The benefits of endpoint protection
In addition to NGAV, endpoint detection & response – EDR for short – is important to also be able to take preventive action. EDR detects abnormal behavior and takes immediate action. For example, if an Excel sheet is started from Outlook, this could easily be an attachment that is opened by an employee. If that Excel sheet then calls PowerShell and network connections are started, then something is wrong and there is a very good chance that it concerns malware. The advantage of EDR is that these types of actions are detected immediately and that action is taken to prevent worse.