Kaspersky EDR: improved detection mechanisms and responses

Kaspersky EDR: improved detection mechanisms and responses

Share post

Kaspersky Endpoint Detection and Response Optimum: new version simplifies protection against complex threats. The current solution has forward-looking detection mechanisms to react to cyber attacks. Damage to relevant operating system files is prevented and file reputation information is provided.

Kaspersky Endpoint Detection and Response Optimum now offers advanced automated detection mechanisms and tailored incident response recommendations. The updated solution now also protects against damage to critical operating system files and provides file reputation information from Kaspersky's Threat Intelligence Portal.

More defense against rising attacks

The protection of IT infrastructures, which are becoming more and more complex, poses increasing challenges for companies. Serious security incidents continue to increase - by 50 percent in the past year, as confirmed by the current Kaspersky analysis "Managed Detection and Response Analytics Report".

To support IT security professionals in companies in protecting a larger attack surface and complexity, the cyber security provider has further developed its Kaspersky Endpoint Detection and Response solution. The updated version provides users with the ability to develop critical incident investigation and response skills, helping them get the job done with tight timeframes and limited attention spans.

New Guided Response feature

Kaspersky Endpoint Detection and Response Optimum now provides even more detailed information, which now includes a new “Guided Response” section in the alert notifications, in addition to the already available YouTube video tutorials [5]. This recommends steps for IT security professionals to investigate and respond to incidents.

In addition, Kaspersky Endpoint Detection and Response Optimum includes other built-in features such as Threat Intelligence File Reputation in the alert card. If a reaction is executed, a special check helps to avoid errors that could lead to the blocking of important operating system files and, in the worst case, the destruction of the entire infrastructure.

Cloud sandbox detection mechanism

File reputation from the Kaspersky Threat Intelligence Portal is available directly in the console, giving users an overview of which files are legitimate, malicious or suspicious. In addition, it allows both known and new threats to be identified more quickly and displays information about the regions or countries in which the file was observed most frequently. Additionally, a link to the Threat Intelligence Portal is provided with additional information about the file.

Multiple award-winning solution for professionals and beginners

“When our team worked on the extensions for Kaspersky Endpoint Detection and Response Optimum, one of the goals was to make all the features of the solution accessible to all types of users; even for those who are just starting to dive into incident detection and response,” comments Pavel Petrov, Senior Product Manager at Kaspersky. "We are convinced that with the new functions our customers can not only ensure the protection of their company against various types of threats, but also increase the EDR competence of the internal IT security team."

Over the past year, Kaspersky Endpoint Detection and Response has repeatedly received awards for its outstanding protection performance. The product offers excellent results in independent reviews in various ratings, including SE-labs, IDC or Radicati Group.

More at Kaspersky.com

 


About Kaspersky

Kaspersky is an international cybersecurity company founded in 1997. Kaspersky's in-depth threat intelligence and security expertise serve as the basis for innovative security solutions and services to protect companies, critical infrastructures, governments and private users worldwide. The company's comprehensive security portfolio includes leading endpoint protection as well as a range of specialized security solutions and services to defend against complex and evolving cyber threats. Kaspersky technologies protect over 400 million users and 250.000 corporate customers. More information about Kaspersky can be found at www.kaspersky.com/


 

Matching articles on the topic

Cybersecurity platform with protection for 5G environments

Cybersecurity specialist Trend Micro unveils its platform-based approach to protecting organizations' ever-expanding attack surface, including securing ➡ Read more

Data manipulation, the underestimated danger

Every year, World Backup Day on March 31st serves as a reminder of the importance of up-to-date and easily accessible backups ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

The AI ​​Act and its consequences for data protection

With the AI ​​Act, the first law for AI has been approved and gives manufacturers of AI applications between six months and ➡ Read more

Windows operating systems: Almost two million computers at risk

There are no longer any updates for the Windows 7 and 8 operating systems. This means open security gaps and therefore worthwhile and ➡ Read more

AI on Enterprise Storage fights ransomware in real time

NetApp is one of the first to integrate artificial intelligence (AI) and machine learning (ML) directly into primary storage to combat ransomware ➡ Read more

DSPM product suite for Zero Trust Data Security

Data Security Posture Management – ​​DSPM for short – is crucial for companies to ensure cyber resilience against the multitude ➡ Read more

Data encryption: More security on cloud platforms

Online platforms are often the target of cyberattacks, such as Trello recently. 5 tips ensure more effective data encryption in the cloud ➡ Read more