Skip to main content

Kaspersky MDR introduces major updates, strengthening detection and investigation capabilities

20 April 2026

Kaspersky Managed Detection and Response now offers enhanced automation and incident management features, introduces a new offering for industrial and embedded systems, and delivers an improved customer experience. These advancements bolster security and enable a faster, more efficient response to threats.

Kaspersky MDR is adopted by organisations across a vast range of industries worldwide. In 2025, the solution detected up to three high-severity incidents driven by human activity daily, reducing response time by approximately 22% compared to the previous year. This result, highlighted in a Global Report by Kaspersky Security Services, reflects enhanced efficiency driven by advanced automation, increased detection rules and the continuously perfected and dedicated expertise of Kaspersky’s specialists. 

Keeping in mind that threats are becoming increasingly sophisticated and challenging to detect, Kaspersky recognises that solutions must be continuously refined. This principle is also applied to Kaspersky MDR, which is now being enhanced through a series of important updates designed to improve its value and deliver a better experience for customers.

New MDR offering for embedded and industrial systems

Kaspersky Embedded Systems Security 4.0 (KESS) and KICS for Nodes 4.5 now features a unified MDR agent. For embedded environments, this integrated approach simplifies onboarding and enhances manageability, enabling faster and more dependable MDR deployment. In industrial settings, it decreases operational complexity, strengthens resilience, and streamlines ongoing maintenance.

Enhanced detection and investigation capabilities

Kaspersky MDR now benefits from enhanced container telemetry provided by Kaspersky Endpoint Security for Linux 12.4. This advancement significantly improves visibility into containerised environments, boosts threat detection accuracy, and accelerates the identification of risks within container infrastructures.

Kaspersky MDR now also supports automated file transfers upon analyst request through Kaspersky Anti Targeted Attack 8.0 and Kaspersky Next EDR Expert 8.0. With advanced MDR integration enabled, relevant files are shared automatically, eliminating manual end-user actions. This streamlines collaboration, accelerates incident investigations, and enables faster responses to targeted attacks.

MDR incidents can now be escalated directly from the MDR portal to the Kaspersky Global Emergency Response Team for comprehensive investigation and response. This capability ensures end-to-end management of complex cyberattacks, from the initial response and evidence collection to identifying the primary attack vector and developing an effective mitigation plan.

MDR incidents can now be automatically exported to Kaspersky SIEM 4.0 for advanced analysis and correlation with other security events. This enhancement expands investigative capabilities while maintaining MDR as the central hub for incident management and response.

Enhanced accessibility and customer experience

A one-click incident escalation from Kaspersky Next EDR Expert to MDR is now available, empowering customers with greater control over incident management and ensuring rapid access to expert analysis and response guidance. 

Kaspersky MDR now also provides enriched incident notifications via Telegram that allow real-time updates with priority levels, affected assets, tailored recommendations, and direct links to incidents, enabling customers to access vital information instantly without the need to log into the portal. 

Furthermore, the MDR portal has been fully optimised for mobile devices and tablets, offering comprehensive access to all core functionalities. These improvements collectively allow customers to monitor incidents and manage their MDR services anytime and anywhere, thereby significantly increasing responsiveness and operational agility.  

“At Kaspersky, we are committed to continuously enhancing our MDR to stay ahead of evolving cyber threats and protect organisations worldwide from all industries, 24/7. These latest updates bring extended integrations with the Kaspersky product portfolio, smarter automation and new features that enable quicker and even more precise responses – all to improve user experience because in today’s threat landscape, agility and precision are more critical than ever,” comments Renat Turianov, Kaspersky MDR Product Owner at Kaspersky.

For more information about Kaspersky MDR, please visit the website.

Kaspersky MDR introduces major updates, strengthening detection and investigation capabilities

Kaspersky Managed Detection and Response now offers enhanced automation and incident management features, introduces a new offering for industrial and embedded systems, and delivers an improved customer experience. These advancements bolster security and enable a faster, more efficient response to threats.
Kaspersky logo

About Kaspersky

Kaspersky is a global cybersecurity and digital privacy company founded in 1997. Innovating the industry with a Cyber Immunity approach, Kaspersky safeguards consumers, businesses, critical infrastructure, and governments from cyberthreats, with over a billion devices protected to date.

Kaspersky ensures Cybersecurity True to Business, focusing on providing clear outcomes, protecting revenue, easing workloads and preventing downtime. Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services for organizations of every size, from small businesses to large enterprises, combining proven AI-driven protection technologies with simple management and expert support.

Recognized in independent tests and trusted by millions of individuals worldwide and nearly 200,000 organizations, Kaspersky helps detect threats earlier, respond faster and operate with greater confidence and freedom, protecting what matters most to our clients. Learn more at www.kaspersky.com.

Related Articles Press Releases