Endpoint Detection and Response (EDR)
Endpoint Detection and Response, or EDR, is a security solution designed to monitor and protect endpoints within an IT infrastructure. These can include desktop computers, laptops, servers and other endpoint devices. EDR systems continuously collect security-related activity and analyse it for suspicious behaviour and potential cyberattacks. Detected threats can be investigated and, depending on the solution, automatically contained, for example by isolating an affected device. Compared with traditional antivirus solutions, EDR places greater emphasis on continuous behavioural analysis and the detection of complex threats. EDR supports IT security teams in responding rapidly to security incidents and forms an important part of modern endpoint security and cybersecurity strategies.