AI Buyer Insights:

Moog, an UKG AutoTime customer evaluated Workday Time and Attendance

Westpac NZ, an Infosys Finacle customer evaluated nCino Bank OS

Citigroup, a VestmarkONE customer evaluated BlackRock Aladdin Wealth

Wayfair, a Korber HighJump WMS customer just evaluated Manhattan WMS

Cantor Fitzgerald, a Kyriba Treasury customer evaluated GTreasury

Michelin, an e2open customer evaluated Oracle Transportation Management

Swedbank, a Temenos T24 customer evaluated Oracle Flexcube

Moog, an UKG AutoTime customer evaluated Workday Time and Attendance

Westpac NZ, an Infosys Finacle customer evaluated nCino Bank OS

Citigroup, a VestmarkONE customer evaluated BlackRock Aladdin Wealth

Wayfair, a Korber HighJump WMS customer just evaluated Manhattan WMS

Cantor Fitzgerald, a Kyriba Treasury customer evaluated GTreasury

Michelin, an e2open customer evaluated Oracle Transportation Management

Swedbank, a Temenos T24 customer evaluated Oracle Flexcube

List of Palo Alto Cortex XSOAR Customers

loading spinner icon



Apply Filters For Customers

Logo Customer Industry Empl. Revenue Country Vendor Application Category When SI Insight
Better Home & Finance Holding Company Banking and Financial Services 1250 $120M United States Palo Alto Networks Palo Alto Cortex XSOAR Incident Management 2020 n/a
In 2020, Better Home & Finance Holding Company implemented Palo Alto Cortex XSOAR as its Incident Management platform, part of a broader consolidation onto Palo Alto Networks products that included Next-Generation Firewalls, Prisma Access, Prisma Cloud, Cortex XDR, and Unit 42 Managed Detection and Response. The implementation addressed Better's digital-first requirements for protecting large volumes of customer personal identifiable information and intellectual property while enabling secure remote work for the entire employee base. Palo Alto Cortex XSOAR was configured to provide automated incident triage, enrichment, and playbook-driven response for repetitive security alerts. The deployment emphasized orchestration and automation capabilities native to Incident Management workflows, enabling enrichment of alerts, standardized triage processes, and automated actions that reduced investigations from hours to minutes, and automated approximately 90 percent of responses as part of SOC operations. Operational integration aligned Cortex XSOAR with Cortex XDR telemetry and with Palo Alto Networks security services, while the overall platform footprint included Prisma Cloud for cloud posture visibility across dozens of AWS accounts and hundreds of servers. Cortex XSOAR ingested and acted on endpoint and detection data from Cortex XDR, and operated alongside Unit 42 MDR experts who served as an extension of Better's security team to provide 24/7 detection and response support. Governance and process changes centered on SOC playbooks and cross-team collaboration between security and engineering, improving transparency and enabling engineers to validate and remediate issues directly in concert with security workflows. Deployment was supported by Palo Alto Networks customer and technical teams to accelerate adoption, and the combined solutionset improved mean time to respond while freeing internal security staff to focus on higher priority and complex investigations.
California Department of Health Care Services Government 3381 $500M United States Palo Alto Networks Palo Alto Cortex XSOAR Incident Management 2019 n/a
In 2019, California Department of Health Care Services implemented Palo Alto Cortex XSOAR for Incident Management. The initiative was scoped to strengthen hybrid security operations across cloud and on premise environments, bringing SecOps, NOC, and network engineering into a unified incident handling workflow. Palo Alto Cortex XSOAR was configured to deliver playbook driven automation, incident orchestration, and centralized case management consistent with Incident Management functional patterns. Configurations emphasized automated playbooks for alert triage, threat enrichment, and scripted remediation, and the deployment included runbook templates and role based access to support repeatable responder actions. The implementation integrated Cortex XSOAR with cloud and network telemetry sources including Splunk, Prisma Cloud, AWS GuardDuty, CrowdStrike, Palo Alto NGFW telemetry, and Prisma Access to ingest alerts and orchestrate cross tool responses. The architecture reflected multi cloud visibility across AWS, Azure, and GCP, enabling automated ticketing handoffs and evidence collection from cloud native detection and SIEM systems. Governance incorporated formal runbooks, audit ready evidence collection, and training and enablement for NOC, SecOps, and engineering teams to operationalize playbooks and firewall hygiene processes. Controls and documentation were aligned with regulatory frameworks including PCI, SOX, HIPAA, and NIST 800 53 to ensure compliance driven incident handling and supported ongoing operational governance.
Flex Manufacturing 147979 $25.8B United States Palo Alto Networks Palo Alto Cortex XSOAR Incident Management 2019 n/a
In 2019 Flex deployed Palo Alto Cortex XSOAR for Incident Management. The Cortex XSOAR implementation was positioned to extend the existing Palo Alto Networks security platform that Flex had recently operationalized with Prisma Access and next generation network security controls, and to serve SecOps and IT across Flex’s global manufacturing and procurement operations. The deployment focused on security orchestration, automation and response workflows, using Cortex XSOAR to ingest and correlate threat indicators, enrich incidents with telemetry, and execute automated response playbooks. Functional capabilities implemented included automated incident triage, case and playbook orchestration, ticketing integration and scripted remediation actions, aligned to Incident Management workflows for faster investigations. Cortex XSOAR was integrated with the Palo Alto Networks stack that Flex had adopted, including Prisma Access secure access service edge, Threat Prevention, URL Filtering PAN-DB, WildFire and next generation firewall telemetry, enabling centralized correlation of cloud and network sensor data. Armature Systems supported the platform deployment and the broader rollout activities that connected remote users, regional service connections and data center controls to the centralized incident management and orchestration layer. Governance and operational scope centered on SecOps and IT teams, with Cortex XSOAR intended to automate routine responses and reduce ticket volume while preserving manual escalation paths for complex incidents. The expected outcome cited by Flex leadership is a reduction in ticket counts and faster ticket closure with improved operational efficiency, freeing SecOps and IT resources for higher value work.
Banking and Financial Services 166 $20M United States Palo Alto Networks Palo Alto Cortex XSOAR Incident Management 2023 n/a
Healthcare 16400 $1.2B United Kingdom Palo Alto Networks Palo Alto Cortex XSOAR Incident Management 2020 n/a
Banking and Financial Services 86746 $24.5B Canada Palo Alto Networks Palo Alto Cortex XSOAR Incident Management 2022 n/a
Showing 1 to 6 of 6 entries

