Contact sales
Details

Check Point Quantum Smart-1 Cloud efficiently manages firewalls and security policies with a single platform and user-friendly management interface.

Check Point Quantum Smart-1 Cloud is a unified network security policy management platform for firewalls, applications, users, and workloads. With real-time threat visibility, large-scale event logging, and rich Management API.

This integration uses the Management API to access Check Point NGFW alerts. Check Point NGFW is built on the basic concept of traditional firewalls but additionally includes deep packet inspection, application-level inspection, intrusion prevention, and advanced malware prevention capabilities like sandboxing. It also brings in threat intelligence from outside the firewall.

Integration with Check Point Quantum Smart-1 Cloud allows Cisco XDR to incorporate NGFW alerts in investigations. These alerts provide detailed visibility into network traffic and malicious activity.
Use this integration to query for security detections of observables including IP, hostname, domain, process name, file name, URL, MD5, and SHA-256.

This integration also provides an automatic target in Cisco XDR automation which can be used for various firewall-related workflow use cases.

Capabilities
Automation
Automatic target creation for Cisco XDR automation
Health
Validates that the integration is healthy
Observe
Provides sightings for an observable
Deliberate
Provides dispositions for observables
Regions
North America
Europe
Asia-Pacific, Japan & China
Configuration details