Application Security - 3rd Party tools permissions - Administrator Guide - Cortex XSIAM - Cortex - Security Operations

Cortex XSIAM 3.x Documentation

Product
Cortex XSIAM
Creation date
2025-07-15
Last date published
2026-06-11
Category
Administrator Guide

Provides visibility into supply chain security, including external tools integrated with your development pipeline and a catalog of known supply chain components.

Supply Chain Tools

External security tools integrated with your development pipeline (e.g., SonarQube, Snyk, Semgrep, Veracode, 3rd Party AppSec Collector). Shows tool status, risk factors, permissions, and version information. To access Supply Chain Tools, go to ModulesApplication Security3rd Party ToolsSupply Chain Tools

For more information, see Supply Chain Inventories.

Permission

Description

Roles Example

None

No access to Supply Chain Tools.

SOC Tier-1 and Tier-2 Analysts: Supply chain data is rarely needed for incident investigation at these tiers.

View

Read-only access to supply chain tools data. Users can browse, filter, and view tool details. They cannot add, configure, or remove tools.

  • SOC Tier-3 Analyst: May need to review supply chain tools during software supply chain attack investigations.

  • Threat Hunter: Reviews supply chain tools to identify potential supply chain attack vectors

View/Edit

Full access to manage supply chain tools. Includes all View capabilities plus: add new tools, configure tool settings, remove tools, and manage tool integrations.

Security Engineer: Manages supply chain tool integrations.

Supply Chain Catalog

A catalog of known supply chain components and their security status, including pipeline tools discovered across CI/CD configurations. To access the Supply Chain Catalog, go to ModulesApplication Security3rd Party ToolsSupply Chain Catalog.

For more information, see Supply Chain Inventories.

Permission

Description

Roles Example

None

No access to Supply Chain Catalog.

SOC Tier-1 and 2 Analysts: Supply chain data is rarely needed for incident investigation at this tier.

View

Read-only access to the supply chain catalog. Users can browse, filter, and view catalog entries. They cannot update or manage catalog entries.

  • SOC Tier-3 Analyst: May need to review the supply chain catalog during software supply chain attack investigations.

  • Threat Hunter: Reviews the supply chain catalog to identify potential supply chain attack vectors

View/Edit

Full access to manage the supply chain catalog. Includes all View capabilities plus: update catalog entries and manage catalog data.

Security Engineer: Reviews the catalog for risk assessment