Overview
IBM Security Managed Detect & Respond (MDR) Service delivers turnkey 24x7 threat prevention, detection, investigation, and fast response. Fueled by intelligence gleaned from Incident Response (IR) investigations and proactive threat hunting, it reveals undetected threats faster while improving Security Operations Center (SOC) productivity. IBM Security MDR Service uses best-of-breed Endpoint Detection and Response (EDR) and Network Detection and Response (NDR) technologies to conduct detailed investigations. This includes IBM Security’s proprietary Tactics, Techniques and Procedures (TTP), threat hunting library and next-generation antivirus for behavior-based blocking and continuous policy management.
Supported Endpoint Detection and Response technologies include: IBM Security ReaQta, Crowdstrike, CyberReason, Carbon Black and Microsoft 365 Defender Endpoint.
IBM Security MDR service is part of IBM's industry leading X-Force Threat Management (XFTM) service which provides NIST - based integrated threat management detection and response leveraging IBM Security QRadar, IBM Security Resilient, other third-party tools and IBM's proprietary machine learning and artificial intelligence tools to rapidly identify, evaluate, and remediate threats before they become incidents. IBM Security has built a strong portfolio of complementary offerings around vulnerability management, threat intelligence, and incident response.
IBM Security ReaQta Essential Managed Detection and Response offers a subscription-based service that delivers a 24/7 threat detection and fast response capability, fueled by threat intelligence. See the Essential MDR service at the IBM Security ReaQta listing in AWS Marketplace -- click the IBM Security ReaQta tile below or access the following link: https://aws.amazon.com/marketplace/pp/prodview-ullt65p5be7jw?sr=0-10&ref_=beagle&applicationId=AWSMPContessa .
IBM's Essential MDR AI-powered automation coupled with human-led analysis speeds threat response across server, client and workstation endpoints. The ReaQta MDR public offer includes:
- 24x7 alert investigation, response, and security incident reporting for endpoints in scope
- All alerts are handled by analysts, as well as enriched with a response recommendation
- Integrated response capabilities enable both automated and human response actions for faster threat defense.
- world-class X-Force threat intelligence combines organic threat intel with machine learning analytics to speed detection and response.
- Threat hunting enriched with Threat Intelligence is used for identifying indicators of attack and compromise.
IBM Security is a leader in comprehensive AWS Level 1 MSSP services including Managed Detection & Response services. IBM Managed Detection & Response is among a broad set of IBM Security Level 1 MSSP capabilities for AWS.
Highlights
- Enhanced visibility of endpoint and network security across AWS and enterprise endpoints with ongoing monitoring for malicious activity. Detection of attacks in real time. Faster threat defense using artificial intelligence (AI) machine learning (ML) and integrated IBM Security Orchestration, Automation and Response (SOAR) capabilities that enable automated and accelerated human response actions. Faster delivery and decisive response to attacks to see an attack’s full kill chain.
- Prevents future incidents by using IBM Security’s proprietary TTP (Tactics, Techniques, and Procedures) threat hunting library and the MITRE ATT&CK framework for proactive threat detection.
- Includes proactive threat hunting combined with AWS native security capabilities that augments traditional security solutions to uncover malicious activity. Ability to leverage existing technology investments including EDR tools, eliminating the need to rip and replace or risk vendor lock-in. Supported Endpoint Detection and Response technologies include: IBM Security ReaQta, Crowdstrike, CyberReason, Carbon Black and Microsoft 365 Defender Endpoint.
Details
Pricing
Custom pricing options
Legal
Content disclaimer
Resources
Vendor resources
Support
Vendor support
For Sales Support:
- Call IBM Security sales at 1 877-426-3774 Priority code: Security
- Contact us online at https://www.ibm.com/account/reg/us-en/signup?formid=MAIL-security or email us at MSSPAWS@ibm.com
- Click on the “Continue” button in the orange box above to the right.
For Global Security Operations Center, 24x7, 365 days per year • Existing customers, please contact IBM Security MSS Virtual SOC Portal for existing MSS subscription customers with an existing IBM ID: portal.sec.ibm.com