EDR, MDR & XDR Explained

แชร์
ฝัง
  • เผยแพร่เมื่อ 8 พ.ค. 2024
  • Traditional antivirus is no longer sufficient to protect you. Everyone running a business should upgrade to EDR, MDR, or XDR immediately; but what is the difference between them, and how do SIEM and SOAR fit into the picture? Time to unravel the acronyms!
    📄 Acronym cheat sheet:
    EDR: Endpoint Detection and Response
    MDR: Managed Detection and Response
    XDR: eXtended Detection and Response
    MXDR: Managed eXtended Detection and Response
    SIEM: Security Information and Event Management
    SOAR: Security Orchestration, Automation, and Response
    SOC: Security Operations Centre
    MSP: Managed Services Provider
    MSSP: Managed Security Services Provider
    💬 Follow Me
    / andrewmrquinn
    Video timestamps:
    0:00 - EDR
    3:11 - MDR
    4:41 - XDR
    5:33 - Comparison with SIEM + SOAR
    9:20 - Summary
    #EDR #MDR #XDR #SIEM #SOAR #CyberSecurity #SOC #MSSP
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 34

  • @rockychau2451
    @rockychau2451 3 หลายเดือนก่อน +10

    one of the best explanation so far on TH-cam

    • @ProTechShow
      @ProTechShow  3 หลายเดือนก่อน +1

      Thanks 🙂

    • @Wahinies
      @Wahinies 17 วันที่ผ่านมา

      Yes and I am catching it at the perfect time. Many thanks @ProTechShow

  • @neomatrix2091
    @neomatrix2091 3 หลายเดือนก่อน +4

    Very nice breakdown, i appreciate your effort on presenting these concepts on a simplified manner for us to understand!

  • @marcioguedescavalcante3094
    @marcioguedescavalcante3094 8 หลายเดือนก่อน +2

    Oh man, thank you so much to make this!

    • @ProTechShow
      @ProTechShow  8 หลายเดือนก่อน

      You're welcome. Glad it's of use!

  • @elijahcrawford3049
    @elijahcrawford3049 7 วันที่ผ่านมา

    ....and now my 8 page research paper due today makes sense.....thank you!

    • @ProTechShow
      @ProTechShow  3 วันที่ผ่านมา +1

      You're welcome

  • @andrewmurray5255
    @andrewmurray5255 9 หลายเดือนก่อน +2

    Amazing breakdown. Thank you!

    • @ProTechShow
      @ProTechShow  9 หลายเดือนก่อน

      Thanks. Glad it's useful!

  • @richlab2927
    @richlab2927 2 หลายเดือนก่อน +1

    Love your explanation. You made it simple

    • @ProTechShow
      @ProTechShow  2 หลายเดือนก่อน

      Thanks! Glad it's useful.

  • @user-ur5br3ne9h
    @user-ur5br3ne9h 4 หลายเดือนก่อน +2

    excellent high level explanation of these technologies.

  • @notevenfalse
    @notevenfalse 28 วันที่ผ่านมา

    A+ content mate. All I can say is thank you.

    • @ProTechShow
      @ProTechShow  28 วันที่ผ่านมา

      Thanks 🙂

  • @MENTOKz
    @MENTOKz 6 หลายเดือนก่อน

    thanks man just starting to learn are XDR tool trend micro one

  • @nitram419
    @nitram419 9 หลายเดือนก่อน

    Many thanks indeed for a great tutorial! I just have a question about the restoring the system image created using the built-in Windows backup tool **to a brand new SSD**. Here's my scenario:
    ~ I have one NVMe SSD slot, with my OS C: drive on it.
    ~ In Windows I make an system image of the above, using the Windows backup tool;
    ~ I also make a Windows DVD bootable DVD (ie. with the recovery tools).
    ~ I turn off & unplug the PC and remove the old NVMe drive.
    ~ I insert a brand new and bigger NVMe drive in the slot where the old one used to be.
    ~ I boot the machine using the DVD-ROM Windows bootable recovery tools disk.
    Question: How do I get the image onto the brand new unformatted NVMe drive, and assign it as the "C" drive?
    Most grateful for your advice!

  • @Israelxox
    @Israelxox 4 หลายเดือนก่อน

    Underrated video! Thanks 🙏

    • @ProTechShow
      @ProTechShow  4 หลายเดือนก่อน

      Thanks for watching!

  • @user-kn3yr3sg7x
    @user-kn3yr3sg7x 9 หลายเดือนก่อน +1

    Thank you for video 😊

    • @ProTechShow
      @ProTechShow  9 หลายเดือนก่อน

      You're welcome 🙂

  • @EducateWithMe573
    @EducateWithMe573 8 วันที่ผ่านมา

    Edr End Point Response, Adr data breach, for future & Rdr are all separate packages of…?

  • @asdkjh4370
    @asdkjh4370 10 หลายเดือนก่อน +2

    Thanks for video. Many thanks for valuable advice. Something on OpenHAB maybe? I'm looking for something to switch from HA which is going strange way. Any new updates?

    • @ProTechShow
      @ProTechShow  10 หลายเดือนก่อน

      OpenHAB 4 is expected to land in a couple of weeks. 2 and 3 were quite significant updates, so it'll be interesting to see what 4 brings to the table.

  • @kaentertainment2215
    @kaentertainment2215 หลายเดือนก่อน

    How does EDR defend against Zero Day Exploits given its primary focus on detecting suspicious patterns from historical occurrences?

    • @ProTechShow
      @ProTechShow  หลายเดือนก่อน

      Let's say you have an internet-facing web app with a zero-day vulnerability. It gets exploited to drop a web shell onto the server. The vulnerability was previously unknown, and the web shell doesn't match any known malware patterns.
      EDR/antivirus may not initially detect the exploit or the web shell as malicious, but EDR will see the file creation/modification by the web server process, followed by it attempting to spawn child processes or execute commands that are not typical behaviour of a web server. It doesn't require knowledge of the vulnerability itself to detect suspicious behaviour resulting from its exploitation and take action - raising an alert, removing the file, isolating the system, etc.

  • @paulj9657
    @paulj9657 2 หลายเดือนก่อน

    Not acronyms. They are initialisms. :-) Great info. Thanks.

    • @ProTechShow
      @ProTechShow  2 หลายเดือนก่อน

      You are... correct. They are initialisms.

    • @paulj9657
      @paulj9657 2 หลายเดือนก่อน

      Sorry, my dad was an English teacher. :-). I'm not that pedantic in real life.

  • @ChapalPuteh_
    @ChapalPuteh_ 3 หลายเดือนก่อน

    We use only XDR and EDR to operate our incident in the network ..

  • @EducateWithMe573
    @EducateWithMe573 8 วันที่ผ่านมา

    mDR eDR & xDr , what is the diff?

  • @iamagastya0
    @iamagastya0 29 วันที่ผ่านมา

    i think toyota have better CooL cars