Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the easy-accordion-free domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php on line 6114

Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the zoho-flow domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php on line 6114

Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wordpress-seo domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php on line 6114

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home/mother99/jacksonholdingcompany.com/wp-includes/functions.php:6114) in /home/mother99/jacksonholdingcompany.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
{"id":1148,"date":"2023-09-18T17:01:22","date_gmt":"2023-09-18T17:01:22","guid":{"rendered":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/"},"modified":"2023-09-18T17:01:22","modified_gmt":"2023-09-18T17:01:22","slug":"expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm","status":"publish","type":"post","link":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/","title":{"rendered":"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm"},"content":{"rendered":"

With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together.<\/p>\n

Network Detection and Response\u2026 Read more on Cisco Blogs<\/a><\/p>\n

\u200b<\/p>\n

With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together.<\/p>\n

Network Detection and Response tools have matured in customer architectures throughout the years. NDRs continuously monitor networks and devices connected to it using telemetry collected from network devices, generated by endpoints, or by deploying sensors to collect such data.\u00a0 NDR uses this telemetry to primary provide unmatched visibility into an environment of managed and unmanaged devices, then analyzes traffic patterns to detect abnormal behaviors caused by potential threats such as data exfiltration, botnet activity and others. In addition, a NDR becomes the main repository of network telemetry for an analyst to perform threat hunting and forensic investigations.<\/p>\n

On the other hand, XDR is an aggregation and correlation technology with a main aim to detect incidents while simplifying and accelerating threat response. XDRs leverage a host of integrations to cross correlate detections from different technologies and telemetry sources to draw the bigger picture of an attack in a simplified, enriched, and correlated manner which makes it very simple for a SOC analyst to draw conclusions, locate the source of an attack and respond to threats in a matter of minutes instead of hours or days using individual point product technologies on their own.<\/p>\n

Cisco Secure Network Analytics (Cisco NDR) with the modernized Data Store architecture delivers:<\/p>\n

The fastest and largest scaling <\/strong>NDR in market which provides the best user experience with traffic analysis against various forms of network telemetry including traffic flows, firewalls logs and endpoint visibility data via Cisco Secure Client\u2019s Network Visibility Module.
\nNewest Detection Models<\/strong>: Secure Network Analytics offers a next generation converged analytics capability to automatically assign device roles based on behavior and detect threats using enhanced detection techniques.<\/p>\n

Expanding Secure Network Analytics by integrating it into Cisco XDR will expand these capabilities to the next level by:<\/p>\n

Correlation with other technologies<\/strong>: XDR correlates NDR EDR, Email detections and threat intelligence, and many other technologies from cisco and third-party which expand NDR beyond the Network Detection boundaries.
\nExpand the Response Ecosystem<\/strong>: with Cisco XDR built-in and customizable incident response capabilities, NDR responses are expanded beyond the natively supported techniques leveraging the diverse and multiple integration that XDR supports with EDRs, DNS, Firewall, and others.
\nDetections Assertion <\/strong>secure Network Analytics\u2019 detections are based on behavioral and machine learning detections techniques which are advanced techniques that can detect slow and hidden threats. By combining it with Cisco XDR these detections are affirmed through correlation with other technologies detections to form an end-to-end incident that explains the threat activity across multiple threat vectors.<\/p>\n

Bottom line, Secure Network Analytics and Cisco XDR work very well together by complimenting each other.\u00a0 Detections and telemetry from Secure Network Analytics is one source of data feeding into XDR, XDR ingest it along with other data from multiple technologies to identify incidents without having to focus on Network based detections or visibility since it is provided through NDR. Implementing a solution will depend on the specific needs and requirements. If you are looking to improve your network visibility and network detection capabilities it is delivered with NDR, but if your main goal is to \u00a0improve your threat response capabilities and get a comprehensive view of incidents then use XDR.<\/p>\n

We\u2019d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social!<\/em><\/p>\n

Cisco Secure Social Channels<\/strong><\/p>\n

Instagram<\/a><\/strong>Facebook<\/a><\/strong>Twitter<\/a><\/strong>LinkedIn<\/a><\/strong><\/p>\n

