Palo Alto Networks Cortex XSOAR Scalability

Donald Keeber - PeerSpot reviewer
President at Margate Net

I believe Cortex is scalable but only to a point. I couldn't see attempting to manage 1000+ users on it. Too many headaches to have to deal with that large a deployment. 

View full review »
JP
Cybersecurity Cyber Crime Infrastructure Engineer & Investigator at a government with 5,001-10,000 employees

It is scalable. If I noticed that there wasn't any impact in performance, then I'd simply launch another instance and then cluster them together in order to provide shared resources between the two in a cluster. If a particular integration is misbehaving because there aren't sufficient resources on the one instance that we currently have, then I can detach that instance or that integration from the instance into its own VM. That way it has enough resources on another VM in order to actually run that integration.

There are 15 investigators using this solution. 

In terms of increasing usage, we're looking at bringing in our audit vulnerability and assessment team and having them do their vulnerability assessments from within the platform. I'm going to have to reach out to them to get them to start looking at the vulnerability layout, the incident type, the playbook, and the Nessus connectors in order to be able to have them perform that through XSOAR and then follow up through XSOAR with regards to remediation.

View full review »
AS
Works at a educational organization with 10,001+ employees

I haven’t seen any lag in terms of platform scalability. It scales to cover all the endpoints. Although, sometimes there are latencies for Panorama. It could be because there are a lot of legacy systems.

View full review »
Buyer's Guide
Palo Alto Networks Cortex XSOAR
April 2024
Learn what your peers think about Palo Alto Networks Cortex XSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,415 professionals have used our research since 2012.
Iskandar Iskak - PeerSpot reviewer
Director Sales for Education Market at Telekom Malaysia

It is not a very scalable solution. Because of the implementation that we have within the device as it is metered by the number of even EPS that we are able to accept. At present, twelve users are using the solution as we are a government enterprise.

I rate the scalability a six out of ten.


View full review »
Jasmin Surani - PeerSpot reviewer
Senior Cybersecurity Engineer (Security Operations & Engineering) at a manufacturing company with 10,001+ employees

We have six users actively using XSOAR. XSOAR is specifically for security teams, it is not for everyone to use.

View full review »
Chetankumar Savalagimath - PeerSpot reviewer
Delivery Manager at a tech services company with 1,001-5,000 employees

It is a scalable solution. The best part was the working model when it transitioned from Demisto to Palo Alto Networks. Demisto had around 220 plus integrations when they launched. That was back in 2018 before it was acquired by Palo Alto Networks. But automation can be increased.

View full review »
Oleksii Pavlyk - PeerSpot reviewer
Head of the direction of ensuring the security of digital systems, electronic databases and networks at Ukreximbank

It is a scalable solution.

Palo Alto Networks Cortex XSOAR is a tool that is used only by me and my team in our company. The tool is mainly used by only two people in my company.

View full review »
ML
Splunker, Networking and E-Mail Security Architect, Engineer and Guru at a healthcare company with 10,001+ employees

It offers some architecture recommendations to make it really scalable if you choose.

For example, hot standby, bond standby, clustering, and breaking out components in dedicated servers. You can go wild if you want to go wild, but we wanted to keep it easy and stable.

Pretty much network security and SOC are the main users. I believe that we are licensed for 20 users.

We are definitely extensively using this solution. We are currently training many additional teams to be self-sufficient in usage. The usage will increase more and more.

View full review »
Nethra Sk - PeerSpot reviewer
Head of Security Monitoring and Control at Alstom Ferroviaria S.p.A.

The solution is scalable. Internally, there are around ten to 12 people who use it. However, I am unsure of the exact number of external users.

View full review »
DL
Senior Information Technology Support Engineer at TSCNET Services GmbH

The solution is quite scalable. If a company needs to expand it, it can do so.

View full review »
Chetankumar Savalagimath - PeerSpot reviewer
Delivery Manager at a tech services company with 1,001-5,000 employees

We haven't tried to scale, however, as per the technical documents which I have read, it should be understood by the customer before it is deployed. It all depends on how many integrations or how many triggering points a company has. You need to have an idea of the scope. Remediation can take a minute or two, however, it will still be possible. There isn't too much of a concern for scaling right now.

We have one or two customers using the solution for their own purposes. We are consulting with two more customers. We do plan to increase usage in the future. 

View full review »
MA
MSS Delivery Lead at Help AG

The tool is highly scalable. I rate the scalability an eight out of ten. There are ten users in our organization. The solution is used 24/7. We have a plan to increase the usage.

View full review »
Waheb Samaraie - PeerSpot reviewer
Network Engineer at Kamps Propane

I rate the scalability of the solution as an eight out of ten.

View full review »
SB
Vice President Global Technology Infrastructure Automation at a financial services firm with 10,001+ employees

The solution is extremely scalable. If a company needs to expand it, it can do so easily.