Buyer Intent: Companies Evaluating Palo Alto Cortex XSOAR

ARTW Buyer Intent uncovers actionable customer signals, identifying software buyers actively evaluating Palo Alto Cortex XSOAR. Gain ongoing access to real-time prospects and uncover hidden opportunities.

Discover Software Buyers actively Evaluating Enterprise Applications

Logo Company Industry Employees Revenue Country Evaluated
No data found
FAQ - APPS RUN THE WORLD Palo Alto Cortex XSOAR Coverage

Palo Alto Cortex XSOAR is a Incident Management solution from Palo Alto Networks.

Companies worldwide use Palo Alto Cortex XSOAR, from small firms to large enterprises across 21+ industries.

Organizations such as Flex, Scotiabank, Nuffield Health, California Department of Health Care Services and Better Home & Finance Holding Company are recorded users of Palo Alto Cortex XSOAR for Incident Management.

Companies using Palo Alto Cortex XSOAR are most concentrated in Manufacturing, Banking and Financial Services and Healthcare, with adoption spanning over 21 industries.

Companies using Palo Alto Cortex XSOAR are most concentrated in United States, Canada and United Kingdom, with adoption tracked across 195 countries worldwide. This global distribution highlights the popularity of Palo Alto Cortex XSOAR across Americas, EMEA, and APAC.

Companies using Palo Alto Cortex XSOAR range from small businesses with 0-100 employees - 0%, to mid-sized firms with 101-1,000 employees - 16.67%, large organizations with 1,001-10,000 employees - 33.33%, and global enterprises with 10,000+ employees - 50%.

Customers of Palo Alto Cortex XSOAR include firms across all revenue levels — from $0-100M, to $101M-$1B, $1B-$10B, and $10B+ global corporations.

Contact APPS RUN THE WORLD to access the full verified Palo Alto Cortex XSOAR customer database with detailed Firmographics such as industry, geography, revenue, and employee breakdowns as well as key decision makers in charge of Incident Management.