\n\t\tShare\n
\n
<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t <\/a>\n\t<\/div>\n<\/div>\n<\/div>\n
Share:<\/div>\n
\n
\n
<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t <\/a>\n\t<\/div>\n<\/div>\n<\/div>\n

\u00a0\u00a0This blog post describes how secure network analytics (NDR) and Cisco XDR (Extended detection and response) work together for enhanced detection faster response\u00a0\u00a0Read More<\/a>\u00a0Cisco Blogs\u00a0<\/p>","protected":false},"excerpt":{"rendered":"

<\/p>\n

With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together.<\/p>\n

Network Detection and Response\u2026 Read more on Cisco Blogs<\/a><\/p>\n

\u200b<\/p>\n

With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together.<\/p>\n

Network Detection and Response tools have matured in customer architectures throughout the years. NDRs continuously monitor networks and devices connected to it using telemetry collected from network devices, generated by endpoints, or by deploying sensors to collect such data.\u00a0 NDR uses this telemetry to primary provide unmatched visibility into an environment of managed and unmanaged devices, then analyzes traffic patterns to detect abnormal behaviors caused by potential threats such as data exfiltration, botnet activity and others. In addition, a NDR becomes the main repository of network telemetry for an analyst to perform threat hunting and forensic investigations.<\/p>\n

On the other hand, XDR is an aggregation and correlation technology with a main aim to detect incidents while simplifying and accelerating threat response. XDRs leverage a host of integrations to cross correlate detections from different technologies and telemetry sources to draw the bigger picture of an attack in a simplified, enriched, and correlated manner which makes it very simple for a SOC analyst to draw conclusions, locate the source of an attack and respond to threats in a matter of minutes instead of hours or days using individual point product technologies on their own.<\/p>\n

Cisco Secure Network Analytics (Cisco NDR) with the modernized Data Store architecture delivers:<\/p>\n

The fastest and largest scaling <\/strong>NDR in market which provides the best user experience with traffic analysis against various forms of network telemetry including traffic flows, firewalls logs and endpoint visibility data via Cisco Secure Client\u2019s Network Visibility Module.
\nNewest Detection Models<\/strong>: Secure Network Analytics offers a next generation converged analytics capability to automatically assign device roles based on behavior and detect threats using enhanced detection techniques.<\/p>\n

Expanding Secure Network Analytics by integrating it into Cisco XDR will expand these capabilities to the next level by:<\/p>\n

Correlation with other technologies<\/strong>: XDR correlates NDR EDR, Email detections and threat intelligence, and many other technologies from cisco and third-party which expand NDR beyond the Network Detection boundaries.
\nExpand the Response Ecosystem<\/strong>: with Cisco XDR built-in and customizable incident response capabilities, NDR responses are expanded beyond the natively supported techniques leveraging the diverse and multiple integration that XDR supports with EDRs, DNS, Firewall, and others.
\nDetections Assertion <\/strong>secure Network Analytics\u2019 detections are based on behavioral and machine learning detections techniques which are advanced techniques that can detect slow and hidden threats. By combining it with Cisco XDR these detections are affirmed through correlation with other technologies detections to form an end-to-end incident that explains the threat activity across multiple threat vectors.<\/p>\n

Bottom line, Secure Network Analytics and Cisco XDR work very well together by complimenting each other.\u00a0 Detections and telemetry from Secure Network Analytics is one source of data feeding into XDR, XDR ingest it along with other data from multiple technologies to identify incidents without having to focus on Network based detections or visibility since it is provided through NDR. Implementing a solution will depend on the specific needs and requirements. If you are looking to improve your network visibility and network detection capabilities it is delivered with NDR, but if your main goal is to \u00a0improve your threat response capabilities and get a comprehensive view of incidents then use XDR.<\/p>\n

We\u2019d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social!<\/em><\/p>\n

Cisco Secure Social Channels<\/strong><\/p>\n

Instagram<\/a><\/strong>Facebook<\/a><\/strong>Twitter<\/a><\/strong>LinkedIn<\/a><\/strong><\/p>\n

