1. EDR
Tool that continuously monitors endpoints (laptops, servers) to detect suspicious activity and enable rapid investigation and containment.
2. NDR
System that inspects network traffic to spot anomalies and malicious behavior, providing visibility and response at the network layer.
3. XDR
Integrated platform unifying endpoint, network, cloud, identity, and email telemetry to deliver centralized detection and automated response.
4. SIEM
Platform that collects and correlates logs and security events across your environment to detect threats, alert analysts, and support compliance.