CIS Managed Detection and Response™ (CIS MDR)
CIS Managed Detection and Response™ (CIS MDR™) is available to U.S. State, Local, Tribal, and Territorial (SLTT) government entities. It deploys on endpoint devices to identify, detect, respond to, and remediate security incidents and alerts.
Learn how to get started with CIS MDR.
Protection and Response at the Endpoint
CIS MDR provides an additional layer of cybersecurity protection by deploying directly on devices like workstations and servers. Consisting of flexible solutions, including commercial and GovCloud hosting options, CIS MDR offers device-level protection and response to strengthen an organization’s endpoint security program, and it provides active defense against both known (signature-based) and unknown (behavioral-based) malicious activity. This cost-effective service can stop an attack in its tracks upon identifying a threat on an endpoint, regardless of the network to which it is connected. It does this by taking an active role in mitigating and remediating zero-day attacks, malware, and other cyber threats affecting an organization’s devices by killing or quarantining files.
CIS Monitoring and Management
Organizations using CIS MDR benefit from a cybersecurity defense partner through the 24x7x365 Center for Internet Security® (CIS®) Security Operations Center (SOC). The CIS SOC continuously monitors and manages CIS MDR software, analyzing malicious activity and escalating actionable threats to affected SLTT organizations using excellent response times and customer service.
Additionally, any organization protected by CIS MDR can request the assistance of the CIS Cyber Incident Response Team (CIRT) when they experience a cyber incident. CIS CIRT analysts leverage data from the agents on affected systems and conduct incident analysis remotely, acquiring evidence to uncover what happened, determine the root cause, scope the incident, identify attacker tactics, and more.

The 24x7x365 CIS Security Operations Center (SOC)
The Key to Growing Your SLTT’s Cyber Maturity
Additional CIS MDR Capabilities
Available on GovCloud
MDR Spotlight
Real-time Vulnerability Identification and Management of All Endpoints
- Real-time, ongoing vulnerability insights
- Hosted in AWS Cloud
- Protected user account
- Compatible with Windows, Linux, and macOS systems
- Complement your zero-day protection through CIS MDR Core
Available as an add-on capability
Get Started
MDR Multi-tenancy
Provides a Unified View of All Endpoint Security Activity Among All Managed Organizations
- Birdseye view of endpoint security across all of your organizations
- Customize roles, permissions, and escalation procedures
Available as an add-on capability
Get Started
MDR Mobile
Gain Visibility into Blind Spots on Mobile Devices in Real Time
- Glean actionable insights on mobile threats
- Migrate cyber risk to mobile devices
- Automated threat protection with privacy-centric design
- Compatible with Android and iOS
Available as an add-on capability or standalone service
Get StartedPricing
Please contact us for pricing and more information.