Cybereason Managed Detection & Response (MDR) is a managed security service emphasizing behavioral analysis and incident response.
N/A
Mandiant Managed Defense
Score6.8 out of 10
Enterprise companies (1,001+ employees)
Mandiant Managed Defense provides 24/7 threat detection, investigation, and response (TDIR) with access to frontline experts who monitor the client's security technology. It has been offered through Google Cloud since the late 2022 acquisition of Mandiant, by Google.
Cybereason Managed Detection & Response is good if you are looking for an EDR solution with MDR from the same company and team, and your budget is low. Because other EDR's in the market are expensive, and the MDR services are also very expensive. As an EDR, it has almost 80% of the features of an EDR solution and is well suited if your environment has other tight security solutions. Such as if your users only work from office, then it is more suited because it does not have a web based URL filtering option, and that will hurt the organization if users also work from home because, in this case, you do not have any control via your firewall on users' PCs.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Rapid identification & Neutralization : The Madiant Rapid Response team will get work right away often within hours to identify and eject the adversary . Others Vendor takes days. Post Incidents Threat Summary: Mandiant provide formal summary of its investigation, detailing the actions it took & discovery it made as well as recommending long term guidance on how to mitigate the recurrence of similar threats in future . Also provide ongoing detection & response.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Excellent across all major tenant of incident response (detection, containment, eradication, etc.)
Has a strong backend support system to perform advanced incident response activities (reverse malware engineering, etc.)
Very scalable - no matter how small or large the incident, Managed Defense can tackle it, or escalate to Mandiant IR if the incident is complex and/or large enough.
The Cybereason Managed Detection & Response is good, but it has some room for improvement at the user and group management level. You cannot group users in Cybereason Managed Detection & Response. So if you have to apply a policy to a set of users, you have to do it one by one manually by finding the system names.
The automation is less. No automation is searching for devices, such as network discovery. You do not know if it is installed on all devices or not from Cybereason Itself. You have to check it manually.
There is no option to search for a user by username. You must know the device name to find the details.
No web filtering option available. So you cannot block any URL from Cybereason Managed Detection & Response.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Due to split from FireEye Mandiant no longer can provide its own End Point Protection as part of MDR for customers that want to transition after incident is complete .
Single remediation response with no-ongoing monitoring
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
I would like to rate it 7 out of 10 because it has some good features but it misses some important features as well. It has a robust monitoring capability from its agents installed on endpoints. The single agent is responsible for providing the event details, logs, update itself, apply policies, take actions as defined in policies and all. It's not a traditional antivirus. It is a modern EDR with AI capabilities. The things missing with this tool is IP?URL Block, and web traffic monitoring capabilities
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
The main reason for the selection of Cybereason is its cost and monitoring capabilities. Cybereason provide its solution at very low cost compared to TrendMicro and MS Defender for endpoints. Cybereason policies are very clear and provide all the details under one dashboard. We do not have to more to different pages. Also the policies are clearly defined. The main problem with MS Defender is that they were not providing MDR services on that time, I am not sure about the current situation
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Secures Network with strong and robust security with managed solution
Guided response and root cause analysis for every malop so this is the best ROI we have we don't have to dig much it automatically gives all the relevant details which makes it best from others
The Customer Service Support is best they have , they keep time tracking of cases , immediate responses, meetings, problem solving everything they provide is fabulous from support point of view
In any issue engineers contact the user and gets the issue resolved and do good level of troubleshooting
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info