\n\t\tShare<\/p>\n
\n
<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t <\/a>\n\t<\/div>\n<\/div>\n<\/div>\n
Share:<\/div>\n
\n
\n
<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t\t<\/a>\n\t<\/div>\n<\/div>\n
\n
\n\t <\/a>\n\t<\/div>\n<\/div>\n<\/div>\n

\u00a0\u00a0This blog post describes how secure network analytics (NDR) and Cisco XDR (Extended detection and response) work together for enhanced detection faster response\u00a0\u00a0Read More<\/a>\u00a0Cisco Blogs\u00a0<\/p>\n

<\/p>\n","protected":false},"author":0,"featured_media":1149,"comment_status":"","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12],"tags":[],"class_list":["post-1148","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cisco-learning"],"yoast_head":"\nExpand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm - JHC<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm\" \/>\n<meta property=\"og:description\" content=\"With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together. Network Detection and Response\u2026 Read more on Cisco Blogs \u200b With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together. Network Detection and Response tools have matured in customer architectures throughout the years. NDRs continuously monitor networks and devices connected to it using telemetry collected from network devices, generated by endpoints, or by deploying sensors to collect such data.\u00a0 NDR uses this telemetry to primary provide unmatched visibility into an environment of managed and unmanaged devices, then analyzes traffic patterns to detect abnormal behaviors caused by potential threats such as data exfiltration, botnet activity and others. In addition, a NDR becomes the main repository of network telemetry for an analyst to perform threat hunting and forensic investigations. On the other hand, XDR is an aggregation and correlation technology with a main aim to detect incidents while simplifying and accelerating threat response. XDRs leverage a host of integrations to cross correlate detections from different technologies and telemetry sources to draw the bigger picture of an attack in a simplified, enriched, and correlated manner which makes it very simple for a SOC analyst to draw conclusions, locate the source of an attack and respond to threats in a matter of minutes instead of hours or days using individual point product technologies on their own. Cisco Secure Network Analytics (Cisco NDR) with the modernized Data Store architecture delivers: The fastest and largest scaling NDR in market which provides the best user experience with traffic analysis against various forms of network telemetry including traffic flows, firewalls logs and endpoint visibility data via Cisco Secure Client\u2019s Network Visibility Module. Newest Detection Models: Secure Network Analytics offers a next generation converged analytics capability to automatically assign device roles based on behavior and detect threats using enhanced detection techniques. Expanding Secure Network Analytics by integrating it into Cisco XDR will expand these capabilities to the next level by: Correlation with other technologies: XDR correlates NDR EDR, Email detections and threat intelligence, and many other technologies from cisco and third-party which expand NDR beyond the Network Detection boundaries. Expand the Response Ecosystem: with Cisco XDR built-in and customizable incident response capabilities, NDR responses are expanded beyond the natively supported techniques leveraging the diverse and multiple integration that XDR supports with EDRs, DNS, Firewall, and others. Detections Assertion secure Network Analytics\u2019 detections are based on behavioral and machine learning detections techniques which are advanced techniques that can detect slow and hidden threats. By combining it with Cisco XDR these detections are affirmed through correlation with other technologies detections to form an end-to-end incident that explains the threat activity across multiple threat vectors. Bottom line, Secure Network Analytics and Cisco XDR work very well together by complimenting each other.\u00a0 Detections and telemetry from Secure Network Analytics is one source of data feeding into XDR, XDR ingest it along with other data from multiple technologies to identify incidents without having to focus on Network based detections or visibility since it is provided through NDR. Implementing a solution will depend on the specific needs and requirements. If you are looking to improve your network visibility and network detection capabilities it is delivered with NDR, but if your main goal is to \u00a0improve your threat response capabilities and get a comprehensive view of incidents then use XDR. We\u2019d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social! Cisco Secure Social Channels InstagramFacebookTwitterLinkedIn Share Share: \u00a0\u00a0This blog post describes how secure network analytics (NDR) and Cisco XDR (Extended detection and response) work together for enhanced detection faster response\u00a0\u00a0Read More\u00a0Cisco Blogs\u00a0\" \/>\n<meta property=\"og:url\" content=\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\" \/>\n<meta property=\"og:site_name\" content=\"JHC\" \/>\n<meta