Ransomware Detection
& Response Workshop

Endpoint Security

Question 1
How many agents do you have on your endpoints for EPP, EDR, DLP and Encryption?
Question 2
In case of ransomware attack, are you able to automatically rollback malicious changes occurred at compromised endpoint system?
Question 3
Are you able to perform forensics/ Root-cause analysis on the endpoint?
Question 4
Are you able to prioritize your endpoint detections for further investigation?
