sentenz / convention

General articles, conventions, and guides.
https://sentenz.github.io/convention/
Apache License 2.0
4 stars 2 forks source link

Create an article about `Threat Detection and Response (TDR)` #348

Open sentenz opened 4 months ago

sentenz commented 4 months ago

Threat Detection and Response (TDR)

Threat Detection and Response (TDR) is a cybersecurity approach focused on identifying, analyzing, and responding to malicious activities or security threats in an organization's network.

1. Category

1.1. Network Detection and Response (NDR)

Focuses on monitoring and analyzing network traffic to identify suspicious activities.

1.2. Endpoint Detection and Response (EDR)

Concentrates on detecting and investigating threats on endpoints like laptops, desktops, and servers.

1.3. Extended Detection and Response (XDR)

Integrates multiple security tools and data sources to provide a unified threat detection and response platform.

1.4. Security Information and Event Management (SIEM)

1.5. Security Orchestration, Automation, and Response (SOAR)

1.6. Managed Detection and Response (MDR)

Offers outsourced monitoring and management of security threats by a third-party provider.

2. References