Sophos Intercept X Advanced with MTR Standard Endpoint Protection
Sophos Intercept X Advanced with MTR Standard Endpoint Protection
The World’s Best Endpoint Protection
XDR • EDR • ZTNA • MDR Services
Intercept X is available for devices running on Windows and macOS. Intercept X is the industry’s most comprehensive endpoint protection and includes the options for powerful extended detection and response (XDR) and a fully managed threat response (MTR) service.
Harness the Power of a Deep Learning Neural Network
Achieve unmatched endpoint threat prevention. Intercept X uses deep learning, an advanced form of machine learning to detect both known and unknown malware without relying on signatures.
Deep learning makes Intercept X smarter, more scalable, and more effective against never-seen-before threats. Intercept X leverages deep learning to outperform endpoint security solutions that use traditional machine learning or signature-based detection alone.
Stop Ransomware in Its Tracks
Block ransomware attacks before they wreak havoc on your organization. Intercept X with XDR includes anti-ransomware technology that detects malicious encryption processes and shuts them down before they can spread across your network. It prevents both file-based and master boot record ransomware.
Any files that were encrypted are rolled back to a safe state, meaning your employees can continue working uninterrupted, with minimal impact to business continuity. You get detailed post-cleanup information, so you can see where the threat got in, what it touched, and when it was blocked.
Intelligent Endpoint Detection and Response (EDR)
The first EDR designed for security analysts and IT administrators
Intercept X Advanced with EDR allows you to ask any question about what has happened in the past, and what is happening now on your endpoints. Hunt threats to detect active adversaries, or leverage for IT operations to maintain IT security hygiene. When an issue is found remotely respond with precision. By starting with the strongest protection, Intercept X stops breaches before they start. It cuts down the number of items to investigate and saves you time.
- The strongest protection combined with powerful EDR
- Add expertise, not headcount
- Built for IT operations and threat hunting
Extended Detection and Response (XDR)
Intercept X Advanced with XDR is the industry’s only XDR solution that synchronizes native endpoint, server, firewall, email, cloud and O365 security. Get a holistic view of your organization’s environment with the richest data set and deep analysis for threat detection, investigation and response for both dedicated SOC teams and IT admins.
- Cross reference indicators of comprise from multiple data sources to quickly identify, pinpoint and neutralize a threat
- Use ATP and IPS events from the firewall to investigate suspect hosts and identify unprotected devices across your estate
- Understand office network issues and which application is causing them
- Identify unmanaged, guest and IoT devices across your organization’s environment
Managed Detection and Response
- Threat Hunting – Proactive 24/7 hunting by our elite team of threat analysts. Determine the potential impact and context of threats to your business.
- Response – Initiates actions to remotely disrupt, contain, and neutralize threats on your behalf to stop even the most sophisticated threats
- Continuous Improvement – Get actionable advice for addressing the root cause of recurring incidents to stop them for occurring again
Intercept X Endpoint Features
ATTACK SURFACE
Web Security | |
Download Reputation | |
Web Control / Category-based URL Blocking | |
Peripheral Control | |
Application Control |
BEFORE IT RUNS ON DEVICE
Deep Learning Malware Detection | |
Anti-Malware File Scanning | |
Live Protection | |
Pre-execution Behavior Analysis (HIPS) | |
Potentially Unwanted Application (PUA) Blocking | |
Intrusion Prevention System |
STOP RUNNING THREAT
Data Loss Prevention | |
Runtime Behavior Analysis (HIPS) | |
Antimalware Scan Interface (AMSI) | |
Malicious Traffic Detection (MTD) | |
Exploit Prevention | |
Active Adversary Mitigations | |
Ransomware File Protection (CryptoGuard) | |
Disk and Boot Record Protection (WipeGuard) | |
Man-in-the-Browser Protection (Safe Browsing) | |
Enhanced Application Lockdown |
DETECT
Live Discover (Cross Estate SQL Querying for Threat Hunting & IT Security Operations Hygiene) | |
SQL Query Library (pre-written, fully customizable queries) Suspicious Events Detection and Prioritization | |
Suspicious Events Detection and Prioritization | |
Fast Access, On-disk Data Storage (up to 90 days) | |
Cross-product Data Sources e.g. Firewall, Email (Sophos XDR) | |
Cross-product Querying (Sophos XDR) | |
Sophos Data Lake Cloud Storage |
30 days |
Scheduled Queries |
INVESTIGATE
Threat Cases (Root Cause Analysis) | |
Deep Learning Malware Analysis | |
Advanced On-demand SophosLabs Threat Intelligence | |
Forensic Data Export | |
REMEDIATE
Automated Malware Removal | |
Synchronized Security Heartbeat | |
Sophos Clean | |
Live Response (remotely investigate and take action) | |
On-demand Endpoint Isolation | |
Single-click “Clean and Block” |
HUMAN-LED THREAT HUNTING AND RESPONSE
24/7 Lead-driven Threat Hunting | |
Security Health Checks | |
Data Retention | |
Activity Reporting | |
Adversarial Detections | |
Threat Neutralization & Remediation | |
ZERO TRUST NETWORK ACCESS
Integrated ZTNA agent | |
ZTNA Access Policy and Control | Optional |