property=\"article:published_time\" content=\"2023-09-18T17:01:22+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif\" \/>\n\t<meta property=\"og:image:width\" content=\"1\" \/>\n\t<meta property=\"og:image:height\" content=\"1\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/gif\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\"},\"author\":{\"name\":\"\",\"@id\":\"\"},\"headline\":\"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm\",\"datePublished\":\"2023-09-18T17:01:22+00:00\",\"dateModified\":\"2023-09-18T17:01:22+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\"},\"wordCount\":655,\"publisher\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/#organization\"},\"image\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif\",\"articleSection\":[\"Cisco: Learning\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\",\"url\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\",\"name\":\"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm - JHC\",\"isPartOf\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif\",\"datePublished\":\"2023-09-18T17:01:22+00:00\",\"dateModified\":\"2023-09-18T17:01:22+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage\",\"url\":\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif\",\"contentUrl\":\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif\",\"width\":1,\"height\":1},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/jacksonholdingcompany.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/#website\",\"url\":\"https:\/\/jacksonholdingcompany.com\/\",\"name\":\"JHC\",\"description\":\"Your Business Is Our Business\",\"publisher\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/jacksonholdingcompany.com\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/#organization\",\"name\":\"JHC\",\"url\":\"https:\/\/jacksonholdingcompany.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/jacksonholdingcompany.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/07\/cropped-cropped-jHC-white-500-\u00d7-200-px-1-1.png\",\"contentUrl\":\"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/07\/cropped-cropped-jHC-white-500-\u00d7-200-px-1-1.png\",\"width\":452,\"height\":149,\"caption\":\"JHC\"},\"image\":{\"@id\":\"https:\/\/jacksonholdingcompany.com\/#\/schema\/logo\/image\/\"}}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm - JHC","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/","og_locale":"en_US","og_type":"article","og_title":"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm","og_description":"With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together. Network Detection and Response\u2026 Read more on Cisco Blogs \u200b With the rise of XDR (Extended Detection and Response) adoption, the architecture question arises on how NDR (Network Detection and Response and XDR work together. Network Detection and Response tools have matured in customer architectures throughout the years. NDRs continuously monitor networks and devices connected to it using telemetry collected from network devices, generated by endpoints, or by deploying sensors to collect such data.\u00a0 NDR uses this telemetry to primary provide unmatched visibility into an environment of managed and unmanaged devices, then analyzes traffic patterns to detect abnormal behaviors caused by potential threats such as data exfiltration, botnet activity and others. In addition, a NDR becomes the main repository of network telemetry for an analyst to perform threat hunting and forensic investigations. On the other hand, XDR is an aggregation and correlation technology with a main aim to detect incidents while simplifying and accelerating threat response. XDRs leverage a host of integrations to cross correlate detections from different technologies and telemetry sources to draw the bigger picture of an attack in a simplified, enriched, and correlated manner which makes it very simple for a SOC analyst to draw conclusions, locate the source of an attack and respond to threats in a matter of minutes instead of hours or days using individual point product technologies on their own. Cisco Secure Network Analytics (Cisco NDR) with the modernized Data Store architecture delivers: The fastest and largest scaling NDR in market which provides the best user experience with traffic analysis against various forms of network telemetry including traffic flows, firewalls logs and endpoint visibility data via Cisco Secure Client\u2019s Network Visibility Module. Newest Detection Models: Secure Network Analytics offers a next generation converged analytics capability to automatically assign device roles based on behavior and detect threats using enhanced detection techniques. Expanding Secure Network Analytics by integrating it into Cisco XDR will expand these capabilities to the next level by: Correlation with other technologies: XDR correlates NDR EDR, Email detections and threat intelligence, and many other technologies from cisco and third-party which expand NDR beyond the Network Detection boundaries. Expand the Response Ecosystem: with Cisco XDR built-in and customizable incident response capabilities, NDR responses are expanded beyond the natively supported techniques leveraging the diverse and multiple integration that XDR supports with EDRs, DNS, Firewall, and others. Detections Assertion secure Network Analytics\u2019 detections are based on behavioral and machine learning detections techniques which are advanced techniques that can detect slow and hidden threats. By combining it with Cisco XDR these detections are affirmed through correlation with other technologies detections to form an end-to-end incident that explains the threat activity across multiple threat vectors. Bottom line, Secure Network Analytics and Cisco XDR work very well together by complimenting each other.