โŒ

Reading view

How to ensure compatibility between security solutions and the new platform

Sooner or later, every company faces the need to upgrade its infrastructure โ€” whether to accommodate expansion, optimize processes, or keep up with the latest trends in IT. When such a decision is made, company management typically thinks first and foremost about broad changes at the platform level โ€” assuming that applications can simply be reinstalled and everything will work as before. And to a certain extent, thatโ€™s actually true. In an era when corporate security could be ensured solely by antivirus software on workstations, that would have worked; however, modern cyberthreats require protection at a fundamentally different level.

In this post, we explore why platform migration should be discussed with the security team as well, and why simply โ€œinstalling a programโ€ isnโ€™t enough to ensure modern-day protection.

Security is no longer just a single program

In the past, securing endpoints was enough to prevent most attacks. In todayโ€™s environment, endpoint protection is just one layer of cybersecurity. A modern extended detection and response (XDR) solution isnโ€™t a single application installed on a computer; itโ€™s a set of components that work in conjunction. They provide protection for workstations and servers, event logging and storing, infrastructure-level threat detection mechanisms, investigation tools, automated response, reporting, and asset management. Each component serves a specific purpose and places different demands on the hardware and platform.

For the event storage system, disk speed is the most critical factor. In a large company, the security system generates millions of records per day, and all of them must be written quickly and then retrieved just as quickly when needed. The bottleneck here usually isnโ€™t processor capabilities, but rather how fast the system can read and write data.

Threat detection requires computing power. The system compares events in real time and determines what can be a sign of an attack, and what is normal operational activity.

Response time is critical for investigation tools. When an analyst investigates an incident and pieces together what happened, they work in real time, and every second of waiting adds to the overall response time to the attack.

What does this mean? When a company switches platforms, itโ€™s not enough to simply verify that the companyโ€™s existing cybersecurity solutions support the new architecture. The answer โ€œyes, itโ€™s supportedโ€ is too vague. Itโ€™s essential to clearly understand exactly which parts of the cybersecurity architecture are supported โ€” starting from which version, and what is still under development.

What to ask before itโ€™s too late

To avoid unexpected complications during implementation and operation, we recommend asking the right questions in advance โ€” during the planning phase. Here are those questions:

Which specific components have been tested on the new platform?

The question shouldnโ€™t be phrased as โ€œIs the platform supported?โ€; the compatibility of each part of the system should be verified. Different components of a modern information-security solution operate under different rules, which is why their compatibility is tested separately. A one-word โ€œyesโ€ answer should raise a red flag: a reputable vendor will always provide a detailed response โ€” including a list of components and any caveats (where applicable).

Will there be sufficient resources to handle the companyโ€™s workload?

โ€œIt will runโ€ and โ€œit will handle needed data volumeโ€ are two fundamentally different statements. The former is verified in a lab on a test bench; the latter depends on how many events specific infrastructure generates per day, and how long the company is required to retain them under regulatory or internal policies. It makes sense to ask the vendor for recommendations on calculating resources based on specific data volumes rather than relying on general minimum resource requirements when planning.

Is the security solution up to date?

Itโ€™s always important to clearly understand which version of the cybersecurity solution supports the new platform. Itโ€™s not uncommon for different parts of the infrastructure to be protected by different builds of the same solution. Sometimes this is because new features didnโ€™t seem particularly critical; other times itโ€™s because the IT security team was waiting for a convenient time to update so as not to disrupt business processes. If the security team wonโ€™t verify right away that all builds already support the new platform, the IT department may suddenly find itself having to make urgent changes to the migration schedule because updating the security solutions will require its own maintenance window and approvals. Itโ€™s better to find this out at the start of the project rather than deep into the process.

Are there any licensing restrictions?

Sometimes the availability of certain features depends not only on the product version but also on the specific licenses the company has purchased. Itโ€™s more cost-effective to clarify this during the design phase.

None of these questions require in-depth technical knowledge; a project manager can easily ask them. But when asked at the right time, they eliminate most of the unpleasant surprises that usually surface during the implementation of a new platform.

How do we help?

Weโ€™re constantly expanding the list of platforms supported by our solutions, and strive to describe their compatibility in as much detail as possible โ€” like versions, component composition, and honest disclaimers where applicable. For example, the latest versions of Kaspersky NEXT XDR Expert and Kaspersky NEXT EDR Expert now support the Nutanix 7.3 hypervisor.

For companies planning to build their infrastructure on this platform (or migrate over to it) this means one thing: the compatibility issue goes from being a roadblock to being resolved. Thereโ€™s no need to postpone securing the infrastructure until the migration is complete, or to deploy cybersecurity solutions in an untested configuration โ€” cybersecurity is now integrated into the migration project on a par with other systems.

The full technical requirements for our security solutions are always available in the documentation; itโ€™s always worth reviewing them before deployment schedules are finalized.

  •  

Top 6 Managed Detection and Response Providers

There are several major managed detection and response (MDR) companies to choose from. Weโ€™ve compared the main offerings of the best MDR providers to help you decide which is right for your organisation. Maybe it was a near miss, or a security team stretched too thin and drowning in alerts from dozens of tools. Whatever [โ€ฆ]

The post Top 6 Managed Detection and Response Providers appeared first on Heimdal Security Blog.

  •  

A 4X Gartner Magic Quadrant for EPP Leader. Built for the Agentic Era.

I am incredibly proud to share that Palo Alto Networks has been named a Leader in the 2026 Gartnerยฎ Magic Quadrantโ„ข for Endpoint Protection Platforms for the fourth consecutive year. For us, this recognition is a testament to our team's relentless vision as we continue to define endpoint defenseโ€”from the pioneer days of XDR to the new frontier of agentic AI.

We believe our repeated recognition as a Leader is built on a single, uncompromising commitment to our customers and partners: empowering organizations with reduced overhead, rapid threat response, a strengthened security posture, and the resilient protection required to close the most critical security gaps. We are now leading the shift into the agentic era. While AI agents significantly boost enterprise productivity, they also introduce novel attack surfaces that legacy EDR tools are unable to protect. As the pioneer of XDR, we are committed to defining the next generation of cybersecurity by securing this new frontier.

Cortexยฎ XDR is helping customers:

  • Secure Agentic AI with Koi: Gain unprecedented visibility, guardrails, and control over AI agents and agentic tools before they become a liability.
  • Stop the Unseen: Leverage battle-tested prevention powered by behavioral analytics, and industry-leading automation and response.
  • Unify Your Defense: Consolidate your endpoint and workspace security with a proven, four-time industry Leader.

We are incredibly proud to be recognized as a Leader once again, an acknowledgement that belongs just as much to our customers and partners as it does to us. Your trust, feedback, and real-world challenges keep us sharp and dictate our roadmap. At the end of the day, our continued leadership is built on one core promise: make each day more secure than the day before.

To get the full story and a comprehensive analysis of the endpoint security market, I invite you to read the 2026 Gartner Magic Quadrant report.

Get Your Complimentary Copy of the Report

Gartner, Magic Quadrant for Endpoint Protection Platforms, By Deepak Mishra, Evgeny Mirolyubov, Nikul Patel, May 29, 2026

Gartner and Magic Quadrant are trademarks of Gartner, Inc. and/or its affiliates. Gartner does not endorse any company, vendor, product or service depicted in its publications, and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner publications consist of the opinions of Gartnerโ€™s business and technology insights organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this publication, including any warranties of merchantability or fitness for a particular purpose.

The post A 4X Gartner Magic Quadrant for EPP Leader. Built for the Agentic Era. appeared first on Palo Alto Networks Blog.

  •  
โŒ