Connects to any signal across any vendor stack and powers adaptive AI Operatives that expose, detect, and neutralize cyberattacks.
Atlas Operations CenterSee what our SOC sees, review investigations, and see how we are protecting your business.
Technology IntegrationsAtlas connects to any signal across your current security tools. Whatever you're running, we're running with you.
Extend your team with immediate expertise, hands-on remediation, and the human accountability layer that boards, regulators, and cyber insurers require.
Threat Response UnitProactive threat intelligence, original threat research and a world-class team of seasoned industry veterans.
Response and RemediationPairs machine-speed containment with human judgment, delivering full threat response that's policy-bounded, reversible, and explainable.
MDR that moves first, multi-signal attack surface coverage, and 24/7 Elite threat hunters working as one continuous security program across any vendor stack.
Get unlimited Incident Response with threat suppression guarantee- anytime, anywhere.
Atlas Preempt deploys AI Operatives to continuously validate attack paths exposing attacker targets of opportunity before they take advantage.
Protect insurance operations from cyber attacks.
ConstructionSecure project data and jobsite operations.
FinanceDefend financial services from cyber disruption.
LegalSafeguard client data and legal operations.
ManufacturingStop threats before they disrupt production.
Private EquityProtect portfolio companies from cyber risk.
HealthcareDefend patient data and clinical operations.
RetailProtect customer data and retail operations.
Food SupplySecure the food supply chain from cyber threats.
Government and EducationProtect public sector and education systems.
Automotive DealershipsSecure dealership operations and customer data.
Stop ransomware before it spreads.
Identity ResponseStop identity-based cyberattacks.
Zero Day AttacksDetect and respond to zero-day exploits.
Cybersecurity ComplianceMeet regulatory compliance mandates.
Third-Party RiskDefend third-party and supply chain risk.
Cloud MisconfigurationEnd misconfigurations and policy violations.
Cyber RiskAdopt a risk-based security approach.
Mid-Market SecurityMid-market security essentials to prioritize.
Sensitive Data SecurityProtect your most sensitive data.
Cyber InsuranceMeet insurability requirements with MDR.
Cyber Threat IntelligenceOperationalize cyber threat intelligence.
Security LeadershipBuild a proven security program.
On October 4th, 2026, Citrix disclosed the zero-day vulnerability CVE-2026-88779, impacting NetScaler ADC and NetScaler Gateway deployments. CVE-2026-88779 (CVSS: 8.7) is a memory overflow…
On October 1st, 2026, Fortinet disclosed a critical zero-day vulnerability impacting multiple versions of FortiMail. Fortinet has confirmed active exploitation prior to patch disclosure.The…
eSentire is a leader in Controlled Autonomy SecOps, protecting thousands of organizations across 35+ industries around the world. Founded in 2001, the company’s Controlled Autonomy SecOps operating model pairs agentic AI operatives with engineered human-judgment controls, delivering expert-depth security outcomes at machine speed without ceding accountability to opaque automation.
About Us Leadership Careers Event Calendar → Newsroom → Aston Villa Football Club →
We provide sophisticated cybersecurity solutions for Managed Security Service Providers (MSSPs), Managed Service Providers (MSPs), and Value-Added Resellers (VARs). Find out why you should partner with eSentire, the Authority in Managed Detection and Response, today.
Search our site
Multi-Signal MDR with 300+ technology integrations to support your existing investments.
24/7 SOC-as-a-Service with unlimited threat hunting and incident handling.
We offer three flexible MDR pricing packages that can be customized to your unique needs.
The latest security advisories, blogs, reports, industry publications and webinars published by TRU.
Compare eSentire to other Managed Detection and Response vendors to see how we stack up against the competition.
See why thousands of organizations globally have chosen eSentire for our MDR Solution.
Atlas MCP is now generally available. It gives AI assistants direct access to the Atlas Platform, so security teams can work findings, vulnerabilities, assets and tickets in plain language.
Atlas MCP is now generally available. It gives AI assistants direct access to the Atlas Platform, so security teams can work findings, vulnerabilities, assets and tickets in plain language.
Starting today, Atlas MCP is available to eSentire Atlas customers. It connects the AI assistants your team already uses to live Atlas data through the Model Context Protocol (MCP), with the access controls a security team expects.
Attackers are using AI to scout targets, build exploits, and run campaigns with fewer hands-on keyboard effort. They don't stop to copy and paste.
Security teams are moving more of their own work into AI assistants and agents. However, an assistant is only as useful as what it can reach. Ask a general-purpose model which of your assets carry critical vulnerabilities, and it has nothing to work with. So, analysts copy data out of one console, paste it into another tool, and lose minutes at each step.
There's a second problem. Every new connection into your security data is a new target. Tokens sitting in config files, local proxies on laptops, and shared credentials all give attackers something to exploit.
Atlas MCP is a hosted MCP server that gives AI assistants standardized, permission-aware access to eSentire Atlas. Sign in, and your assistant can answer questions about your environment using live Atlas data.
These tools are standardized across six areas of the platform:
The data is live and matches what you see in the Atlas console. A typical findings query returns in under a second.
Atlas MCP goes beyond lookups. With write permission enabled, your assistant can update a finding, open a ticket with eSentire, add a comment or update a ticket from the same conversation where the analysis happened. Analysts act on what they find without retyping it into another screen.
Everyone detects. eSentire closes the loop. Now you can do it from your AI assistant.
Look at Atlas MCP the way an attacker would and there isn't much to exploit:
This is Controlled Autonomy SecOps applied to your AI tools. The assistant does the legwork. You set the boundaries.
Atlas MCP is enabled by default for every Atlas user, and there's nothing to install. It's listed in the Claude connector directory. Select Connect, sign in with your Atlas credentials and the tools appear within seconds. A Claude Owner or Admin can also add Atlas MCP once for the entire organization.
Atlas MCP works with:
* ChatGPT support is in progress.

