Skip to content

Commit

Permalink
silverfront_pack_readme_file (#15244)
Browse files Browse the repository at this point in the history
* pack_readme_file

* minor re-format

* secret
  • Loading branch information
iyeshaya authored Oct 10, 2021
1 parent 04f384d commit 4820559
Show file tree
Hide file tree
Showing 2 changed files with 15 additions and 1 deletion.
3 changes: 2 additions & 1 deletion Packs/Silverfort/.secrets-ignore
Original file line number Diff line number Diff line change
Expand Up @@ -7,4 +7,5 @@ sfuser@silverfort.com
john@silverfort.com
domain_name=\"silverfort.io\"
resource_name=\"SF-DC-1\"
support.silverfort.com
support.silverfort.com
www.silverfort.com
13 changes: 13 additions & 0 deletions Packs/Silverfort/README.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,13 @@
Whenever Cortex XSOAR runs an investigation that entails a suspicion of compromised user account it leverages Silverfort’s visibility to gain wider context of the investigated user account and applies Silverfort’s proactive protection capabilities such as requiring MFA or blocking access altogether as part of Cortex playbooks.

##### What does this pack do?
Mutual data enrichment on user’s risk and triggering protective actions:
- Cortex XSOAR queries Silverfort whether an investigated user account is a service account or a human user
- Cortex XSOAR queries Silverfort’s risk score for investigates user accounts
- Cortex XSOAR actively updates users’ risk scores at Silverfort based on its automated investigation
- Silverfort blocks user access to resources or requires MFA based on Cortex playbook

Add helpful, relevant links below
- https://www.silverfort.com/
- https://www.silverfort.com/request-a-demo/
- https://www.silverfort.com/portfolio-item/form-blocking-identity-based-threats-with-silverfort-palo-alto-networks-cortex-xsoar-2/

0 comments on commit 4820559

Please # to comment.