Open XDR — Extended Detection and Response — is an emerging set of technologies aimed to collect and automatically correlate data from multiple security and IT sources, unifying them into single threat detection, investigation, and response platform.
What is required to deploy Hunters XDR?
Deployment is simple and swift, no agents required. The solution is cloud-based and connects with your existing environment.
Do I have to own a data lake to use Hunters XDR?
Not necessarily, but it is recommended. You can either bring your own, or utilize Hunters’ integration with Snowflake.
Does the solution detect attacks in real time?
Hunters XDR detects attacks as they happen, and provides near real time findings from the very early stages of an attack operation.
Is Hunters XDR a replacement for SIEM?
Yes, Hunters XDR can augment or replace your SIEM.
- Hunters is focused on proactive detection; picking up weak, overlooked signals
- Hunters is a machine-led solution, while SIEM requires many human resources
- SIEM solutions create many alerts and little findings, Hunters is focused on high confidence findings
- Hunters connects and ingests raw, big data, proactively looking for attack TTPs
- Hunters interconnects sparse organizational data sources and security telemetry
- Combining Hunters with your security data lake can lead to better results than SIEM alone
You can learn more about it here: SIEM Replacement with Hunters XDR
How is Hunters different from other XDRs in the market?
Hunters open XDR is a purpose-built security operations decision support system that transforms a SOC’s threat detection, investigation and response program.
Can I connect Hunters XDR to Incident Response tools?
Yes, you can. Hunters XDR will deliver its attack findings into SOAR or ticketing systems.
What security products and organizational tools does Hunters XDR integrate with?
Hunters integrations span across dozens of security tools such as EDR, NDR, Identity and Access Management, Secure Web Gateways, etc. from a wide variety of security vendors; data platforms; threat intelligence feeds and SIEM and SOAR.
For the full list of integrations please visit our Integrations page.
Can I use Hunters XDR as a Threat Hunting platform?
Yes. Hunters XDR provides an unparalleled platform for threat hunting: using Hunters’ open XDR, analysts from any tier can easily perform hunting activities, and for threat hunters, using the Hunters platform they can easily hunt on any domain by having overall visibility over the entire attack surface and removing the constant context-switching of looking at multiple tools.