Endpoint Detection and Response (EDR)

A service overview and catalog of Endpoint Detection and Response (EDR) provided by the UC Berkeley IT Service Hub.

Description

Endpoint Detection and Response (EDR) software is provided for computers and servers owned by the university. This software finds and identifies threats, helping to protect against complex and ongoing attacks.

EDR is a component of the Berkeley Security Software, which includes BigFix to identify assets and manage vulnerabilities alongside Trellix EDR.

Privacy Statement
Berkeley prioritizes privacy and data protection for individuals with EDR software installed on university-owned computers and servers. Campus EDR is not intended for installation on personally owned devices. See our detailed EDR Privacy and Process Documentation (requires CalNet login). 

Benefits & Features

Getting Started

Workstations (university-owned computers, laptops)

If you have a campus-managed computer (aka Berkeley Desktop):

If you do not have the Berkeley Desktop:

Install the Berkeley Security Software on your university-owned system(s)

Service Details

Eligibility

This service is available to Faculty, Staff, Students, Researchers, and Affiliates who are using University-owned endpoint devices, including servers, workstations, and laptops.

Contact

Technical Support: For troubleshooting or reporting a service interruption, please submit a support ticket online,  or email itcshelp@berkeley.edu, or contact the Service Desk at 510-664-9000.

Availability

Available 24/7. Support is provided Monday–Friday, 8:00 AM – 5:00 PM PT, excluding University holidays and curtailment periods.

Cost

There are no direct costs associated with this service.

Data Classification

This service is rated for P4, A3, and R3 data.

Compliance: Users are responsible for ensuring data handled within this service complies with the Data and IT Resource Classification Standards.