
Sophos Central Network Detection and Response
Unleash the full potential of your network

Sophos NDR is an add-on integration for Sophos MDR, our market-leading managed
detection and response service that today serves over 14,000 organizations worldwide.
List Price: $91.85
Add to Cart for Pricing
List Price: $183.70
Add to Cart for Pricing
List Price: $275.55
Add to Cart for Pricing
More pricing below, click here!
Overview:
The Most Comprehensive Data Drives the Most Accurate Detection Strategy
Organizations can benefit from a holistic approach to threat detection and response and faster ways to correlate an ever-growing volume and variety of data. The deeper the visibility and context, the more precise the investigation into threat activity. That means when security telemetry can come together, it paints a more accurate picture of the entire attack path.
As an add-on to Sophos MDR, the Sophos Network Detection and Response (NDR) virtual appliance monitors network traffic to identify suspicious network flows. Detections are sent to the Sophos data lake, evaluated, and assigned a corresponding risk score, generating cases for the Sophos threat response team to investigate and validate. NDR detections can trigger an investigation into internal host connections to network servers and can also be used to enrich threat hunts for endpoint activity to determine which devices are communicating.
Your Security Needs Tools That Work Well Together
Sophos NDR is a native Sophos MDR integration. It readily connects, does not produce excessive noise or mismatched risk scores, and does not require time to establish a baseline like other solutions. The table below describes the functionality of Sophos NDR’s detection engines.
Sophos NDR is delivered as a virtual appliance. Once deployed, it authenticates with the Sophos Central management console and starts sending data. NDR status and detections are viewable in Sophos Central.
Highlights
- Add network detections to Sophos MDR to monitor suspicious network flows that endpoint software can’t access
- Enable threat investigations and hunts into internal host connections to network services and other network connections
- Detect malware within encrypted traffic where it often remains hidden
- Easily view NDR sensor status and detections in Sophos Central
Sophos NDR identifies:
Unprotected Devices
Identify legitimate devices that aren't protected and could be used as entry points, including IoT and OT assets.
Rogue Assets
Pinpoint unauthorized and potentially malicious devices communicating across a network.
Insider Threats
Gain visibility to network traffic flows and “normal” data movement from inside an organization.
Zero-Day Attacks
Detect server command-and-control (C2) attempts based on patterns found in session packets.
Five Real-Time Threat Detection Engines:

Data Detection Engine
Extensible query engine uses a deep learning prediction model to analyze encrypted traffic and identify patterns across unrelated network flows.
Domain Generation Algorithm
Identifies dynamic domain generation technology used by malware to avoid detection.
Deep Packet Inspection
Uses known indicators of compromise to identify threat actors and malicious tactics, techniques, and procedures across encrypted and unencrypted network traffic.
Session Risk Analytics
Powerful logic engine utilizes rules that send alerts based on session-based risk factors.
Encrypted Payload Analytics
Detects zero-day C2 servers and new variants of malware families based on patterns found in the session size, direction, and interarrival times.
Features:
Recognize Suspicious Behavior Beyond Your Endpoints
Sophos NDR uses independent threat detection engines to detect suspicious and abnormal network traffic behaviors like:
- Connections from an unknown device
- Data uploaded during a remote session
- Increased use of proprietary data files
- Network sessions generated by malware families

Detect Suspicious Behaviors That Extend Beyond Your Endpoints
Sophos Network Detection and Response (NDR) is part of Sophos MDR. It monitors network traffic to identify suspicious network flows, allowing Sophos MDR analysts to identify which devices may be compromised during a security incident.
With the ability to detect potentially malicious behaviors, Sophos NDR identifies:
- Unprotected Devices – Sophos NDR identifies legitimate devices that haven’t been protected and could be used as entry points for cyberattacks.
- Rogue Assets – In addition to monitoring traffic to unprotected devices, Sophos NDR identifies unauthorized devices that communicate across the network.
- IoT and OT Sensors – Internet of Things (IoT) and operational technology (OT) devices represent challenges to threat monitoring because many of these devices cannot support an endpoint protection agent. Sophos NDR monitors data from IoT and OT devices to detect attacker activity.
- Zero-Day Attacks – Sophos NDR has a patented process for detecting zero-day C2 servers used by attackers based on patterns found in session packet size, direction, and interarrival times.
- Insider Threats – Sophos NDR provides visibility into network traffic flows and data exfiltration that may initially appear “normal” from those on the inside.
Specifications:
Easily View NDR Status and Detections
Sophos Central is your single dashboard for real-time alerts, reporting, and management.

