In today’s world of enterprise security, many technology options are available—perhaps too many. Despite all the options available, security teams still ask the same questions: What is the “right” telemetry? How do we best integrate, and where can we find the best return on our investment?
In response to these questions, and the need to disrupt adversary TTPs, eXtended Detection and Response (XDR) technologies have emerged. XDR looks to combine telemetry from multiple sources and integrate with “next-step” technologies that allow for automated data correlation, enrichment, and response. However, we cannot achieve a successful strategy without the inclusion of network telemetry.
In this webcast, SANS Instructor Matt Bromiley and NETSCOUT IT and Computer Specialist Erik Hjelmstad look at the necessity of including network detection and response (NDR) capabilities in your XDR strategy. The network is one of the most important areas of any enterprise, and an extremely important source to detect adversary activity. XDR cannot exist without NDR, so make sure you’re including it in your security stack too!
Register today and be among the first to receive the associated whitepaper written by Matt Bromiley.