Cloud Security
  • Supervision
    • SIEM & SOAR
    • EDR
  • Ref
    • Documentation References
Powered by GitBook
On this page
  • What is an EDR ?
  • EDR Architecture
  • EDR Framework
  • Identify
  • Protect
  • Detect
  • Telemetry
  • Incident & Alert
  • Detection efficiency
  • Investigate
  • Process tree
  • Timeline
  • Hunting
  • Collection package
  • Sandbox
  • Live Respone (read-only)
  • Response
  • Alert suppression
  • Device Isolation
  • Live Response (write)
  • Refs
  1. Supervision

EDR

(Endpoint Detection & Response)

PreviousSIEM & SOARNextDocumentation References

Last updated 2 years ago