EDR/CloudDR/MDR
Hey everyone,
So we are in the process (final stages really) of evaluating WatchGuard EDR/CloudDR/MDR. We are moving away from Huntress (EDR/ITDR/SOC/ISPM).
So far the migration has been pretty simple. But I am having a hard time trying to compare Huntress and WG.
From my understanding, CloudDR is mostly an ISMP (ISH) replacement, but will also do SOME ITDR. It will do ShadowIT and some Office 365 investigations. We plan to do this for all customers.
For MDR, we are planning to use Total MDR for a handful of our larger customers that deal with compliance.
I'm having a hard time understanding where ITDR comes into play. I see that CloudDR can do some remediations. But you have to set it up manually.
I also see that MDR can also do remediation. But it doesn't appear to be automated, unless I'm misunderstanding.
For anyone that understands both products, what am I missing?
The full WG package will end up costing us more that Huntress. But it does seem that we will have better protection, and I'm really looking forward to this. But since Office 365 remediation is so important, I don't want to get this wrong and have a gap in protection.
Thanks for all of your input! =)