Atlas MCP started with a design partner, a Claude-first security team that wanted to triage findings and work tickets from Claude Code without opening the Atlas portal. Early use falls into three patterns.
Analysts start with a question like "Show me all critical findings from the last 7 days." They pick the finding that matters, pull its details and signal data, and have the assistant walk through what happened. With write access, they update the finding or open an eSentire ticket before leaving the conversation. Detection, investigation, and follow-through happen in the same place.

"List assets with critical vulnerabilities" gives the assistant the exposure picture. A follow-up on missing patches turns it into a remediation list. Two questions replace a manual cross-reference between vulnerability and patch data, so the fixes that matter most reach the right team faster.
Teams ask questions like "How many findings were resolved this month?" and roll the answers into weekly and monthly readouts on findings, vulnerabilities, and ticket status. Analysts spend less time assembling reports, and every number traces back to live Atlas data.

Partner organizations with the Super Admin role get organization-tree tools to navigate child accounts and scope a query to a single client. That makes it simple to build a client-specific investigation summary without touching anyone else's data.
Engineering teams can work the same data from VS Code, Cursor, Codex or Claude Code, so security context shows up where code gets written.
Atlas MCP is the first step in bringing Atlas to wherever security work happens. ChatGPT support is in progress, and we'll keep adding tools as the platform grows.
The principle behind all of it stays the same. AI should move at attacker speed, and your team should decide what it's allowed to touch.
If you're an eSentire Atlas customer, Atlas MCP is already on. Connect from the Claude connector directory, or follow the Atlas MCP setup guide for VS Code, GitHub Copilot CLI, Cursor, Codex, and other clients. Your Technical Account Manager can confirm access, help with Microsoft 365 Copilot and let you know when ChatGPT support lands.
Not an eSentire customer yet? Book a demo to try Atlas MCP live.
Atlas MCP is a hosted Model Context Protocol server that connects AI assistants to eSentire Atlas. Your team can query findings, signals, vulnerabilities, patches, assets, and tickets in plain language, using live Atlas data.
Claude (web, desktop, and Claude Code), VS Code with GitHub Copilot, GitHub Copilot CLI, Cursor, Codex, and any remote MCP client that supports Streamable HTTP with custom headers. Microsoft 365 Copilot is supported through an admin-led setup. ChatGPT support is in progress.
No. eSentire hosts the server. You connect your assistant and sign in.
Yes. Atlas MCP is included with Atlas and enabled by default for every Atlas user.
OAuth is the recommended option. You sign in with your Atlas credentials through Okta, access is bound to your identity and no secret is stored on the client. For clients that don't support OAuth yet, you can generate an Atlas API token as read-only or read-write. Either way, enforcement is identical.
Only when your credential allows it. Three of the 15 tools can write, covering updates to findings and tickets. Every tool checks for read or write permission, so a credential without write permission can't create or update anything.
No. Atlas MCP receives only the tool calls your assistant makes and the parameters it sends, such as a date range or a ticket comment. Your conversation with the assistant never reaches eSentire.
Atlas administrators can turn off Atlas MCP for any user under Settings → User Management → Application Access. In Claude, an Owner or Admin can add Atlas MCP as a custom connector so every member of the organization sees it. If your organization enforces an MCP registry allowlist, Atlas MCP needs to be approved under that policy.
Yes. Partner organizations with the Super Admin role get organization-tree tools to navigate child accounts and can scope a query to a single child account.
Yes. Your assistant can connect to Atlas MCP alongside the other MCP servers your team already uses.
Fully quit and reopen your assistant. In VS Code, make sure Copilot Chat is in Agent mode. If you can sign in but access is denied, ask your Atlas administrator to confirm MCP access is turned on for your user. The Atlas MCP setup guide covers other common fixes, and your Technical Account Manager can help.
To learn how eSentire can help you find exposures and defend your organization, connect with an eSentire Security Specialist now.
GET STARTED
Justin Bailey is Senior Director of Product Marketing at eSentire, where he leads go-to-market strategy for eSentire's portfolio spanning MDR, offensive security, and threat intelligence. With deep experience across multiple security disciplines, and intelligence-driven security programs, Justin specializes in translating complex security capabilities into impactful and easy to understand narratives. He works at the intersection of product, marketing, and sales to drive growth through go-to-market activities.