1. Home
  2. Palo Alto Networks
  3. XDR-Engineer Exam Syllabus

Palo Alto Networks XDR-Engineer Exam Syllabus

Start Free XDR-Engineer Exam Practice After Reviewing the Topics

Before starting your XDR-Engineer exam preparation, it is recommended to review the complete Palo Alto Networks Certified XDR Engineer exam syllabus and carefully go through the exam objectives listed below. Once you understand the exam structure and objectives, you should practice using our free XDR-Engineer questions. We also provide premium XDR-Engineer practice test, fully updated according to the latest exam objectives, to help you accurately assess your preparedness for the actual exam.

Palo Alto Networks XDR-Engineer Exam Objectives

Section Weight Objectives
Planning and Installation 14% 1 Explain the deployment process, objectives, and resources (e.g., hardware, software, data
sources, integrations)
1.2 Explain the deployment and functionality of Cortex XDR components
1.2.1 XDR agent
1.2.2 Broker VM
1.2.3 XDR Collector
1.2.4 Cloud Identity Engine
1.3 Configure user roles, permissions, and access controls
1.4 Demonstrate understanding of data retention and compute units
Cortex XDR Agent Configuration 22% 2.1 Configure endpoint prevention profiles and policies
2.2 Configure endpoint extension profiles and policies
2.3 Configure endpoint groups
 
Ingestion and Automation 22% 3.1 Onboard data sources (e.g., NGFW, network, cloud, identity)
3.2 Manage simple automation rules
3.3 Configure Broker VM applets and clusters
3.4 Configure XDR Collectors
3.5 Configure parsing rules
Detection and Reporting 22% 4.1 Create detection rules to align with requirements
4.1.1 Correlation
4.1.2 Custom prevention rules
4.1.3 Behavioral indicators of compromise (BIOCs) and indicators of compromise (IOCs)
4.2 Configure exceptions and exclusions
4.3 Create custom dashboards and reporting templates
Maintenance and Troubleshooting 20%  5.1 Manage Cortex XDR software component updates (e.g., content, agents, Collectors,
Broker VM)
5.2 Troubleshoot data management issues (e.g., data ingestion, parsing)
5.3 Troubleshoot Cortex XDR components (e.g., agents, Collectors, Broker VM)
Official Information https://www.paloaltonetworks.com/services/education/palo-alto-networks-xdr-engineer