Blog

What is NDR? - Network Detection and Response - ForeNova

Written by ForeNova | August 20, 2021

In 2020, Gartner created the Network Detection and Response (NDR) solution category—updating what was previously called network traffic analysis. NDR uses a combination of machine learning, advanced analytics, and rule-based detection to uncover suspicious activities on enterprise networks.

Making NDR accessible and manageable

With headline-grabbing ransomware attacks on the rise, enterprises of all sizes need deep network visibility and actionable insights to help IT teams respond faster and more efficiently. NDR solutions can provide both.

ForeNova's NovaCommand is a Network Detection and Response (NDR) platform capable of finding residual attacks that currently go undetected. Unlike prevention solutions, NovaCommand uncovers breaches of existing security controls and detects any suspicious network traffic:

  • Based on metadata and logs
  • Using network sensors
  • Without agents nor other changes in the network

The NovaCommand solution:

  • Accelerates response with Endpoint Protection, Firewall, SIEM, and EDR integration
  • Mitigates attacks in near real-time
  • Identifies root causes
  • Models the normal behavior of network traffic (using Machine Learning)
  • Eliminates false positives (using Artificial Intelligence)
  • Makes cybersecurity understandable
  • Eliminates blind spots in the network (with auto-detection)
  • Block command & control communications and lateral propagation based on direct endpoint input  
  • Verify endpoint infection based on command & control communications