Local behavioral analysis engine optimization

April 16
Enhancement Community Idea
Datto EDR, Kaseya 365 Endpoint

Datto EDR is optimizing the local behavioral analysis engine so more detections can be processed directly on the endpoint, with less reliance on cloud processing. This helps rules trigger in near real-time and improves responsiveness during active threats.

With this update, local processing performance increases from roughly 700 to 19,000 events per second, allowing more detection rules and automated responses to run on-device. New customer-created detection rules will default to using local detection, while Datto’s Detection Engineering team will decide which internal rules are enabled locally.

For your team, this means faster detection and action on busy endpoints, quicker containment for script and behavior-based attacks and less delay caused by cloud round-trips — especially when every second counts.

Learn more about local behavioral analysis engine optimization for Datto EDR here.

One complete platform for IT & security management

Kaseya 365 is the all-in-one solution for managing, securing, and automating IT. With seamless integrations across critical IT functions, it simplifies operations, strengthens security, and boosts efficiency.

Five cybersecurity priorities every school needs to get right

K-12 and higher education institutions face constant cyberattacks due to limited IT resources. Here are five cybersecurity priorities they should act on now to reduce risk.

Read blog post

Standardize, document, automate: Insights from Kaseya Connect Europe

Kaseya Connect Europe 2026 brought together industry leaders to share hard-won lessons. Here are the highlights and insights from key sessions.

Read blog post

Five ways SIEM supports NIS2 compliance

Security information and event management (SIEM) has come a long way since its inception over 20 years ago. Adoption was

Read blog post