The best way to detect ransomware is through continuous network monitoring for any suspicious activity. Having file logs reviewed automatically with alerts set up for anything that looks out of the ordinary is a start.
Using applications for Security Incident and Event Monitoring (SIEM) and other threat management technologies can help IT administrators detect ransomware attacks immediately so they can be shut down before any damage is done.