Endpoint Detection and Response

Host security platforms that collect telemetry, detect malicious behavior, investigate incidents, and contain compromised devices.

Core metadata

Prerequisites

Dependents

Fields

Field lanes

Node sources

Prerequisite edge evidence

Edge/source evidence summary:

Prerequisite Type Confidence Evidence level Note Sources
Security Operations Centers (cybersecurity_operations_centers) enabling 68% expert_inference Security Operations Centers provides a capability that enables this technology without being the only possible path.
Security Information & Event Management (security_information_event_management) enabling 68% expert_inference Security Information & Event Management provides a capability that enables this technology without being the only possible path.
Intrusion Detection Systems (intrusion_detection_systems) enabling 68% expert_inference Intrusion Detection Systems provides a capability that enables this technology without being the only possible path.

This page is generated from canonical era JSON and is indexable by URL.