Thursday, February 27, 2025
HomeCyber Security NewsCisco Launches Advanced Threat Detection XDR Platform

Cisco Launches Advanced Threat Detection XDR Platform

Published on

SIEM as a Service

Follow Us on Google News

In the recent hybrid, multi-vendor, multi-threat world, Cisco Extended Detection and Response (XDR) streamlines security operations with unrivaled visibility across the network and endpoint.

To accomplish its goal of the Cisco Security Cloud, a unified, AI-driven, cross-domain security platform, Cisco recently presented the most recent development.

Organizations should defend the integrity of their whole IT environment with the aid of Cisco’s new XDR solution and the introduction of sophisticated Duo MFA features.

The capabilities of the Cisco XDR Platform

Cisco’s XDR strategy combines its broad experience and endpoint visibility into a single, fully functional, risk-based solution. Also, Cisco XDR is currently in beta and will be generally available in July 2023.

“Cisco XDR prioritizes and remediates security incidents more efficiently using evidence-backed automation,” Cisco reports.

“The threat landscape is complex and evolving. Detection without response is insufficient, while response without detection is impossible. With Cisco XDR, security operations teams can respond and remediate threats before they have a chance to cause significant damage,” said Jeetu Patel, Executive Vice President and General Manager of Security and Collaboration at Cisco.

Cisco XDR concentrates on telemetry-centric data and produces results in minutes, whereas standard Security Information and Event Management (SIEM) technology manages log-centric data and measures outcomes in days.

It natively analyzes and combines the six telemetry sources—endpoint, network, firewall, email, identity, and DNS—that Security Operations Center (SOC) operators claim is essential for an XDR solution.

Cisco XDR uses information from 200 million endpoints with Cisco Secure Client, formerly AnyConnect, to give process-level visibility of the point at which the endpoint and the network meeting.

“The true measure of XDR is its ability to deliver actual security outcomes, real and measurable benefit to organizations — early detection, impact prioritization, and effective and efficient response,” said Frank Dickson, Group Vice President, Security & Trust, IDC.

Cisco XDR connects with prominent third-party vendors to share telemetry, promote interoperability, and deliver consistent outcomes independent of vendor or technology.

Out-of-the-box Integrations:

Endpoint Detection and Response (EDR): CrowdStrike Falcon Insight XDR, Cybereason Endpoint Detection and Response, Microsoft Defender for Endpoint, Palo Alto Networks Cortex XDR, SentinelOne Singularity, and Trend Vision One

Email Threat Defense: Microsoft Defender for Office, Proofpoint Email Protection

Next-Generation Firewall (NGFW): Check Point Quantum, Palo Alto Networks Next-Generation Firewall

Network Detection and Response (NDR): Darktrace DETECTâ„¢ and Darktrace RESPONDâ„¢, ExtraHop Reveal(x)

Security Information and Event Management (SIEM): Microsoft Sentinel

Cisco is rethinking what is required for access management as attackers increasingly target weaknesses in weaker multi-factor authentication (MFA) implementations.

Every company’s access control strategy must include three critical components: enforcing strong authentication, verifying devices, and limiting the number of passwords in use.

“To protect against multi-factor authentication (MFA) attacks, Cisco is now offering advanced features in all editions of Duo, the most secure, cost-effective, and user-friendly access management solution on the market.” Cisco.

Building Your Malware Defense Strategy – Download Free E-Book

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Google’s SafetyCore App Secretly Scans All Photos on Android Devices

Recent revelations about Google’s SafetyCore app have ignited a firestorm of privacy debates, echoing...

New “nRootTag” Attack Turns 1.5 Billion iPhones into Free Tracking Tools

Security researchers have uncovered a novel Bluetooth tracking vulnerability in Apple’s Find My network...

Authorities Arrested Hacker Behind 90 Major Data Breaches Worldwide

Cybersecurity firm Group-IB, alongside the Royal Thai Police and Singapore Police Force, announced the...

Cisco Nexus Vulnerability Allows Attackers to Inject Malicious Commands

Cisco Systems has issued a critical security advisory for a newly disclosed command injection...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Google’s SafetyCore App Secretly Scans All Photos on Android Devices

Recent revelations about Google’s SafetyCore app have ignited a firestorm of privacy debates, echoing...

New “nRootTag” Attack Turns 1.5 Billion iPhones into Free Tracking Tools

Security researchers have uncovered a novel Bluetooth tracking vulnerability in Apple’s Find My network...

Authorities Arrested Hacker Behind 90 Major Data Breaches Worldwide

Cybersecurity firm Group-IB, alongside the Royal Thai Police and Singapore Police Force, announced the...