XDR

Extended Detection and Response

Definition

Extended Detection and Response is a security approach that collects and correlates data across multiple security layers — email, endpoint, server, cloud workloads, and network — to provide unified threat detection and response.

Buyer context

XDR is often a technology platform, while MDR is usually a managed service. A provider may use XDR internally, sell a managed XDR service, or require the buyer to operate parts of the platform. Buyers should separate the tool from the service wrapped around it.