Kaspersky Industrial CyberSecurity Endpoint Detection and Response

Solution architecture

September 9, 2022

ID 231281

Kaspersky Industrial CyberSecurity Endpoint Detection and Response includes the following components:

  • An EPP application (Kaspersky Industrial CyberSecurity for Nodes) that supports Kaspersky Industrial CyberSecurity Endpoint Detection and Response functionality and is installed on separate devices in the organization IT infrastructure. This application continuously monitors processes running on protected devices, open network connections, and file changes.
  • A solution for centralized network security management (Kaspersky Security Center).
  • Threat Intelligence Tools:
    • Kaspersky Security Network (KSN) infrastructure of cloud services that provides access to the online Kaspersky Knowledge Base, which contains information about the reputation of files, web resources, and software. Using data from the Kaspersky Security Network ensures the rapid response of Kaspersky applications to threats, improves the performance of various security components, and reduces the likelihood of false positives.
    • Integration with Kaspersky Private Security Network (KPSN) that allows the users to access KSN reputation databases, as well as other statistics without submitting data to KSN from their devices.
    • Integration with Kaspersky Threat Intelligence Portal, which contains and displays information about the reputation of files and URLs.
    • Kaspersky Threats database.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.