Cortex — Detection & Response

Cortex XDR
Extended Detection & Response

The platform-consolidation alternative to point EDR solutions. XDR correlates endpoint, network, cloud, and identity data in a unified telemetry layer—powered by agentic AI, at version 5.2 (July 20, 2026).

Gartner
EPP Leader × 3
5.2
July 2026 Release
AgentiX
Agentic AI Workforce
#1
MITRE ATT&CK

Overview

What is Cortex XDR?

Cortex XDR is Palo Alto Networks' flagship Extended Detection and Response platform—the commercial and technical foundation of the entire Cortex portfolio. It correlates telemetry from endpoints, networks, cloud workloads, identity, and email into the Cortex Extended Data Lake, then applies AI to detect, investigate, and respond across all vectors.

Named a Leader in the 2025 Gartner Magic Quadrant for Endpoint Protection Platforms (third consecutive year), XDR is positioned as the platform-consolidation play against CrowdStrike and Microsoft. The current release is Cortex XDR 5.2 (July 20, 2026), running on XDR agent 9.3 (July 26, 2026). It adds a frontier-AI-optimized agent, ITDR 2.0, native Prisma Browser integration, and Agentic Endpoint Security (AES) built directly into the XDR agent. There is no end-of-sale for Cortex XDR — Palo Alto states the capabilities in XSIAM 3.6 are also available across Cortex AgentiX, Cortex XDR and Cortex Cloud, so XDR is the endpoint/workspace entry point into the same platform.

Best-fit: Mid-market to enterprise (500+ endpoints) with an existing or growing SOC. Ideal for PANW firewall customers extending NGFW telemetry into XDR without a new agent.

Platform Depth

Key Capabilities

Multi-vector correlation, AI detection, and automated response across every attack surface.

Multi-Vector Correlation
Stitches telemetry from endpoints, NGFW, cloud workloads, identity (AD/Okta), and email into causality chains—connecting attack steps without manual pivoting.
AI-Driven Threat Detection
Behavioral analytics, UEBA, and ML models detect anomalies, fileless attacks, ransomware, zero-day exploits, and credential abuse. Rules are customizable per risk profile.
Endpoint Protection
NGAV, behavioral blocking, exploit protection, ransomware prevention, device control, host firewall, and BitLocker/FileVault management in one agent.
Root-Cause Investigation
Every alert surfaces its full causality chain—processes, network connections, and file events. AI summarization translates complex alerts into plain language for faster triage.
Automated Response
Endpoint isolation, process kill, registry remediation, file quarantine, and integration with XSOAR playbooks. Resolution Center consolidates all remediation into one workflow.
ITDR 2.0 (Identity Add-On, XDR 5.2)
Detects credential compromise, lateral movement, insider threats, and malicious LDAP reconnaissance in real time. ITDR 2.0 adds Conditional Access Policies (Okta, Entra, on-prem AD), Active Directory Security Posture Management (AD-SPM), 17 new detectors, and granular RBAC.
Endpoint DLP (Add-On, introduced XDR 5.0)
On-device data classification—sensitive data never leaves the endpoint for scanning. Enforces data protection even offline; visibility into cloud sync, USB, and print activity. DLP scanning extended to 300 MB files in 5.2.
WildFire Cloud Sandbox
Unknown files auto-submitted to WildFire for cloud-based malware analysis. Verdicts returned in minutes and shared across 70,000+ PANW customers globally.
Prisma Browser Integration (XDR 5.2)
Native integration between Prisma Browser (the current official name, formerly Prisma Access Browser) and Cortex XDR and XSIAM. Browser session telemetry and enforcement land in the same case workspace; PAN-OS 12.2 adds NGFW-native Prisma Browser identification.
Agentic Endpoint Security (AES — GA with XDR 5.2)
Powered by the Koi Security acquisition (closed Apr 14, 2026; value undisclosed officially, ~$400M per press reports from Calcalist). Discovers AI agents, MCP servers, plugins and browser extensions and enforces real-time guardrails. AES is now an integral part of the XDR agent with XDR 5.2 — zero additional deployment. Also folded into Prisma AIRS and still deployable standalone alongside third-party EDR.

Release Progression

XDR 5.x — AgentiX, ITDR 2.0 and AES

5.0 embedded the agentic AI workforce; 5.1 hardened detection; 5.2 is the current release.