View full review »
ShubhamAgarwal - PeerSpot reviewer
Specialist - Information Security at LPI

Cortex XSOAR is scalable.

View full review »
Sara Qafa - PeerSpot reviewer
Systems Engineer at Exclusive Networks

The solution is suitable for enterprise businesses.

View full review »
Mostafa-Ahmed - PeerSpot reviewer
Cybersecurity incident response team lead at Information Technology Solutions- ITS

Cortex XSOAR is generally scalable and I would rate the scalability an eight out of ten. It is a bit challenging to migrate it from a regular database to a high-availability Elastic database, but it is possible. The ease of migration depends on how well it was planned from the start. Overall, it is a good option for scalability, but careful planning is essential for smooth transitions. The engine, which acts as a broker for connections and integrations in Cortex XSOAR, is highly efficient and reliable.

View full review »
AYOUB ECH-CHKAF - PeerSpot reviewer
Security Operations Center Analyst (L2 at Thales

I rate the solution's scalability a ten out of ten.

View full review »
SM
Security Project Manager at a retailer with 10,001+ employees

The scalability of Palo Alto Networks Cortex XSOAR is fine for what we are using it for.

We have our SecOps department of user 50 people that are using the solution for alerts. We plan to increase usage in the future.

View full review »
HendrikDu Plooy - PeerSpot reviewer
Business Development Manager at a tech services company with 11-50 employees

It is a scalable solution. I would rate scalability a ten out of ten. Our clients are enterprise businesses. 

View full review »
Rodrigo AlexiPizarro - PeerSpot reviewer
IT Operations Deputy Manager at Ultramar Agencia Marítima

We have approximately 1,000 users using Palo Alto Networks Cortex XSOAR in our organization. The solution is scalable.

View full review »
Nick Rama - PeerSpot reviewer
System Engineer at Nexus Technologies,Inc.

It is a scalable solution.

View full review »
Cemil Altug - PeerSpot reviewer
Hybrid Cyber Security Team Lead at Dndx CyberSecurity

It is a scalable solution. There are two hundred users using the solution at present. I rate the scalability an eight out of ten. 

View full review »
GJ
Deputy Vice President at a financial services firm with 10,001+ employees

I'm not sure how scalable the solution is.

View full review »
YP
Business Development Manager at a tech services company with 51-200 employees

I rate the solution's scalability as an eight. It is complex to scale.

View full review »
DL
Sales engineer at MUK

The solution is scalable. You have the ability to start from a small number of agents and go to any number of agents. Likely, small businesses will not need such a solution, however, if they will need it, and they need to grow, it can scale really well for them - so long as they have the money.

View full review »
RK
Network and Information Security at a tech services company with 10,001+ employees

It is quite scalable. I would rate it a ten out of ten.

View full review »
VW
Security Professional at a tech services company with 51-200 employees

The existing model is good, but if we go for big deployments, I think there are a few challenges in scalability. They use their internal BoltDB, which is good for a medium organization, but for large organizations, they support Elasticsearch, which is too costly. The DR capabilities are not good.

View full review »
SA
CyberSecurity Consultant at Information Technology Solutions- ITS

It is a scalable solution. I rate its scalability an eight out of ten.

View full review »
NN
None at Invecto

The product is scalable. It can integrate with a lot of products.

View full review »
Nicolo Corrado - PeerSpot reviewer
Consulente immobiliare at Libero

As far as I know, Cortex XSOAR's scalability is okay. I'm just a user, so I don't know.

View full review »
FA
Cyber Security Analyst at a tech services company with 11-50 employees

The product is scalable. I rate the scalability an eight out of ten. At a managed service level, the product can really scale well. So far, it’s good. Our clients are small, medium and enterprise businesses.

View full review »
DS
Consultant at a tech services company with 501-1,000 employees

The solution is scalable. We have already approximately 200 devices deployed into the cloud and we are planning to increase usage in the future. We have approximately 600 employees using this solution in my organization and the solution has been completely coordinating the logs of all these users well.

View full review »
SA
Network Security Engineer at a tech services company with 201-500 employees

It is very scalable. It can be easily integrated with other third-party APIs.

View full review »
RB
Supervisor SOC at a tech services company with 51-200 employees

I have found Palo Alto Networks Cortex XSOAR to be scalable all the time.

View full review »
it_user1333062 - PeerSpot reviewer
Director at a tech services company with 11-50 employees

My impression is that Demisto is scalable and it is capable of working across wide geography at any given point in time. The traffic comes in from everywhere in the world and this solution is able to identify threats ahead of time.

Our clients for this solution are medium-sized and enterprise-level businesses.

View full review »
Buyer's Guide
Palo Alto Networks Cortex XSOAR
April 2024
Learn what your peers think about Palo Alto Networks Cortex XSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,415 professionals have used our research since 2012.