Dell enhances its Managed Detection and Response service.
Dell Technologies has broadened its Managed Detection and Response (MDR) service to strengthen data protection security and counter cyberattacks more effectively. This expansion integrates advanced threat detection and response capabilities, providing enterprises with unparalleled visibility and protection for critical data environments.
Data protection environments are increasingly becoming the first target for cyberattacks due to their crucial role in recovering and restoring corrupted data. Current IT security strategies often rely on infrastructure system logs fed into Security Incident and Event Management (SIEM) tools. This process generates an overwhelming volume of unprioritized alerts, requiring significant manual intervention from security teams, which increases complexity and reduces efficiency in managing infrastructure security.
Simplified Threat Detection: Dell MDR and CrowdStrike Falcon Next-Gen SIEM
Dell Technologies has partnered with CrowdStrike to incorporate Falcon® Next-Gen SIEM into its MDR service. This unified platform simplifies threat detection and response, offering enhanced visibility and proactive measures to prevent breaches. Unlike off-the-shelf tools, this integration provides enterprises with a comprehensive view of their infrastructure, ensuring critical data environments are effectively protected.
In collaboration with CrowdStrike, Dell has developed more than 60 unique Indicators of Compromise (IOCs) tailored specifically for its PowerProtect Data Domain and PowerProtect Data Manager solutions. These IOCs include critical threat scenarios such as:
- Disabled multifactor authentication (MFA)
- Logins from public IP addresses
- Mass data deletion events
- Multiple failed login attempts
These IOCs are processed through Falcon’s AI-powered detection engine and ranked by severity. The high-quality forensic data these detections provide enables Dell’s security analysts to accelerate threat response and mitigation, ensuring efficient handling of potential breaches.
Collaborative Security Operations Center (SOC) Model
Dell’s MDR service provides 24/7 monitoring through expert security analysts dedicated to IT and data protection environments. By extending the capabilities of customer Security Operations Centers (SOCs), Dell enables organizations to:
- Enhance visibility across IT infrastructures
- Expand threat coverage and detection capabilities
- Respond rapidly and effectively to incidents
This collaborative model ensures that customers retain control over their security operations while gaining access to Dell’s expertise in detection, analysis, and incident recovery. This partnership significantly strengthens the customer’s ability to manage threats efficiently.
Daniel Bernard, CrowdStrike’s Chief Business Officer, emphasized the importance of the Falcon Next-Gen SIEM platform: “Falcon Next-Gen SIEM provides Dell MDR with a powerful, foundational new platform to seamlessly ingest rich data backup and protection telemetry and rapidly detect and respond to threats.”
Conclusion
With this expansion, Dell’s MDR service now offers comprehensive coverage across IT environments. By leveraging CrowdStrike’s advanced SIEM platform and tailored IOCs, Dell delivers scalable, effective, and proactive security solutions for enterprises, ensuring robust data protection and rapid incident response.
Availability
Dell’s Managed Detection and Response service is available in 75 countries.
Engage with StorageReview
Newsletter | YouTube | Podcast iTunes/Spotify | Instagram | Twitter | TikTok | RSS Feed