XDR 5.0 — Jan 28, 2026 AgentiX embedded natively, no-code agent builder, Automation Engineer, rebuilt case management and Resolution Center, Endpoint DLP add-on (on-device classification), Unified Exposure Management add-on with controls verification and virtual patching, Linux/macOS on-write protection, Email Security Command Center.
XDR 5.1 — May 3, 2026 File Integrity Monitoring (separate license), Kernel Monitoring Defense for macOS, Java malware protection.
XDR 5.2 — Jul 20, 2026 (current) Frontier-AI-optimized agent; AES is now an integral part of the XDR agent with zero additional deployment; native Prisma Browser integration with XDR and XSIAM; Linux CPU/memory throttling; DLP up to 300 MB; Android 17 day-one support; ITDR 2.0 (Conditional Access Policies for Okta, Entra and on-prem AD, AD-SPM, 17 new detectors, granular RBAC). Runs on XDR agent 9.3 (Jul 26, 2026).
XDR 5.x key message: AgentiX agents handle triage, enrichment, and host containment 24/7. All agent actions governed by RBAC with human-in-the-loop approval and full audit log.

Autonomous Triage & Enrichment

AI agents handle alert triage, context enrichment, and initial containment around the clock—reducing analyst workload and MTTR without requiring human intervention for routine cases.

Specialized Agent Coverage

Dedicated agents for endpoint, email, and network environments. Each agent is trained on domain-specific TTPs for higher-fidelity decisions in its area of coverage.

No-Code Custom Agent Builder

Build custom agentic workflows without writing code. Define agent objectives, data sources, and approval gates in a visual interface—allowing SOC teams to automate unique workflows.

Automation Engineer

Generates automation scripts from plain-language prompts. SOC analysts describe what they need in natural language; the agent produces production-ready scripts for review and deployment.

Rebuilt Analyst Experience

Redesigned case management with AI-driven summarization, a new Resolution Center for consolidated remediation, and contextual agentic assistance side-by-side in the investigation workspace.

Unified Exposure Management (Add-On)

Combines XDR agent assessments with network, external, and third-party scans. AI prioritizes vulnerabilities by exploitability likelihood and business context, with virtual patching support.

Licensing

License Tiers

XDR 5.x licensing: Cortex XDR Pro EP and Cortex XDR EP Cloud, on the Enterprise Runtime Security (XDR) + Core Analytics base.

Cortex XDR EP Cloud
For cloud workloads and containers · Enterprise Runtime Security (XDR) + Core Analytics base
  • Runtime protection for cloud VMs, containers and Kubernetes
  • Same detection, analytics and agentic response stack as Pro EP
  • Sized by cloud host / workload rather than corporate endpoint
  • Pairs with Cortex Cloud for posture and application security
Add-On Catalog
Same catalog as XSIAM, attached to the XDR base
  • ITDR (2.0), Forensics, Host Insights, Extended Threat Hunting
  • Endpoint DLP, Data Retention, Extended Compute Units
  • Exposure Management (now a distinct module, separate from Xpanse/ASM)
  • Extended Threat Intelligence (XTI), Threat Intelligence Management
  • Endpoint / GB Event Forwarding, Advanced Email Security
  • File Integrity Monitoring (separate license, added in 5.1)
Legacy 3.x tiering: The four-tier model — Prevent, Pro per Endpoint, Pro per GB and Cloud per Host — is legacy Cortex XDR 3.x packaging. It is still encountered across the installed base and in renewal paperwork, so know it, but do not present it as the current lineup. “Pro per GB” is superseded by the XSIAM NG-SIEM data-tier model. Migrate customers onto Cortex XDR Pro EP or Cortex XDR EP Cloud on the Enterprise Runtime Security (XDR) + Core Analytics base.
Pricing note: All pricing is quote-based through PANW NextWave partners. Volume and multi-year discounts apply. ITDR, Endpoint DLP, Exposure Management, File Integrity Monitoring and Managed Threat Hunting are paid add-ons.

Win Strategy

Key Differentiators vs. Competition

Where XDR wins, where competitors are strong, and how to position in each scenario.

Differentiator vs. CrowdStrike Falcon vs. Microsoft Defender XDR vs. SentinelOne
Native PANW data sources CS requires third-party connectors for firewall/network data Native only to M365 stack; limited non-Azure coverage Relies on third-party integrations for network data
Agentic AI (AgentiX) Charlotte AI is generative, not agentic workflow execution Copilot for Security is add-on, not natively embedded Purple AI is assistant-focused, not an agent executor
Causality chain visualization Incident Workbench strong but less cross-source correlation Defender XDR correlation is M365-first Story Graph is comparable; depth of cross-vector varies
MITRE ATT&CK validation Both validated top-tier in EPP evaluations Both validated top-tier in EPP evaluations SentinelOne withdrew from most recent MITRE evaluation
PANW ecosystem leverage Requires CS-specific integrations; no NGFW native path Deep M365/Azure advantage for Microsoft shops Independent ecosystem; no platform consolidation story

Landmines to Plant

vs. CrowdStrike
"Ask them to show real-time correlation of a network-based attack with endpoint activity — without a separate SIEM layer. How does CrowdStrike handle NGFW telemetry natively?"
vs. Microsoft
"What's your detection coverage for non-Microsoft assets — Linux workloads, Cisco network equipment, AWS-native services? Defender XDR is M365-native and weaker outside that stack."
vs. SentinelOne
"SentinelOne withdrew from the most recent MITRE ATT&CK evaluation. Ask why, and what it means for their detection coverage claims. PANW has participated and demonstrated top-tier results."

