Sophos XDR Cybersecurity Campus (virus scanner)


1. basic information

Field of application

Sophos XDR (Extended Detection and Response) is used to protect end devices used for business purposes within the university. The software enables centralized management and offers comprehensive security functions against malware, ransomware and other threats.

Who is it suitable for?

Sophos XDR is mandatory for all work-related Windows devices. Its use is strongly recommended for work-related devices running other operating systems. The IT Service Center is responsible for deploying and centrally managing the Sophos XDR instance.

Responsibility

The IT Service Center provides and manages the central Sophos Central instance. The system administrator is responsible for installing the Sophos client on the respective devices.

To ensure alarm tracking, it is absolutely necessary that the end device be fully registered in the central asset database.

2. brief description

Description

Sophos XDR provides a cloud-based security solution that enables endpoints to be centrally monitored and protected. Through integration with Sophos Central, administrators can manage security policies consistently and effectively detect and remediate threats.

3. main functions

Functions

  • Threat Detection: Identifies and blocks malware, ransomware, and other security risks in real time.
  • Manual Scans: Allows you to perform targeted security checks on individual devices.
  • Event Notification: The IT Service Center notifies system administrators of security alerts and relevant security events so that appropriate measures can be taken as needed.

4th deployment scenario

Practical examples

  • Departmental infrastructure: A department integrates all its workstations into a Sophos Central instance to ensure uniform security policies and perform centralized updates.
  • Central institution: The university library uses Sophos XDR to protect public computer workstations from potential threats and to increase IT security for users.

5. technical requirements

Prerequisites

The central Sophos Central instance is provided and operated by the IT Service Center. The person responsible for the system installs the Sophos client on the respective endpoints. After installation, the device is integrated into the central instance.

Important: The provided clients may only be installed on work devices. Alerts are always reported to the central Sophos instance. Uninstallation is only possible with administrative privileges.

6. use and access

Account and login

The central Sophos Central instance is provided and managed by the IT Service Center. No separate request or individual account is required to use the Sophos client.

The client is available to all users of work-related devices. The person responsible for the system installs the Sophos client on the respective device.

To ensure that security alerts can be assigned to and forwarded to the appropriate personnel, the device must be registered in the central Assets database at https://assets.uni-kassel.de.

7. support and contact

Contact and support times

Name, ForenameContact
IT-Servicedesk
First point of contact for all support requests

Opening hours IT service desk

Mon & Thu 8 a.m. - 4 p.m., Tue & Wed 8 a.m. - 3 p.m., Fri 8 a.m. - 1 p.m.

ITS chatbot

Alternatively, you can use our ITS chatbot to get support with questions or problems relating to our IT services.

Access is only possible from the university network or via a VPN connection.

ITS chatbot: Forward

8. instructions and further links

Training

No training courses are currently offered.

9. special notes (data protection, terms of use)

Data protection and security

Sophos XDR is used in accordance with the applicable data protection regulations. The central administration enables data protection-compliant handling of security events and minimizes risks from decentralized installations.

Legal notices and license information

The framework agreement for Sophos XDR applies to Hessian universities and is valid until 01.11.2028. Licensing is carried out exclusively via central instances; individual licensing to individual users is not provided for.

Service directive, regulatory agreement and decision support for Sophos Central (files for download)


Status: March 2025