Sophos NDR System Requirements
Network Throughput | 1 Gbps | 5 Gbps | 10 Gbps |
---|---|---|---|
CPU | 4 | 8 | 16 |
RAM | 16 GB | 32 GB | 64 GB |
Storage | 160 GB | 320 GB | 640 GB |
Estimated User Range | Up to 2,000 | Up to 10,000 | Up to 30,000 |
Documentation:
Download the Sophos Network Detection and Response Data Sheet (PDF).
Pricing Notes:
- Pricing and product availability subject to change without notice.
List Price: $91.85
Add to Cart for Pricing
List Price: $183.70
Add to Cart for Pricing
List Price: $275.55
Add to Cart for Pricing
List Price: $76.61
Add to Cart for Pricing
List Price: $153.22
Add to Cart for Pricing
List Price: $229.83
Add to Cart for Pricing
List Price: $66.14
Add to Cart for Pricing
List Price: $132.28
Add to Cart for Pricing
List Price: $198.42
Add to Cart for Pricing
List Price: $59.06
Add to Cart for Pricing
List Price: $118.12
Add to Cart for Pricing
List Price: $177.18
Add to Cart for Pricing
List Price: $54.73
Add to Cart for Pricing
List Price: $109.46
Add to Cart for Pricing
List Price: $164.19
Add to Cart for Pricing
List Price: $52.70
Add to Cart for Pricing
List Price: $105.40
Add to Cart for Pricing
List Price: $158.10
Add to Cart for Pricing
List Price: $50.56
Add to Cart for Pricing
List Price: $101.12
Add to Cart for Pricing
List Price: $151.68
Add to Cart for Pricing
List Price: $46.43
Add to Cart for Pricing
List Price: $92.86
Add to Cart for Pricing
List Price: $139.29
Add to Cart for Pricing
List Price: $25.54
Add to Cart for Pricing
List Price: $51.08
Add to Cart for Pricing
List Price: $76.62
Add to Cart for Pricing
List Price: $20.43
Add to Cart for Pricing
List Price: $40.86
Add to Cart for Pricing
List Price: $61.29
Add to Cart for Pricing
List Price: $12.26
Add to Cart for Pricing
List Price: $24.52
Add to Cart for Pricing
List Price: $36.78
Add to Cart for Pricing
List Price: $7.36
Add to Cart for Pricing
List Price: $14.72
Add to Cart for Pricing
List Price: $22.08
Add to Cart for Pricing
List Price: $91.85
Add to Cart for Pricing
List Price: $183.70
Add to Cart for Pricing
List Price: $275.55
Add to Cart for Pricing
List Price: $76.61
Add to Cart for Pricing
List Price: $153.22
Add to Cart for Pricing
List Price: $229.83
Add to Cart for Pricing
List Price: $66.14
Add to Cart for Pricing
List Price: $132.28
Add to Cart for Pricing
List Price: $198.42
Add to Cart for Pricing
List Price: $59.06
Add to Cart for Pricing
List Price: $118.12
Add to Cart for Pricing
List Price: $177.18
Add to Cart for Pricing
List Price: $54.73
Add to Cart for Pricing
List Price: $109.46
Add to Cart for Pricing
List Price: $164.19
Add to Cart for Pricing
List Price: $52.70
Add to Cart for Pricing
List Price: $105.40
Add to Cart for Pricing
List Price: $158.10
Add to Cart for Pricing
List Price: $50.56
Add to Cart for Pricing
List Price: $101.12
Add to Cart for Pricing
List Price: $151.68
Add to Cart for Pricing
List Price: $46.43
Add to Cart for Pricing
List Price: $92.86
Add to Cart for Pricing
List Price: $139.29
Add to Cart for Pricing
List Price: $25.54
Add to Cart for Pricing
List Price: $51.08
Add to Cart for Pricing
List Price: $76.62
Add to Cart for Pricing
List Price: $20.43
Add to Cart for Pricing
List Price: $40.86
Add to Cart for Pricing
List Price: $61.29
Add to Cart for Pricing
List Price: $12.26
Add to Cart for Pricing
List Price: $24.52
Add to Cart for Pricing
List Price: $36.78
Add to Cart for Pricing
List Price: $7.36
Add to Cart for Pricing
List Price: $14.72
Add to Cart for Pricing
List Price: $22.08
Add to Cart for Pricing