Understanding XDR, the security industry’s new favorite buzzword

Every year, it seems there is a new solution in the security industry that will finally address the challenges security teams have been struggling with for years. Lately, the security vendor community is ablaze with talks of ‘XDR,’ an often-overheard acronym for eXtended Detection and Response. While XDR was first coined in 2018, the vendor-led buzzword has more recently sparked greater discussions in the industry, with many wondering how XDR is any different from Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR) or Security Orchestration, Automation and Response (SOAR).

CISOs — who may not be touting the term as much — are still seeking answers to the pressing issues keeping them up at night. These range from overworked security operations teams, to alert fatigue that diverts focus from more severe, business-critical indicators of an attack. Add to this the increasing frequency of large-scale ransomware attacks, paired with the shift to a new era of hybrid work, and it’s easy to understand why security leaders are looking for a better way to bring together their security programs to get the most out of their people, tools and processes. The gaps in modern-day security programs are leading them to explore the potential and promise of XDR. 

Source link