User Investigation - Generic

This playbook performs an investigation on a specific user, using queries and logs from SIEM, Identity management systems, XDR, and firewalls. Supported Integrations: -Okta -Splunk -QRadar -Azure Log Analytics -PAN-OS -XDR / Core By Palo Alto Networks.

Pack
CommonPlaybooks
Tasks
29

Inputs

Outputs

Commands used