297 $1.2B Japan Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2021 n/a
Government 32935 $3.1B Australia Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2020 Telstra
Government 800 $180M United States Palo Alto Networks Palo Alto Cortex XDR Extended Detection and Response (XDR) 2019 n/a
Showing 1 to 8 of 8 entries

Buyer Intent: Companies Evaluating Palo Alto Cortex XDR

ARTW Buyer Intent uncovers actionable customer signals, identifying software buyers actively evaluating Palo Alto Cortex XDR. Gain ongoing access to real-time prospects and uncover hidden opportunities. Companies Actively Evaluating Palo Alto Cortex XDR for Extended Detection and Response (XDR) include:

  1. The University of Alabama, a United States based Education organization with 7472 Employees
  2. Matelec, a Lebanon based Manufacturing company with 600 Employees
  3. Zacco, a Sweden based Professional Services organization with 100 Employees

Discover Software Buyers actively Evaluating Enterprise Applications

Logo Company Industry Employees Revenue Country Evaluated
No data found
FAQ - APPS RUN THE WORLD Palo Alto Cortex XDR Coverage

Palo Alto Cortex XDR is a Extended Detection and Response (XDR) solution from Palo Alto Networks.

Companies worldwide use Palo Alto Cortex XDR, from small firms to large enterprises across 21+ industries.

Organizations such as RaceTrac, SA Department for Education, Relo Group, B&B HOTELS Italia and Southern Nevada Health District are recorded users of Palo Alto Cortex XDR for Extended Detection and Response (XDR).

Companies using Palo Alto Cortex XDR are most concentrated in Retail, Government and Professional Services, with adoption spanning over 21 industries.

Companies using Palo Alto Cortex XDR are most concentrated in United States, Australia and Japan, with adoption tracked across 195 countries worldwide. This global distribution highlights the popularity of Palo Alto Cortex XDR across Americas, EMEA, and APAC.

Companies using Palo Alto Cortex XDR range from small businesses with 0-100 employees - 0%, to mid-sized firms with 101-1,000 employees - 50%, large organizations with 1,001-10,000 employees - 25%, and global enterprises with 10,000+ employees - 25%.

Customers of Palo Alto Cortex XDR include firms across all revenue levels — from $0-100M, to $101M-$1B, $1B-$10B, and $10B+ global corporations.

Contact APPS RUN THE WORLD to access the full verified Palo Alto Cortex XDR customer database with detailed Firmographics such as industry, geography, revenue, and employee breakdowns as well as key decision makers in charge of Extended Detection and Response (XDR).