I'm wondering if by having only MVISION EDR in my systems, they can be fully protected against threats.
I know that by using ENS we need to have ENS Threat Prevention and ATP to be protected against malware and file-less threats (behavioral based protection and zero-day threats), so I want to know if MVISION EDR provides that level of protection or if another McAfee product should be included.
MViSION EDR doesn't provide any protection, just detection and response. So it won't block anything, it'll just allow you to find things that haven't been blocked by ENS, for example, and take actions remotely.
So in the grand scheme of things, you really need to do the "P" Protect first with ENS, windows defender or any form of antivirus. Then EDR typically comes later with staff assigned to monitor and respond to events bubbled up by the analysis of EDR. So EDR is in no way an antivirus, it's more like a tool to match activities on your endpoint to known attack patterns.
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.
Community Help Hub
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.