{"id":109599,"date":"2023-05-02T08:00:15","date_gmt":"2023-05-02T08:00:15","guid":{"rendered":"https:\/\/kasperskycontenthub.com\/securelist\/?p=109599"},"modified":"2023-05-16T12:11:58","modified_gmt":"2023-05-16T12:11:58","slug":"mdr-report-2022","status":"publish","type":"post","link":"https:\/\/securelist.com\/mdr-report-2022\/109599\/","title":{"rendered":"Managed Detection and Response in 2022"},"content":{"rendered":"
Kaspersky Managed Detection and Response (MDR) is a service for 24\/7 monitoring and response to detected incidents based on technologies and expertise of Kaspersky Security Operations Center (SOC) team. MDR allows detecting threats at any stage of the attack \u2013 both before anything is compromised and after the attackers have penetrated the company’s infrastructure. This is achieved through preventive security systems and active threat hunting \u2013 the essential MDR components. MDR also features automatic and manual incident response and expert recommendations.<\/p>\n
<\/a><\/p>\n The annual Kaspersky Managed Detection and Response analytical report sums up the analysis of incidents detected by Kaspersky SOC team. The report presents information on the most common offensive tactics and techniques, the nature and causes of incidents and gives a breakdown by country and industry.<\/p>\n In 2022, Kaspersky MDR processed over 433,000 security events. 33% of those (over 141,000 events) were processed using machine learning technologies, and 67% (over 292,000) were analyzed manually by SOC analysts.<\/p>\n Over 33,000 security events were linked to 12,000 real incidents. Overall, 8.13% of detected incidents were of high, 71.82% of medium, and 20.05% of low severity.<\/p>\n 72% of 2022 incidents were detected based on a single security event, after which the attack was stopped right away. Of these, 4% were of high, 74% of medium, and 22% of low severity.<\/p>\n2022 incidents statistics<\/h2>\n
Security events<\/h3>\n
Response efficiency<\/h3>\n