Home Learn What is EDR (Endpoint Detection and Response)?
Learn · Northstar IT

What is EDR (Endpoint Detection and Response)?

EDR stands for Endpoint Detection and Response. It is a modern security tool that watches every laptop, desktop, and server for suspicious behaviour, and can isolate or roll back compromised devices automatically.

Is EDR different from antivirus?

Yes. Antivirus matches files against known threat signatures. EDR watches behaviour: unusual logins, encryption activity, lateral movement. It catches threats antivirus misses, including zero-day attacks.

How much does EDR cost?

Business-grade EDR runs between 6 and 15 dollars per device per month, depending on the platform and managed service overlay. North Star bundles EDR into managed care plans.

What EDR does Northstar IT use?

North Star deploys SentinelOne and Microsoft Defender for Business depending on the client environment. Both are leading EDR platforms with strong ransomware protection.

Can EDR stop ransomware?

EDR significantly reduces ransomware risk by detecting encryption behaviour early, isolating infected machines, and rolling back changes. Combined with offline backups, it is the most effective single defence available.

FAQ

Quick answers.

What is EDR?

EDR stands for Endpoint Detection and Response. It is a modern security tool that watches every laptop, desktop, and server for suspicious behaviour, and can isolate or roll back compromised devices automatically.

Is EDR different from antivirus?

Yes. Antivirus matches files against known threat signatures. EDR watches behaviour: unusual logins, encryption activity, lateral movement. It catches threats antivirus misses, including zero-day attacks.

How much does EDR cost?

Business-grade EDR runs between 6 and 15 dollars per device per month, depending on the platform and managed service overlay. North Star bundles EDR into managed care plans.

What EDR does Northstar IT use?

North Star deploys SentinelOne and Microsoft Defender for Business depending on the client environment. Both are leading EDR platforms with strong ransomware protection.

Can EDR stop ransomware?

EDR significantly reduces ransomware risk by detecting encryption behaviour early, isolating infected machines, and rolling back changes. Combined with offline backups, it is the most effective single defence available.

Have a specific situation in mind?

Book a free 30-minute scoping call with a Northstar IT engineer. We will walk through your environment, your questions, and what good looks like for your team.

Get a Free Assessment More guides