ESET Protect — Antivirus & EDR Management
Basic Information
| Field | Value |
|---|---|
| Category | System Tools |
| Owner | Artem Ryzhkov |
| Deputy | Tomáš Pohorelý |
| Management Level | 5 |
| SLA | 24x7 |
| Login | ESET account (admin) |
| URL | https://protect.eset.com |
| Licenses | ~300 (Mac + Windows) |
Description
ESET Protect is the cloud console for centralized management of ESET security agents on all corporate devices. It provides antivirus and EDR (Endpoint Detection & Response) protection.
Coverage:
- macOS (ESET Endpoint Security for Mac)
- Windows (ESET Endpoint Security)
- Total: ~300 active licenses
Access and Login
- URL: protect.eset.com
- Login: ESET Business Account (admin) — credentials in Passbolt
Procedure — Check Protection Status
- Log in to ESET Protect console
- Dashboard shows:
- Total number of managed devices
- Devices with outdated virus database
- Active threats and detections
- Devices with disabled protection
Procedure — Respond to Threat Detection
- Detections → Threats — view active detections
- Click detection → view detail: file, hash, path, time
- Possible actions:
- Clean: ESET removes the threat
- Quarantine: move file to quarantine
- EDR → Isolate Computer: isolate device from network (critical threats)
- Investigate via EDR Timeline for suspicious behavior
- Document the incident in Jira
Procedure — Force Module Update
- Computers → select one or more devices
- Tasks → Update modules
- Monitor results in Tasks → Task Execution Log
Troubleshooting
| Problem | Solution |
|---|---|
| Device not showing in console | Verify ESET agent is installed and running; check network connectivity to ESET cloud |
| Outdated virus database | Force update: Computers → [device] → Tasks → Update modules |
| False positive detection | Detections → [detection] → Mark as Resolved; add to Exclusions List |
| ESET agent blocking app | Check HIPS log; add app to Exclusions (Policy → ESET Endpoint Security → Exclusions) |
Related Guides
- Hexnode MDM — ESET agent distribution to devices
- Onboarding — ESET installs automatically during enrollment
Contact
- Owner: Artem Ryzhkov — Slack
@artem/ artem.ryzhkov@etnetera.cz - Deputy: Tomáš Pohorelý — Slack
@tomas - Security incidents: Slack
#it-alerts