Videos
What is the difference between XDR and EDR?
What is Microsoft Defender XDR?
Is Defender XDR compatible with non-Windows systems?
Hello,
Currently we use SentinelONE. We're looking to integrate our company's information system into Microsoft a bit more (Intune, Entra etc...) Because of licences we're going to use, we could use Defender too but I was wondering if it's a good XDR, especially compare to Sentine One.
If you could provide some feedback i would appreciate !
Thanks in advance.
We are setting up a new site and getting upsold on XDR. I understand that it is probably a superior product than Microsoft (which is currently included on our E5 license) but our SOC consists of just me following up on alerts. Curious about any experience with XDR vs other EDRs. Is it more for active monitoring SOC teams?
Hello community!
Lately, I've noticed a lot of discussions and cases on Reddit and elsewhere about bypassing EDR and Antivirus solutions. There are reports of servers being encrypted despite the presence of XDR/MDR functions from manufacturers, etc. This raises several questions for me, especially about moving all security stacks to Microsoft 365, particularly for clients with a Business Premium subscription. I'm having trouble forming a clear opinion on this.
On one hand, it seems like putting all your eggs in one basket, right? On the other hand, solutions combining AV+EDR with a service like BlackPoint seem more robust to me. Or maybe it would be wiser to have one provider for AV, another for EDR, and yet another for MDR? I also have questions about integrating an MDR solution within the same solution as AV and EDR.
I'm not sure if there's already a thread on this topic; if there is, I'd appreciate the link! What do you think?
Thanks for your insights!
As you can probably infer from the title, I’m wondering what the key differences are between running SIEM + EDR vs. an XDR platform (for example, Defender XDR, Sophos intercept X advanced, etc.)
I feel like there’s a LOT of snake oil in the cybersecurity market today. Does an XDR platform replace the need for a SIEM? I’m under the impression that it doesn’t, but the way in which some popular vendors describe their XDR platforms, they make it sounds as if XDR is a one stop shop for all your typical SIEM and EDR needs…
Does anyone have hands-on experience with XDR platforms and can highlight their shortcomings compared to popular SIEM tools?