Extended Detection and Response (XDR) is provided by the following parts of Kaspersky Industrial CyberSecurity for Networks functionality:
EDR incident information display when monitoring events to determine the status of detection processing and analyze threat evolution. The information is displayed as an activity graph and in a tabular format.
Event enrichment with information about applications that were running when event registration conditions occurred, information about users who started applications, and other information.
Manage response actions on devices that have Endpoint Agent installed. Depending on the action trigger conditions, you can enable device network isolation, prevent files from running, terminate and start processes, and delete or quarantine files.