About the Extended Detection and Response (XDR) category
What belongs in this category
The Extended Detection and Response (XDR) category covers platforms that take telemetry from several security layers, correlate it into a single view of an attack, and respond across those layers from one console, for example isolating a device, disabling an account and blocking a domain together. Entries may build on their own sensors, on third-party tools (open XDR), or both.
XDR is defined by joining several layers. A product that detects on one layer only fits that layer's category, such as Endpoint Detection and Response (EDR) or Network Detection and Response (NDR). An XDR platform can also enter Threat Detection and Response, the broad detection category, and an XDR service run for clients fits Managed Detection and Response (MDR).
Related categories to enter
Each category is judged separately, so you can enter a product in every category that matches what it does, with a separate nomination for each. Tailor each nomination to that category's focus. Entering several related categories gives the product more than one chance to be recognized.
How entries are judged
An independent jury of security practitioners, analysts and CISOs scores each nomination on leadership, innovation and impact. Each nomination competes in its category against organizations of similar size and region, so a mid-sized firm is not ranked against a global enterprise. Your entry package, any sponsorship and public votes do not affect the jury's scores.
Strong entries in this category show:
- Leadership — the breadth and scale of the platform: security layers and third-party tools connected, endpoints and users covered, and customers that use it as their main detection platform.
- Innovation — what joining the layers makes possible, such as one attack story across endpoint, identity and cloud, response actions across several tools at once, or open XDR that works with tools customers already own.
- Impact — results for customers: time to detect and contain attacks, consoles and tools consolidated, alerts reduced through correlation, incidents caught across layers. Give figures from customers.
The jury awards Gold, Silver or Bronze, or a Finalist badge, and results are published on this site and announced to the 600,000+ member Cybersecurity Insiders community. Every approved nomination also enters the separate Community Choice award, decided by public votes.
How to enter
A vendor can enter its own product or service, and a PR agency can enter it on a client's behalf. The nomination form has a confidential field for detail that is shared with the judges and not published, such as customer names, deployment figures or roadmap. Deadlines, pricing and entry steps are on the How it Works page.