IBM QRadar

IBM QRadar

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  How to integrate Qradar and Cortex anti virus

    Posted Tue June 22, 2021 03:29 AM
    Hi All,

    We  are trying to integrated Cortex xdr (cloud based) and IBM Qradar (cloud based)., We need to understand the communication part.

    We have 3 on primes data gateways which forwards logs to Qradar.


    Please assist,


    Regards
    Asif Siddiqui

    ------------------------------
    Asif Siddiqui Senior Security Analyst
    ------------------------------


  • 2.  RE: How to integrate Qradar and Cortex anti virus

    Posted Mon December 13, 2021 10:51 AM

    best bet would be to install Cortex xdr app:

    here is the link:

    https://exchange.xforce.ibmcloud.com/hub/extension/d12c3794f142ee334b4bbdc83d10347f

    This app is cloud ready, that means can be installed on QRoC



    ------------------------------
    Ashish Khandewale
    ------------------------------



  • 3.  RE: How to integrate Qradar and Cortex anti virus

    Posted Tue June 20, 2023 08:14 AM

    Sorry, but the only way I was able was to use the Universal Cloud Connect App to pull data from the XDR Data Lake.

    The "app" that was mentioned above didn't help



    ------------------------------
    BrunoMarX
    ------------------------------



  • 4.  RE: How to integrate Qradar and Cortex anti virus

    Posted Mon June 19, 2023 10:56 AM

    Hi Asif , Please can I comment if you integrated CORTEX with QRoC? we have the same problem

    Thank you for your comments.

    Regards

    Jorge Torres 



    ------------------------------
    JORGE ALBERTO TORRES BAUTISTA
    ------------------------------