For the complete documentation index, see llms.txt. This page is also available as Markdown.
Cortex XSOAR 8 (SaaS)

Export incidents

Export Cortex XSOAR 8 SaaS incidents.

You can export incidents by doing the following:

  • Manually export one or more incidents from the Incidents table to an Excel or CSV file. For more information, see Export incidents from the Incidents table.

  • Export incidents on demand to external cloud storage. For more information, see Export incidents on demand.

  • Export incidents on a scheduled basis from Cortex XSOAR to external storage. For more information about how to schedule incident export, see Schedule incident export.

    Incidents are exported based on your retention policy, before retention is enforced. Your retention policy for Cortex XSOAR incidents is 6 months.

Last updated

Was this helpful?