市场调查报告书
商品编码
1322943
全球 XDR(扩展检测和响应)的增长机会Global Extended Detection and Response (XDR) Growth Opportunities |
无与伦比的可见性、集成和自动化可增强您组织的安全态势,使其更能适应不断变化的威胁形势
XDR(扩展检测和响应)是一种与供应商无关的解决方案,它聚合来自各种安全控制的数据,使安全团队能够整体检测、调查和响应威胁。 XDR 的三个核心承诺是跨领域检测和响应、有意义的自动化以及第三方集成。
安全供应商正在采取多种方法来实现XDR:开放(三方集成、开放架构、注重灵活性)、本机(提供与自己的安全堆栈的本机集成)或混合(将两种方法结合起来,重点是本机集成)给顾客一个选择)。
XDR是不同解决方案类别演进的结果,来自不同领域和背景的厂商开发出具有XDR能力的产品。该领域的一些公司从 EDR(端点检测和响应)解决方案开始了他们的旅程,通过额外的集成和自动化增强了已经强大的检测和响应基础。其他公司通过数据摄取和遥测扩展了他们的 SOAR(安全、编排、自动化和响应)解决方案,或者为其威胁情报平台添加了检测和响应。竞争有不同的故事和不同的 XDR 方法。
就在两年前,XDR 还没有兑现其承诺。解决方案很大程度上缺乏有意义的自动化、第三方集成或两者兼而有之。机器学习算法、分析的使用、人工智能和 XDR 的预测能力在短短几年内得到了显着提高,许多解决方案现在不仅仅通过手册来解决这个问题。
XDR 目前的成功、高采用率和收入增长证明了该解决方案的功能以及它如何解决网络安全市场的许多痛点。组织需要可见性、集成、分析、灵活性和自动化,而 XDR 满足这些需求的能力使其能够在竞争激烈的网络安全领域蓬勃发展。虽然 XDR 供应商正在更新其战略,以提供更具竞争力的解决方案并为其客户提供高端安全性,但仍然存在增强、投资和创新的空间,以充分利用市场的众多增长机会。
Unparalleled Visibility, Integration, and Automation will Enhance Organizations' Security Posture and Increase their Resilience in an Evolving Threat Landscape
XDR is a vendor-agnostic solution that aggregates data from a wide range of security controls and enables security teams to holistically detect, investigate, and respond to threats. XDR's 3 core promises are cross-layered detection and response, meaningful automation, and third-party integration.
Security vendors take several approaches to XDR, which can be classified as Open (focused on third-party integration, open architecture, and flexibility), Native (focused on providing native integration with the vendor's own security stack), or Hybrid (combining both approaches with a smaller focus on native integration, allowing customers to decide).
XDR is the result of different solution categories' evolution: vendors from diverse areas and backgrounds have developed their products with XDR functionality. Some companies in this space started their journey with an endpoint detection and response (EDR) solution, adding integration and automation to their already robust detection and response base to enhance it. Others augmented their security orchestration, automation, and response (SOAR) solutions with data ingestion and telemetry or added detection and response to their threat intelligence platforms. Each competitor has a different story and a different approach to XDR.
Only 2 years ago, XDR was underdelivering on its promises. Solutions mainly lacked meaningful automation, third-party integration, or both. ML algorithms, analytics usage, AI, and XDR's predictive capabilities improved drastically in only a few years, and many solutions now tackle this issue with much more than just playbooks.
XDR's current success, high adoption, and revenue growth are testament to the solution's capabilities and how they address many pain points in the cybersecurity market. Organizations need visibility, integration, analytics, flexibility, and automation, and XDR's ability to address these demands allows it to thrive and flourish in the extremely competitive cybersecurity space. While XDR vendors have updated their strategies to offer more competitive solutions and deliver high-end security to their customers, there is still room for enhancements, investments, and innovation to leverage the numerous growth opportunities in the market.