Also known as: XDR
A security approach that combines detection and response across several telemetry domains such as endpoint, identity, cloud, email, and network.
Extended detection and response brings signals from several security domains into a shared detection and investigation experience. It often connects endpoint, identity, cloud, email, and network telemetry with response actions.
XDR and SIEM overlap, but they are not identical. XDR is usually centered on integrated security controls and their telemetry, while SIEM is designed to collect and analyze a wider range of security and business-system data.
Ask which sources and response controls are truly integrated rather than assuming the word extended means every system is covered.