Palo Alto Networks · JSON Structure
Cortex Xsiam Api Incident Structure
A XSIAM incident correlating related alerts into a unified investigation.
Cloud SecurityCybersecurityFirewallNetwork SecuritySASESOARThreat IntelligenceXDR
Incident is a JSON Structure definition published by Palo Alto Networks, describing 15 properties. It conforms to the https://json-structure.org/meta/core/v0/# meta-schema.
Properties
incident_id
incident_name
description
status
severity
assigned_user_mail
assigned_user_pretty_name
alert_count
creation_time
modification_time
detection_time
starred
xdr_url
mitre_tactics_ids_and_names
mitre_techniques_ids_and_names
Meta-schema: https://json-structure.org/meta/core/v0/#