Platform Synergy

PANW Ecosystem Integration

XDR is the endpoint and detection foundation that makes the entire PANW platform more powerful.

Cortex XSIAM XDR is the endpoint sensor layer for XSIAM. XDR agents feed the Cortex Extended Data Lake; XSIAM adds NG-SIEM, SOAR, cloud detection, and unified analyst experience on top. XSIAM Enterprise and Premium include the Enterprise Runtime Security (XDR) capability set.
PANW NGFW / Panorama Network telemetry from firewalls feeds XDR's correlation engine without additional agents — a unique competitive advantage for PANW firewall customers.
Prisma Access (SASE) Prisma Access logs (user activity, remote access) ingest into XDR for UEBA and lateral movement detection across hybrid/remote workforce environments.
Cortex XSOAR XDR triggers automated XSOAR playbooks for cross-platform response orchestration. XSOAR can isolate endpoints, block IPs, and create ServiceNow/Jira tickets from XDR alerts.
Cortex Xpanse Xpanse discovers unmanaged internet-facing assets; XDR Active Response can isolate endpoint-accessible hosts discovered as high-risk via Xpanse playbooks.
WildFire Unknown samples detected by the XDR agent are automatically forwarded to WildFire for cloud-based analysis. Verdicts shared across the global customer base in real time.

Pre-Sales

Scoping Checklist

Data points to collect before quoting Cortex XDR 5.x.

Endpoint Count by OS — Windows, macOS, Linux, Android/iOS counts — sizes Cortex XDR Pro EP. Confirm Android 17 and ARM64 estate.
Cloud Host / Container Count — Cloud VMs, container hosts and Kubernetes nodes — sizes Cortex XDR EP Cloud separately from Pro EP.
License Plan Decision — Cortex XDR Pro EP vs Cortex XDR EP Cloud on the Enterprise Runtime Security (XDR) + Core Analytics base. Note any legacy 3.x Prevent / Pro per Endpoint / Pro per GB / Cloud per Host contracts to be converted.
Incumbent EDR & Contract End Date — Vendor (CrowdStrike, Microsoft Defender, SentinelOne), seat count, annual spend and exact renewal date.
Required Add-Ons — ITDR 2.0, Endpoint DLP, Exposure Management, Forensics, Host Insights, Extended Threat Hunting, File Integrity Monitoring, Data Retention, XTI.
Log Retention & Data Volume — Required retention in days and estimated GB/day of endpoint telemetry; decide whether NG-SIEM data tiering or XSIAM is the better home.
Existing PANW Estate — NGFW/Panorama, Prisma Access, Prisma Browser and Strata Cloud Manager presence — native telemetry that ships into XDR without a new agent.
Agent Version & Deployment Constraints — Current XDR agent version (9.3 is current, released Jul 26, 2026), kernel restrictions, air-gapped or Linux CPU/memory throttling requirements, and OS images to certify.
Identity Sources for ITDR — Okta, Microsoft Entra ID and on-prem Active Directory domains/forests in scope for Conditional Access Policies and AD-SPM.
Services & Managed Scope — Whether Unit 42 Managed XSIAM (MSIAM), Unit 42 MDR on Cortex XDR Pro, or a Cortex XMDR Specialization partner will operate the deployment.

Sales Conversations

Discovery Questions

Open-ended questions to uncover EDR gaps and build the XDR consolidation case.

01 How many separate consoles does your SOC team pivot between during a typical investigation?
02 How are you correlating endpoint alerts with network, cloud, and identity events today — and how long does that take manually?
03 What is your current MTTR for a confirmed ransomware incident from detection to containment?
04 Do you have Palo Alto NGFWs today? Are those firewall logs feeding your EDR/SIEM for correlation, or are they siloed?
05 When is your current EDR or endpoint protection contract up for renewal, and what are the main gaps you're looking to address?
06 Are you actively evaluating AI/ML-driven automation for SOC triage — and what would 24/7 autonomous triage mean for your analyst team?
07 How do you currently manage identity threat detection — do you have visibility into lateral movement and credential abuse in real time?
08 Are you looking to consolidate your security platform, or are you comfortable managing multiple point vendors for EDR, SIEM, and SOAR?