Guidance Software EnCase Endpoint Security: EDR Product Overview and Insight

See the complete list of top 10 Endpoint Detection and Response solutions. Company description: Guidance software was founded in 1997 and went public in 2007. It trades on the NASDAQ under GUID. Product description: EnCase Endpoint Security provides kernel-level visibility at the endpoint for detection and response. It enables early detection of signs of intrusion, […]

Written By
thumbnail
Drew Robb
Drew Robb
Jun 22, 2017
eSecurity Planet content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

See the complete list of top 10 Endpoint Detection and Response solutions.

Company description: Guidance software was founded in 1997 and went public in 2007. It trades on the NASDAQ under GUID.

Product description: EnCase Endpoint Security provides kernel-level visibility at the endpoint for detection and response. It enables early detection of signs of intrusion, anomalous activity, and insider threats that evade perimeter-based technologies. It has automated collection and analysis of time sensitive endpoint data. This allows security teams to validate, prioritize, and investigate events. The latest version adds conditional endpoint analysis and threat scores derived from embedded threat intelligence. It integrates with adjacent tools like SIEM, IPS, IDS, and perimeter security products.

Markets and use cases: Primary customers are large corporate clients and government agencies. Guidance counts 78 of the Fortune 100 and more than half of the Fortune 500 as customers. It serves industries with compliance and regulatory requirements, such as financial services, healthcare and government. Any large organization with a high volume of alerts from perimeter security technologies is also well suited for EnCase endpoint security. It also has a client base with devices like ATMs, POS terminals and manufacturing devices.

Agents: Deploys a single agent that runs its EDR tool, as well as its EnCase Endpoint Investigator and Enforce Risk Manager products.

Applicable metrics: It can scale up to hundreds of thousands of nodes.

Security qualifications: DIACAP, Common Criteria EAL-2 and FIPS 140-2

Intelligence: EnCase Endpoint Security uses automation and built-in threat intelligence to help incident responders streamline cumbersome incident response processes. Automation includes tools for alert response, alert validation and triage, and automated incident response.

Delivery: Software

Pricing: Commercial pricing starts at $57,995 for up to 2,000 nodes on a perpetual license.

thumbnail
Drew Robb

Originally from Scotland, Drew Robb has been a writer for more than 25 years. He lives in Florida and specializes in IT, engineering, and business. As well as eWeek and TechRepublic, he writes for a wide range of magazines including Gas Turbine World, SDxCentral, and HR Magazine. He is the author of Server Disk Management in a Windows Environment (Auerbach Publications).

Recommended for you...

Top 7 Threat Intelligence Platforms & Software
Ken Underhill
Jan 29, 2026
Top 7 Exposure Management Platforms
Ken Underhill
Jan 22, 2026
6 Best SIEM Tools & Software
Ken Underhill
Nov 25, 2025
From Reactive to Ready: A Practical Security Maturity Playbook for Lean Teams
Ken Underhill
Nov 20, 2025
eSecurity Planet Logo

eSecurity Planet is a leading resource for IT professionals at large enterprises who are actively researching cybersecurity vendors and latest trends. eSecurity Planet focuses on providing instruction for how to approach common security challenges, as well as informational deep-dives about advanced cybersecurity topics.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.