Kaspersky Managed Detection and Response

Comparison of commercial license tiers

The set of features available in Kaspersky Managed Detection and Response depends on the tier of your commercial license (see the table below).

Comparison of Kaspersky Managed Detection and Response commercial license tiers

Feature

MDR / MDR Expert

MDR Optimum*

MDR Basic*

MDR Advanced*

MDR Prime*

24x7 monitoring, incident detection and management

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Automatic threat hunting

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Response playbooks and automatic incident response

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Security health check and asset visibility

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Kaspersky MDR Web Console with dashboards and reports

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Ability to receive advanced incident information

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Incident history retention period

1 year

1 year

1 year

1 year

1 year

Raw data retention period

3 months

1 month

1 month

3 months

3 months

Managed threat hunting and incident investigation

check mark icon

minus sign icon

minus sign icon

check mark icon

check mark icon

Extended expert support for incident management

check mark icon

minus sign icon

minus sign icon

check mark icon

check mark icon

Access to Kaspersky Threat Intelligence Portal

check mark icon

minus sign icon

minus sign icon

check mark icon

check mark icon

API for exporting Kaspersky MDR data

check mark icon

minus sign icon

minus sign icon

check mark icon

check mark icon

Customers can create a custom incident to be processed by the Kaspersky MDR solution**

check mark icon

minus sign icon

minus sign icon

check mark icon

check mark icon

Localized data storage and workgroups

minus sign icon

minus sign icon

check mark icon

check mark icon

check mark icon

Multitenancy

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Adding and editing comments to incidents

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Adding and editing attachments to incidents

check mark icon

check mark icon

check mark icon

check mark icon

check mark icon

Advanced incident investigation: analysis to establish the background, circumstances and detailed attack mechanism

minus sign icon

minus sign icon

minus sign icon

check mark icon

Customers cannot choose the incidents for advanced investigation; there is no guaranteed incident response time

check mark icon

Customers can choose the incidents for advanced investigation (within the purchased time limit); there is a guaranteed incident response time

*This tier is available for some regions only and may be unavailable for purchase by new customers. Contact your Kaspersky Managed Detection and Response solution provider for details about the commercial license tiers available to you.

**Kaspersky Managed Detection and Response solution ensures processing of three requests per week in accordance with performance targets of the solution delivery. The number of requests processed in accordance with performance targets of the solution delivery is increased proportionally: for every 10,000 connected endpoints, the number of requests is increased by 1.