What is the purpose of the eSentire Agent?
The eSentire Agent is designed to enhance our Managed Detection and Response (MDR) services for endpoints. It provides visibility and telemetry on your systems, allowing us to monitor logs and activities. This helps in detecting and preventing potential threats, and if a problem arises, it enables our Security Operations Center (SOC) to investigate and respond effectively.
How does the Agent Dashboard work?
The Agent Dashboard provides a centralized view of all eSentire Agents deployed in your environment. It displays installation information, online/offline status, operating systems, and agent versions. Clients can also configure, uninstall, or isolate endpoints directly from this dashboard, giving them self-service capabilities and detailed insights into their security posture.
What happens when a threat is detected?
When a potential threat is detected, the eSentire SOC analysts investigate the issue using the data collected by the Agent. If the threat is confirmed, it is escalated to the client through a threat case in the Insight Portal, which includes a summary of the incident, evidence, and recommended actions. Clients are also notified via email, ensuring they are informed and can take necessary steps.