Kaspersky Endpoint Security 12.8 for Windows

Modes of the application: Standard, EDR Agent, Light Agent

Kaspersky Endpoint Security for Windows is part of many Kaspersky solutions. Depending on the solution, you need to select a mode for the application.

icon_KES_business

Standard mode

This is the main and default mode of the application. You can install the application in this mode as part of Kaspersky EPP (Endpoint Protection Platform) solutions. For example, Kaspersky Endpoint Security in Standard mode is part of the Kaspersky Endpoint Security for Business. Kaspersky Endpoint Security provides comprehensive protection of workstations and servers from various threats, network attacks, and scams.

EDR Agent

This mode allows deploying Kaspersky Detection and Response solutions together with third-party EPP solutions. Detection and Response solutions include Kaspersky Managed Detection and Response (MDR) and Kaspersky Anti Targeted Attack Platform (KATA). EDR Agent also supports the Kaspersky SIEM solution, Kaspersky Unified Monitoring and Analysis Platform (KUMA).

In this mode, standard protection components such as File Threat Protection or Web Threat Protection are not available. Standard protection of the computer is provided by the third-party EPP solution. EDR Agent continuously monitors processes running on these computers, open network connections, and files being modified, and interacts with Detection and Response solutions.

icon_Light_Agent

Light Agent

This mode is used to protect virtual environments. Kaspersky Endpoint Security in Light Agent mode is part of the Kaspersky Hybrid Cloud Security solution. Light Agent protects virtual machines with guest operating systems for workstations and servers. The same protection and control components are available in this mode as in Standard mode. The difference is that objects are scanned for viruses and other malware by a special solution component installed on a separate virtual machine, SVM (Secure Virtual Machine). Thus the Light Agent uses the resources of SVM to ensure the security of the infrastructure instead of the resources of the virtual machine.