What We Do
How we do it
Our Threat Response Unit (TRU) publishes security advisories, blogs, reports, industry publications and webinars based on its original research and the insights driven through proactive threat hunts.
View Threat Intelligence Resources →
Jan 19, 2023
Increased Activity in Google Ads Distributing Information Stealers
THE THREAT On January 18th, 2023, eSentire Threat Intelligence identified multiple reports, both externally and internally, containing information on an ongoing increase in Google advertisements…
Read More
View all Advisories →
About Us
eSentire is The Authority in Managed Detection and Response Services, protecting the critical data and applications of 1500+ organizations in 80+ countries from known and unknown cyber threats. Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business disrupting events.
Read about how we got here
Leadership Work at eSentire
Dec 13, 2022
eSentire Named First Managed Detection and Response Partner by Global Insurance Provider Coalition
Waterloo, ON – December 13, 2022 – eSentire, Inc., the Authority in Managed Detection and Response (MDR), today announced it has been named the first global MDR partner by Coalition, the world’s first Active Insurance provider designed to prevent digital risk before it strikes. Like Coalition, eSentire is committed to putting their customers’ businesses ahead of disruption by improving their…
Read More
e3 Ecosystem
We provide sophisticated cybersecurity solutions for Managed Security Service Providers (MSSPs), Managed Service Providers (MSPs), and Value-Added Resellers (VARs). Find out why you should partner with eSentire, the Authority in Managed Detection and Response, today.
Learn more
Apply to become an e3 ecosystem partner with eSentire, the Authority in Managed Detection and Response.
Login to the Partner Portal for resources and content for current partners.
Blog — Jun 17, 2019

Are you wearing rose-colored DIY security glasses?

2 minutes read
Speak With A Security Expert Now

Remember when adequate security for your business was defined as storing information in a locked file cabinet or securing your perimeter, then granting access to properly authenticated users within that perimeter? In today’s complex digital world of regulatory compliance requirements, due diligence questionnaires, mobile workforce and advanced cyberattacks, those traditional security approaches are no longer sufficient. A locked file cabinet has become a cloud-hosted file server, users work from home with personal devices accessing corporate data, and the perimeter is no more.

Modern organizations are expected to provide users access to corporate data at anytime, from anywhere. While this level of access is convenient and allows users a great deal of flexibility, there is inherent risk introduced that requires security teams to take more of a “follow the data” approach and modify the organization’s security strategy accordingly. Traditional approaches to securing the modern enterprise are often ineffective as they do not adequately address the threats associated with common use cases such as borderless networks and monitoring access to cloud resources.

For many years IT and security teams have leveraged security information and event management (SIEM) solutions to solve the need for a single pane of glass, log centralization and retention, streamlined compliance reporting, threat detection and other. While many of the industry’s leading legacy SIEM providers solve these issues, businesses are finding it challenging to locate and retain the resources necessary to effectively manage a SIEM solution. For the solution to be effective, it must be continuously monitored and tuned, and alerts must be triaged and responded to as quickly as possible. In addition to the overhead required, many internal teams suffer from alert fatigue (caused by too many false positives), which can lead to over tuning security tools or ignoring potentially critical alerts. This general lack of resources and expertise typically leads to a SIEM being underutilized and ineffective, making the DIY approach to managing a SIEM or even a lightweight co-managed SIEM solution less attractive.

By partnering with an experienced security partner capable of ingesting, correlating, and taking action in response to network, endpoint, and log source signals, companies can reduce the complexity of security and allow internal teams to focus on higher value initiatives. eSentire’s team of experts leverage Sumo Logic’s next-gen, cloud-based SIEM platform to ingest customer signals, apply advanced threat detection techniques, and protect businesses from constantly evolving cyberattacks. This fully co-managed approach helps reduce false positives and eliminate alert fatigue for internal network and security teams.

As organizations embrace digital transformation, they look to Managed Detection and Response (MDR) to protect the wide distribution of critical information across the cloud, network, endpoints and devices. Combining the power of Sumo Logic with the unparalleled expertise of eSentire’s SOC analysts enables organizations to not only follow the data, but also detect and respond to threats from attackers lurking in the digital shadows.

View Most Recent Blogs
Tia Hopkins
Tia Hopkins Field CTO and Chief Cyber Risk Strategist

As Field CTO & Chief Cyber Risk Strategist, Tia Hopkins is focused on engaging with the cybersecurity community, providing thought leadership, supporting strategic customer and partner engagements, and working closely with the sales, marketing, product, engineering, and customer success teams to drive security outcome-focused initiatives. She has spent the past 20+ years of her career in various IT and IT Security roles and has over a decade of experience in the managed services space. Outside of her role at eSentire, Tia is also an adjunct professor of Cybersecurity at Yeshiva University and is currently pursuing her PhD in Cybersecurity Technology Innovation Management.