Files
windows-itpro-docs/windows/security/threat-protection/windows-defender-atp/overview-endpoint-detection-response.md
2018-08-13 08:01:38 -07:00

30 lines
1.1 KiB
Markdown

---
title: Overview of endpoint detection and response capabilities
description: Learn about the endpoint detection and response capability in Windows Defender ATP
keywords:
search.product: eADQiWindows 10XVcnh
ms.prod: w10
ms.mktglfcycl: deploy
ms.sitesec: library
ms.pagetype: security
ms.author: macapara
author: mjcaparas
ms.localizationpriority: high
ms.date: 09/12/2018
---
# Overview of endpoint detection and response
The endpoint detection and response capabilities in Windows Defender ATP continuously monitors your organization for possible attacks against systems, networks, or users in your organization. It helps detect, investigate, and quickly respond to threats.
The detection capability finds the attacks that made it past all other defenses and surfaces them through alerts.
The platform provides various ways for you to investigate an incident and allows you to pivot in various views to help you approach an investigation through multiple possible vectors.
The response capabilities gives you the power to promptly remediate threats by taking action on the affected entities.