Endpoint technologies have evolved a great deal since the first anti-virus software came to market. Endpoint security has evolved as threat actors and malware have increased their levels of sophistication over the years. Anti-virus then led to endpoint protection platforms and now into endpoint detection and response. The technology has moved from basic signature-based detection to the ability to detect based on behavior and baselines, as well as the automatically protect them. The modern endpoint security tools also provide incident responders with a wealth of tools to analyze the data and control and isolate systems to mitigate the threat. However, as detailed as these tools are in providing visibility on the endpoint, they often do not tell the full story when it comes to today’s sophisticated attacks and require correlation with additional data sources to tell the full story. In this short session we will walk through a brief history of endpoint security tools, their integration with SIEM and the value that XDR can bring to organizations to better security their endpoints and infrastructure.