Code42 (v6.1.18)

The Code42 INCYDR integration accelerates insider threat incident response and remediation procedures for potential data exfiltration across computers, email, cloud and SaaS apps.

Author
Code42
Support
partner
URL
https://support.code42.com/Administrator/Cloud/Monitoring_and_managing/Install_and_manage_the_Code42_app_for_Cortex_XSOAR
Default data source
Code42 Event Collector
Categories
Data Enrichment & Threat Intelligence

Incident fields (13)

Integrations (2)

Layouts (1)

Modeling rules (1)

Playbooks (20)

Scripts (1)

README

Code42 integrates with Palo Alto Networks Cortex XSOAR to provide accelerated incident response and automated remediation to potential file exfiltration from insiders happening across endpoints, email, cloud and SaaS applications. The Code42 exfiltration playbook in Cortex XSOAR investigates potential file exfiltration and provides fast access to file events and metadata across physical and cloud environments.

Code42 together with Cortex XSOAR enables security teams to scale, standardize and accelerate their overall incident response process for Insider Risk, so they can quickly detect and respond to data risk when employees or temporary workers leave your organization.