Main resolution enhancements now accessible – Sophos Information


Sophos XDR gives highly effective instruments and risk intelligence that allow organizations to detect, examine, and reply to suspicious exercise earlier than lively adversaries can impression their programs. With over 40,000 prospects already utilizing our XDR capabilities to raise their defenses, Sophos is a longtime world chief in prolonged detection and response.

We’re delighted to announce a number of important enhancements to Sophos XDR that additional speed up detection and response, together with expanded expertise integrations that leverage current safety investments and new instruments and optimized workflows to research threats extra effectively.

Expanded third-party integrations

The extra you see, the sooner you possibly can act. Sophos XDR customers can now leverage telemetry from an much more intensive vary of third-party (non-Sophos) safety instruments, enabling organizations to get extra ROI from their current expertise investments whereas rushing up safety operations.

The newly-expanded expertise associate ecosystem integrations embrace id, community, firewall, electronic mail, cloud, productiveness, and endpoint safety applied sciences. Endpoint and Microsoft integrations are included with Sophos XDR subscriptions at no further value.

With Sophos XDR, suspicious indicators from each Sophos and non-Sophos merchandise are ingested, filtered, correlated, and prioritized – permitting prospects to see extra worth from their current instruments​ than XDR options that solely use third-party telemetry to complement endpoint detections.

Community Detection and Response (NDR) is now accessible for Sophos XDR

Sophos NDR (Community Detection and Response) repeatedly screens community visitors to detect a variety of safety dangers, together with rogue units, unprotected units, insider threats, zero-day assaults, and threats involving IoT and OT units.

Sophos NDR was launched earlier this 12 months as an non-obligatory add-on for the Sophos MDR (Managed Detection and Response) service, and we’re delighted to announce that Sophos NDR is now additionally accessible for Sophos XDR for organizations who handle their very own detection and response actions.

New and improved case administration capabilities

Sophos XDR robotically creates instances based mostly on detections to assist organizations prioritize their investigations. Along with enhancing computerized case creation, new and improved case administration capabilities assist analysts higher handle their investigation workload and collaborate with different staff members extra effectively.

Key enhancements embrace:

  • Case Pocket book. Analysts can simply doc and manage their work as they progress by means of an investigation by logging observations and findings and including media for added context.
  • Exercise Log. An in depth file of exercise for every case permits analysts to simply see actions that different staff members have taken as a part of an investigation.
  • Case Abstract. Analysts can now enter a quick synopsis of every case, enabling their staff to see a concise overview of investigations at a look.
  • Enhanced MITRE ATT&CK Framework mapping. Sophos XDR robotically maps detections to MITRE ATT&CK Ways, enabling analysts to determine potential gaps in defenses and prioritize enhancements. On this launch, MITRE Framework mappings are actually collated throughout all detections inside a single case, with extra detailed TTP particulars supplied.
  • Coming Quickly: New analyst response actions. Utilizing the brand new XDR case administration toolset, analysts can now include potential threats with the clicking of a button. New analyst response actions will assist organizations speed up risk containment through Sophos’ XDR-integrated merchandise and through new third-party expertise integrations. For instance, utilizing the brand new integration with Okta, analysts can shortly and simply droop customers, clear person classes, and expire person passwords, all from the Sophos XDR platform.

New Detections person expertise

Sophos XDR identifies suspicious actions that want fast consideration, robotically prioritizing detections throughout a number of assault surfaces based mostly on danger.

The person expertise for Detections has been redesigned in Sophos XDR, offering a transparent view of essentially the most essential knowledge at a look, with handy entry to enrichment pivots and actions to speed up investigations.

New simplified (SQL-less) XDR search

Examine and hunt threats at velocity. The brand new XDR search software allows analysts to shortly discover particular knowledge within the Sophos knowledge lake by looking for indicators of compromise and different knowledge resembling IP addresses or usernames.

An intuitive search builder, plus free-text and prompted-Lucene choices, allows customers of all ability ranges to seek out the information they want sooner with out SQL experience!

Acknowledged by trade consultants and prospects

Sophos XDR continues to garner excessive reward from prospects and trade consultants for superior detection, investigation, and response capabilities.

Sophos is one in all solely ten distributors acknowledged within the 2023 Gartner Market Information for XDR, was named a Chief within the G2 Grid for XDR, earned the place as the only real chief in Omdia’s vendor comparability for Complete XDR, and delivered distinctive ends in the 2023 MITRE Engenuity ATT&CK Evaluations (Spherical 5: Turla).

Elevate your defenses towards lively adversaries

To study extra and discover how Sophos XDR will help your group higher defend towards lively adversaries, communicate with a Sophos adviser or your Sophos associate in the present day.

You may as well take it for a check drive in your personal surroundings with a no-obligation 30-day free trial – accessible  from our web site or (for current Sophos prospects) instantly throughout the Sophos Central console in simply a few clicks.

Leave a Reply

Your email address will not be published. Required fields are marked *

Back To Top