<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Kaspersky Endpoint Security Cloud Pro?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Cloud management console</strong> – Kaspersky hosts the console, so no administration server is needed.<br /> <strong>Endpoint Detection and Response</strong> – Root cause analysis, host isolation and IoC scanning.<br /> <strong>Vulnerability and patch management</strong> – Finds and closes gaps in operating systems and applications.<br /> <strong>Encryption management</strong> – Controls BitLocker on Windows and FileVault on macOS.<br /> <strong>Microsoft 365 protection</strong> – Scans Exchange Online, OneDrive, SharePoint Online and Teams.<br /> <strong>Important</strong> – No Linux agent exists in the Endpoint Security Cloud line.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Kaspersky Endpoint Security Cloud Pro?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Endpoint Security Cloud Pro is the top edition of the Endpoint Security Cloud line and is managed from a browser console that Kaspersky operates, so nothing has to be installed in your own data centre. Kaspersky has since moved this capability level into the Kaspersky Next line, where Kaspersky Next EDR Optimum is the closest current counterpart.<br /><br /> <strong>No own server</strong> – Kaspersky runs the console, you need a browser.<br /> <strong>Faster incident triage</strong> – Root cause analysis shows the full process chain.<br /> <strong>Fleet-wide IoC sweep</strong> – Check every managed device against one published indicator.<br /> <strong>One-click isolation</strong> – Cuts a suspect device off the network remotely.<br /> <strong>Patching without scripting</strong> – Replaces manual update rounds on every single workstation.<br /> <strong>Built-in admin training</strong> – The CITO course runs from the same console.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains where the protection built into Windows stops and what a managed security product adds.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Kaspersky Endpoint Security Cloud Pro suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The product is built for companies that have one IT generalist rather than a dedicated security team. Larger organisations usually outgrow it at the point where they need log retention, SIEM export or Linux server coverage, which the Cloud line does not provide.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rare</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rare</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Occasional</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Guided detection and response without a security team</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Limited</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Endpoint Security Cloud Pro meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The revised Information Security Act has obliged operators of critical infrastructure in Switzerland to report significant cyberattacks to the Federal Office for Cybersecurity (BACS) within 24 hours of discovery since 1 April 2025, with a detailed follow-up report due within 14 days. Most small companies are not operators of critical infrastructure and are therefore not subject to this obligation, but many of them supply organisations that are. Kaspersky Endpoint Security Cloud Pro supports the reporting workflow in three concrete ways: the console timestamps the detection, root cause analysis reconstructs which process started the attack and which files and devices it touched, and the IoC scan shows whether the same indicator appears elsewhere in the fleet, which is exactly the scope information the 14-day report asks for. It does not decide whether your organisation is in scope, does not classify an incident as reportable, does not file anything with BACS, and keeps no long-term log archive for later forensic work, so the reporting process itself has to be documented separately. This is not legal advice, and whether your organisation falls under the reporting obligation should be clarified with your own legal counsel.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Endpoint Security Cloud Pro meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No security product makes a company compliant with the NIS 2 Directive, because the directive addresses management responsibility, risk processes and governance, not software features. NIS 2 requires measures in defined categories, among them incident handling, business continuity and backup, supply chain security, vulnerability handling and disclosure, cryptography and encryption, cyber hygiene and security training, and access control including multi-factor authentication. Kaspersky Endpoint Security Cloud Pro contributes directly to four of these: incident handling through EDR and automated response, vulnerability handling through vulnerability assessment and patch management, cryptography through BitLocker and FileVault management, and security training through the built-in course for IT staff. It contributes nothing to business continuity and backup, nothing to supply chain security, and nothing to multi-factor authentication, and its risk reporting is designed for an administrator rather than for a board-level review. Those categories have to be covered by separate products and by written processes.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="data-loss-backups-avoid-outages"><strong>Data loss is expensive: How backups help you avoid outages</strong><br />Covers the backup and recovery side that endpoint protection does not address on its own.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What should you know about official assessments of Kaspersky?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">In Switzerland there is no ban and no formal warning. The Federal Office for Cybersecurity has stated that it has no internal directive against Kaspersky products and that it has received no report of misuse, while also noting that federal offices no longer use the software. In Germany, the Federal Office for Information Security (BSI) has warned against Kaspersky antivirus software since 15 March 2022 under the warning provision of the BSI Act, and confirmed in 2026 that the warning stands and that its reasoning has not changed. In the United States, the Department of Commerce issued a final determination in June 2024 that prohibits Kaspersky from selling to US persons and, since 29 September 2024, from delivering signature and codebase updates there; that prohibition is still in force and Kaspersky has wound down its US operations. Kaspersky rejects the assessments, points to its data processing in Zurich and its transparency centres, has publicly demanded that the BSI withdraw the warning, and is pursuing damages. Independent testing has continued regardless: Kaspersky business products were still included and certified in the AV-Comparatives Business Main-Test Series in 2026. In practice this matters most if you bid for public sector contracts, supply German or EU public bodies, have US-linked group companies, or answer supply chain questionnaires that ask about vendor country of origin; for a purely domestic Swiss company with no such ties it is a risk judgement rather than a legal obstacle.