Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Darktrace/ENDPOINT is a cutting-edge security solution powered by artificial intelligence that enhances existing EDR tools by detecting, analyzing, and managing both familiar and emerging network threats targeting endpoints. Utilizing its Self-Learning AI, the system adapts to the typical behavior patterns of each device, enabling it to recognize harmful actions independently of traditional signatures, rigid regulations, or external threat intelligence. The inclusion of Network Endpoint eXtended Telemetry (NEXT) allows for an integrated view by merging complete network packet information with endpoint process telemetry through a single agent, which helps identify the underlying processes responsible for network threats while uncovering activities that may be overlooked by EDR and XDR tools. Furthermore, it broadens the scope of visibility to include remote workers, off-VPN devices, servers, and standalone endpoints, effectively tracking unusual behavior from network packets to specific processes without requiring analysts to switch between multiple tools. Additionally, the Cyber AI Analyst streamlines the triage and investigation process across various security domains, including endpoints, networks, cloud services, SaaS applications, identity management, and email, by correlating evidence and prioritizing incidents for quicker resolution. This comprehensive approach not only enhances security but also significantly reduces the workload of security analysts, allowing them to focus on critical threats.
Description
OpenText Core EDR serves as a comprehensive solution for endpoint detection and response, merging endpoint protection, security information and event management (SIEM), security orchestration, automation, and response (SOAR), alert triage, and vulnerability assessment into a singular platform, thereby removing the necessity of juggling multiple security tools. Its lightweight agent, equipped with pre-configured policies, allows for swift deployment within minutes and simplifies management across various devices without the need for intricate scripting. By effectively correlating events from endpoints, networks, and identities in real time, the integrated SIEM and SOAR playbooks highlight suspicious activities and automatically direct actions for containment, remediation, and investigation. The system is fortified with continuous, global threat intelligence that facilitates real-time monitoring, which is crucial for detecting malware, ransomware, zero-day vulnerabilities, and other sophisticated threats before they can proliferate, allowing for the prompt isolation or remediation of affected endpoints. This capability not only enhances security but also empowers organizations to respond proactively to emerging threats and maintain a resilient cybersecurity posture.
API Access
Has API
API Access
Has API
Integrations
Darktrace
Microsoft Defender for Cloud
Microsoft Graph
Pricing Details
No price information available.
Free Trial
Free Version
Pricing Details
No price information available.
Free Trial
Free Version
Deployment
Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook
Deployment
Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook
Customer Support
Business Hours
Live Rep (24/7)
Online Support
Customer Support
Business Hours
Live Rep (24/7)
Online Support
Types of Training
Training Docs
Webinars
Live Training (Online)
In Person
Types of Training
Training Docs
Webinars
Live Training (Online)
In Person
Vendor Details
Company Name
Darktrace
Founded
2013
Country
United Kingdom
Website
www.darktrace.com/products/endpoint
Vendor Details
Company Name
OpenText
Founded
1991
Country
Canada
Website
cybersecurity.opentext.com/products/threat-detection/endpoint-detection-response/
Product Features
Endpoint Protection
Activity Log
Antivirus
Application Security
Behavioral Analytics
Device Management
Encryption
Signature Matching
Web Threat Management
Whitelisting / Blacklisting
Product Features
Endpoint Detection and Response (EDR)
Behavioral Analytics
Blacklisting/Whitelisting
Continuous Monitoring
Malware/Anomaly Detection
Prioritization
Remediation Management
Root Cause Analysis
Endpoint Protection
Activity Log
Antivirus
Application Security
Behavioral Analytics
Device Management
Encryption
Signature Matching
Web Threat Management
Whitelisting / Blacklisting
SIEM
Application Security
Behavioral Analytics
Compliance Reporting
Endpoint Management
File Integrity Monitoring
Forensic Analysis
Log Management
Network Monitoring
Real Time Monitoring
Threat Intelligence
User Activity Monitoring