\u00a0 Detections and telemetry from Secure Network Analytics is one source of data feeding into XDR, XDR ingest it along with other data from multiple technologies to identify incidents without having to focus on Network based detections or visibility since it is provided through NDR. Implementing a solution will depend on the specific needs and requirements. If you are looking to improve your network visibility and network detection capabilities it is delivered with NDR, but if your main goal is to \u00a0improve your threat response capabilities and get a comprehensive view of incidents then use XDR. We\u2019d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social! Cisco Secure Social Channels InstagramFacebookTwitterLinkedIn Share Share: \u00a0\u00a0This blog post describes how secure network analytics (NDR) and Cisco XDR (Extended detection and response) work together for enhanced detection faster response\u00a0\u00a0Read More\u00a0Cisco Blogs\u00a0","og_url":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/","og_site_name":"JHC","article_published_time":"2023-09-18T17:01:22+00:00","og_image":[{"width":1,"height":1,"url":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif","type":"image\/gif"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#article","isPartOf":{"@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/"},"author":{"name":"","@id":""},"headline":"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm","datePublished":"2023-09-18T17:01:22+00:00","dateModified":"2023-09-18T17:01:22+00:00","mainEntityOfPage":{"@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/"},"wordCount":655,"publisher":{"@id":"https:\/\/jacksonholdingcompany.com\/#organization"},"image":{"@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage"},"thumbnailUrl":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif","articleSection":["Cisco: Learning"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/","url":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/","name":"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm - JHC","isPartOf":{"@id":"https:\/\/jacksonholdingcompany.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage"},"image":{"@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage"},"thumbnailUrl":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif","datePublished":"2023-09-18T17:01:22+00:00","dateModified":"2023-09-18T17:01:22+00:00","breadcrumb":{"@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#primaryimage","url":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif","contentUrl":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/09\/16354144-7CFMVA.gif","width":1,"height":1},{"@type":"BreadcrumbList","@id":"https:\/\/jacksonholdingcompany.com\/expand-secure-network-analytics-with-cisco-xdr-hanna-jabbour-on-september-18-2023-at-1200-pm\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/jacksonholdingcompany.com\/"},{"@type":"ListItem","position":2,"name":"Expand Secure Network Analytics with Cisco XDR Hanna Jabbour on September 18, 2023 at 12:00 pm"}]},{"@type":"WebSite","@id":"https:\/\/jacksonholdingcompany.com\/#website","url":"https:\/\/jacksonholdingcompany.com\/","name":"JHC","description":"Your Business Is Our Business","publisher":{"@id":"https:\/\/jacksonholdingcompany.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/jacksonholdingcompany.com\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/jacksonholdingcompany.com\/#organization","name":"JHC","url":"https:\/\/jacksonholdingcompany.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/jacksonholdingcompany.com\/#\/schema\/logo\/image\/","url":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/07\/cropped-cropped-jHC-white-500-\u00d7-200-px-1-1.png","contentUrl":"https:\/\/jacksonholdingcompany.com\/wp-content\/uploads\/2023\/07\/cropped-cropped-jHC-white-500-\u00d7-200-px-1-1.png","width":452,"height":149,"caption":"JHC"},"image":{"@id":"https:\/\/jacksonholdingcompany.com\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/posts\/1148","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/comments?post=1148"}],"version-history":[{"count":0,"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/posts\/1148\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/media\/1149"}],"wp:attachment":[{"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/media?parent=1148"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/categories?post=1148"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jacksonholdingcompany.com\/wp-json\/wp\/v2\/tags?post=1148"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}