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="norton-vs-kaspersky-2025"><strong>Norton vs. Kaspersky - Which antivirus program offers the best protection in 2025?</strong><br />Sets Kaspersky detection results against a direct competitor if you are weighing up a vendor change.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Endpoint Security Cloud Pro help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, for the endpoint section of a questionnaire, and not much beyond it. It answers the items on malware protection on workstations and servers, centrally enforced policy, device and application control, disk encryption on notebooks, patch status of operating systems and third-party applications, detection and response capability, and security awareness of the IT staff, and the console produces status reports you can attach as evidence. It does not answer the items on backup and restore testing, multi-factor authentication, identity and access management, network segmentation, log retention periods, SIEM monitoring, penetration testing or supplier risk management, and it will not answer anything about Linux systems because the Cloud line has no Linux agent. If the gaps that block you are detection depth and log retention, moving up within the same family to Kaspersky Next XDR Optimum is usually cheaper and faster than adding a second vendor, because the policies, agents and reporting stay in one place. Backup and multi-factor authentication, by contrast, always need separate products, whichever endpoint vendor you choose.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What is the difference between Kaspersky Endpoint Security Cloud Plus and Cloud Pro?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The single decisive difference is the response capability: Cloud Plus lets you see an attack, Cloud Pro lets you act on it across the fleet. Cloud Plus already includes web and device control, patch management, encryption management, Microsoft 365 protection and root cause analysis. Cloud Pro adds the EDR component with IoC scanning, one-click host isolation and automated response, plus application control, Adaptive Anomaly Control, remote data wipe and the built-in training course for IT staff. The entry-level Cloud edition below both sits at protection only and has neither encryption nor patch management. If nobody in the company will ever act on an alert, the extra Pro capabilities stay unused.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Capability</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Cloud Plus</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Cloud Pro</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Web, device and encryption control</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Vulnerability and patch management</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Microsoft 365 protection and Data Discovery</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Root cause analysis</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">EDR with IoC scan and host isolation</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Application control</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Adaptive Anomaly Control</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Remote data wipe</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Cybersecurity training for IT staff</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The clearest regional restriction is the United States: since the Commerce Department determination the product cannot be sold to or updated for US persons, so any group with a US entity has to plan a different solution there. The platform gap is Linux, which the Endpoint Security Cloud line does not cover at all, while the newer Kaspersky Next tiers do; Windows, macOS, Android, iOS and Windows Server file servers are covered. The Microsoft 365 protection is included but runs as its own workspace, so day-to-day work means two browser tabs rather than one console. Kaspersky assigns your data centre region from the country you enter when the workspace is first created, which is worth getting right the first time. The follow-up purchases this product most often triggers are backup software and a multi-factor authentication service, neither of which is part of any Endpoint Security Cloud edition.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="antivirus-programs-windows-2025"><strong>Test: Best antivirus programs for Windows 2025</strong><br />Compares current detection and performance results across the main Windows security vendors.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Kaspersky Endpoint Security Cloud Pro</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Is Cloud Pro a base product, an add-on or a renewal?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">It is a base product and the highest of the three Endpoint Security Cloud editions. It does not require another Kaspersky product underneath it, and the EDR functions are part of the edition rather than a separately installed add-on component.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Can it protect Windows servers as well as workstations?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes. File servers running Windows Server are protected by the same agent and appear in the same console as workstations and notebooks. Linux servers are not covered, and there is no protection component for an on-premises Exchange server.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does it replace Microsoft Defender on the endpoints?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, the Kaspersky agent takes over as the active protection layer on Windows. The practical reason to switch is central policy enforcement and response across all devices, which Defender only provides once you move to the paid Microsoft management tiers.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-endpoint,sec-edr,compliance-ch-isg" data-audience="b2b" data-count="3"> </div>