Kaspersky Managed Detection and Response

Glossary

February 12, 2024

ID 95897

Asset

A device with an installed Kaspersky EPP application (for example, Kaspersky Endpoint Security for Windows).

Endpoint Protection Platform (EPP)

An integrated system of complex protection for endpoint devices (for example, mobile devices, computers, or laptops) that includes various security technologies. An example of an Endpoint Protection Platform is Kaspersky Endpoint Security for Business.

EPP application

An application included in a protection system for endpoint devices (Endpoint Protection Platform, or EPP). EPP applications are installed on endpoint devices within the IT infrastructure of an organization (for example, mobile devices, computers, or laptops). An example of an EPP application is Kaspersky Endpoint Security for Windows, as part of the EPP solution Kaspersky Endpoint Security for Business.

Incident

An activity evaluated as critical by the detection technology and which requires immediate reaction from Kaspersky Managed Detection and Response.

IOC

An indicator of compromise (or IOC) shows the evidence on a device that points to a security breach.

MITRE tactic

The objective that an attacker wanted to achieve during a cyber attack on the Client infrastructure.

MITRE technique

The method used by the attacker to perform malicious actions during a cyberattack on the Client infrastructure. Each MITRE tactic contains an array of MITRE techniques.

Response

Incident response is a structured methodology for handling security incidents, breaches, and cyberthreats.

Telemetry

Data that is sent from assets to Kaspersky Managed Detection and Response.

Tenant

A tenant is an organization to which you supply Kaspersky Managed Detection and Response.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.