DETECT TARGETED ATTACKS AND
MINIMIZE DAMAGES

All data related to the Sentry EDR service stays in Finland with Fitsec, ensuring the utmost security and compliance
Real-time threat detection
Customizable alerts and reporting
Continuous updates and support
Windows workstations or servers

SOLUTION

The Sentry EDR is a service that is designed to detect targeted attacks. When a targeted attack successfully breaches an organization, it is extremely important to be able to detect it is quickly as possible and thus prevent greater damage. The service includes the Sentry EDR software installed on workstations, which finds targeted attacks and more traditional bulk malware.

When the software flags something as suspicious, the suspicious machine code is sent to our experts for manual analysis to find out what the program does. We do not rely solely on automation, like many competing products.

The Sentry EDR is a full service that also includes all the necessary clean-up work that is required after finding a malware infection. Forensic investigation and malware analysis is always performed to ensure that we can find out, for example, what the program has tried to steal. Forensic investigation will also reveal how the malware has entered your network. The customer is always notified of any findings.

The Sentry EDR service is especially suitable for large or government organizations that handle sensitive information in their environment. The service has been on the market since 2013 and it is continuously being improved with the help of our customers.

SENTRY EDR OPERATION

The operation of the Sentry EDR service is based on the Sentry EDR client installed on workstations. The client monitors all programs and modules loaded into memory on the workstation. When an unknown program or module is detected, a binary copy is sent to the Sentry EDR server for analysis. The Sentry EDR client also monitors the use of powershell on the workstation and if needed, running powershell can be disabled completely.

INSTALLATION

The sentry EDR software is installed on Windows workstations or servers. The software supports all 32 and 64-bit Windows systems from XP onwards.

ANALYSIS

We find out if your system has suspicious behaviour. Targeted attacks and bulk malware will be detected.

ALERTING

When something suspicious is found, we alert you immediately. The service includes all the necessary cleanup work that is required after a malware infection.

SENDING MACHINE CODE

The Sentry client only sends machine code from detections to the server. Documents or emails etc. are not sent under any circumstance.

REPORTING

You receive a monthly report from the Sentry EDR service. If something malicious or suspicious is found, we notify you immediately.

SERVICE OPTIONS

ONE-TIME SCAN

We perform a one-time scan of your systems to find malicious programs and other signs of suspicious activity. A one-time scan is ideal to do for example once every year

CONTINUOUS MONITORING

You receive a monthly report from the Sentry EDR service. If something malicious or suspicious is found, we notify you immediately.

looking to safeguard your endpoints?

CONTACT US TO BEGIN

Fill in your contact information in the form,

and we will reach out to arrange an initial discussion

+358 44 239 7242

support@fitsec.com

FINNISH THREAT INTELLIGENCE FEED
PROVIDER SINCE 2009