{"id":3412,"date":"2021-05-27T14:36:54","date_gmt":"2021-05-27T18:36:54","guid":{"rendered":"https:\/\/solutionsreview.com\/security-information-event-management\/?p=3412"},"modified":"2021-05-27T14:36:54","modified_gmt":"2021-05-27T18:36:54","slug":"will-xdr-supplant-siem-what-does-the-future-hold","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/","title":{"rendered":"Will XDR Supplant SIEM? What Does the Future Hold?"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-2775\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg\" alt=\"Will XDR Supplant SIEM? What Does the Future Hold?\" width=\"800\" height=\"395\" srcset=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg 800w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod-300x148.jpg 300w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod-768x379.jpg 768w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod-547x270.jpg 547w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod-164x81.jpg 164w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod-365x180.jpg 365w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><b><i>Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting and detection-oriented security technologies?\u00a0<\/i><\/b><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">XDR is carving out space in the cybersecurity marketplace both wholly new and yet recognizable from other categories. It offers capabilities reminiscent of SOAR, EDR, and even SIEM. Yet at the same time, it is a category all its own and growing. Yet because it is such a new category, it remains something of a mystery to both outside observers and cybersecurity professionals<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">What is XDR? How might it supplant <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/siem-buyers-guide-security-information-and-event-management\/\" target=\"_blank\" rel=\"noopener\">SIEM<\/a>? What does the future hold?<\/span><\/p>\n<p><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/><\/span><\/p>\n<h2 style=\"text-align: justify\"><b>Will XDR Supplant SIEM?<\/b><\/h2>\n<h3 style=\"text-align: justify\"><b>What is XDR?\u00a0<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">XDR works as an umbrella tool. Avi Chesla, Founder and CEO and David Valovcin, President of <\/span><a href=\"https:\/\/empow.co\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400\">empow<\/span><\/a><span style=\"font-weight: 400\"> gave us <\/span><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/what-is-extended-detection-and-response-xdr-with-empow-experts\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400\">some key information<\/span><\/a><span style=\"font-weight: 400\"> about the new category of cybersecurity.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">XDR refers to a unified security incident and response platform that automatically collects and correlates data from proprietary security components. In other words, you can think of it as a platform that aggregates the security events collected by SIEM, EDR, and identity management tools; it puts them under a single pane of glass, offering a holistic cybersecurity perspective over the entire network.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Further, XDR can cross environments and centralize normalized data, bridging potential gaps in security visibility.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">According to Mr. Valovcin, \u201cXDR pulls together proprietary sensors. Some might be good on the endpoint, others on the network. But because they are siloed, you see them as individuals, not as part of a broader event.\u201d<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Additionally, Mr. Chesla states, \u201cThe main idea is to find advanced attacks hidden in silos.\u201d XDR, in his expert opinion, answers questions such as \u201cwho are all the entities involved as part of this attack? What is the relationship between them? What are their roles? Do they carry sensitive information? So it provides an element of contextualization.\u201d<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>XDR and SIEM<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">So the relationship between XDR and SIEM proves a little difficult to parse. XDR relies on SIEM to some degree, pulling critical information from it. Yet XDR provides the overarching visibility that only comes from uniting multiple security solution findings under a single pane of glass. It interacts with more tools and aggregates more security events.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">XDR also solves a critical challenge prevalent throughout most SIEM solutions: alerting and context. SIEM generates alerts to help investigators find the sources of security events faster, thus also speeding up response times. However, without contextualization and configuration capabilities in place, SIEM can easily detect a non-malicious activity as a security event.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">False positive alerts clog up security workflows and investigations, wasting valuable time and energy and potentially obscuring real attacks. So XDR\u2019s greater contextualization can help prevent that from happening, or at least severely reduce the amount of false positives received.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">So the reality is that your enterprise could benefit from both SIEM and XDR, with neither looking to supplant the other. However, the future holds infinite surprises, and it&#8217;s certainly worth watching these cybersecurity categories closely.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">For more, check out the <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/siem-buyers-guide-security-information-and-event-management\/\" target=\"_blank\" rel=\"noopener\">SIEM Buyer\u2019s Guide<\/a>.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting and detection-oriented security technologies?\u00a0 XDR is carving out space in the cybersecurity marketplace both wholly new and yet recognizable from other categories. It offers capabilities reminiscent of SOAR, EDR, and even SIEM. Yet at the [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":2775,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[551,1],"tags":[95,86,21,57,22,1376],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Will XDR Supplant SIEM? What Does the Future Hold?<\/title>\n<meta name=\"description\" content=\"Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting?\u00a0\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Will XDR Supplant SIEM? What Does the Future Hold?\" \/>\n<meta property=\"og:description\" content=\"Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting?\u00a0\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:published_time\" content=\"2021-05-27T18:36:54+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"395\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Ben Canner\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/\",\"name\":\"Will XDR Supplant SIEM? What Does the Future Hold?\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg\",\"datePublished\":\"2021-05-27T18:36:54+00:00\",\"dateModified\":\"2021-05-27T18:36:54+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting?\u00a0\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg\",\"width\":800,\"height\":395,\"caption\":\"Will XDR Supplant SIEM? What Does the Future Hold?\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Will XDR Supplant SIEM? What Does the Future Hold?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\",\"name\":\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\",\"description\":\"Buyer&#039;s Guide and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Will XDR Supplant SIEM? What Does the Future Hold?","description":"Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting?\u00a0","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/","og_locale":"en_US","og_type":"article","og_title":"Will XDR Supplant SIEM? What Does the Future Hold?","og_description":"Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting?\u00a0","og_url":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/","og_site_name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","article_published_time":"2021-05-27T18:36:54+00:00","og_image":[{"width":800,"height":395,"url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg","type":"image\/jpeg"}],"author":"Ben Canner","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/","url":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/","name":"Will XDR Supplant SIEM? What Does the Future Hold?","isPartOf":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg","datePublished":"2021-05-27T18:36:54+00:00","dateModified":"2021-05-27T18:36:54+00:00","author":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"Will Extended Detection and Response (XDR) supplant SIEM solutions in enterprise cybersecurity? What does the future hold for threat hunting?\u00a0","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#primaryimage","url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg","contentUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2019\/09\/Certification-2-Mod.jpg","width":800,"height":395,"caption":"Will XDR Supplant SIEM? What Does the Future Hold?"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/will-xdr-supplant-siem-what-does-the-future-hold\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/security-information-event-management\/"},{"@type":"ListItem","position":2,"name":"Will XDR Supplant SIEM? What Does the Future Hold?"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website","url":"https:\/\/solutionsreview.com\/security-information-event-management\/","name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","description":"Buyer&#039;s Guide and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/3412"}],"collection":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/comments?post=3412"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/3412\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media\/2775"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media?parent=3412"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/categories?post=3412"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/tags?post=3412"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}