Advanced Software Functionality Secures Environments

7 September 2020

At the Tech Company, we are always striving to offer our clients the best that the market has to offer. One of the latest offerings that we are particularly proud of is the Sophos Intercept X Advanced with EDR (endpoint detection and response) and Intercept X Advanced for Server with EDR.

Hunt and neutralize threats

Tracking down subtle, evasive threats requires a tool capable of detecting even the smallest indicator of compromise.

Sophos EDR has significantly enhanced its threat hunting capabilities. 

Some examples:

  •       Detect processes attempting to make a connection on non-standard ports
  •       Get granular detail on unexpected PowerShell executions
  •       Identify processes that have recently modified files or registry keys
  •       Remotely access a device to deploy additional forensic tools, terminate suspect processes, and run scripts or programs

Introducing Live Discover and Live Response

The features that make solving all the important examples above possible are Live Discover and Live Response.

Live Discover allows users to examine their data for almost any question they can think of by searching across endpoints and servers with SQL queries. They can choose from a selection of out-of-the-box queries, which can be fully customized to pull the exact information that they need when performing both IT security operations hygiene and threat hunting tasks. Data is stored on-disk for up to 90 days, meaning query response times are fast and efficient.

Live Response is a command-line interface that can remotely access devices in order to perform further investigation or take appropriate action.

 For example:

  •       Rebooting a device pending updates
  •       Terminating suspicious processes
  •       Browsing the file system
  •       Editing configuration files
  •       Running scripts and programs

The best part – it’s all done remotely. 

This means it’s ideal in remote working situations where admins may not have physical access to a device that needs attention.

 

At the Tech Company we are solutions driven and focused on speed and convenience.

This is why we offer a Sophos software fast-track

We are competitive and are relentless in our pursuit of being the number one go-to for Sophos renewals or new subscriptions. We commit ourselves to providing the fastest turnaround on pricing and you can hold us to it.