What We Do
How we do it
Our Threat Response Unit (TRU) publishes security advisories, blogs, reports, industry publications and webinars based on its original research and the insights driven through proactive threat hunts.
View Threat Intelligence Resources →
Aug 17, 2022
Increase in Observations of Socgholish Malware
THE THREAT Starting in early August 2022 and continuing through the month, eSentire identified a significant increase in Socgholish (aka. FakeUpdates) malware incidents. Socgholish is a loader type…
Read More
View all Advisories →
About Us
eSentire is The Authority in Managed Detection and Response Services, protecting the critical data and applications of 1500+ organizations in 80+ countries from known and unknown cyber threats. Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business disrupting events.
Read about how we got here
Leadership Work at eSentire
Sep 20, 2022
eSentire Recognized as Top Global MDR Provider by MSSP Alert, CrowdStrike and G2
Waterloo, ON - September 21, 2022 – eSentire, Inc., the Authority in Managed Detection and Response (MDR), celebrated multiple industry recognitions as the leading global MDR provider, over the last week: Named #9, and the top pure play MDR provider on MSSP Alert’s Top 250 MSSPs global rankingRecognized as the CrowdStrike 2022 Global MSSP Partner of the Year Earned G2’s industry-renowned status…
Read More
e3 Ecosystem
We provide sophisticated cybersecurity solutions for Managed Security Service Providers (MSSPs), Managed Service Providers (MSPs), and Value-Added Resellers (VARs). Find out why you should partner with eSentire, the Authority in Managed Detection and Response, today.
Learn more
Apply to become an e3 ecosystem partner with eSentire, the Authority in Managed Detection and Response.
Login to the Partner Portal for resources and content for current partners.
News releases — Apr 05, 2022

Cybersecurity Leader eSentire Cuts Incident Response Costs in Half with its New Automated Forensic Triage Capabilities

eSentire is showcasing how it can complete IR engagements in days, versus weeks or months, at the NetDiligence Cyber Risk Summit in Toronto, April 5-6, 2022.

3 minutes read

April 5, 2022—Toronto, Ontario - eSentire, the Authority in Managed Detection and Response, announced today that it has integrated new Automated Forensic Triage capabilities, into its Incident Response Services. eSentire is showcasing this new functionality at the NetDiligence Cyber Risk Summit in Toronto April 5-6, 2022. Combining its proprietary endpoint Atlas XDR Investigator agent and its AI-powered Atlas XDR platform for data analysis, eSentire is now able to reduce the time it takes to complete a Digital Forensic and Incident Response engagement to days, versus the standard weeks or months. In turn, customers’ Incident Response costs and insurance payments will be cut in half.

eSentire revolutionized the Incident Response market last year when it launched its IR Retainer service offering with the world’s fastest threat suppression commitment – a 4-hour Service Level Agreement (SLA), anywhere in the world. Now, eSentire is disrupting the IR market again with its Automated Forensic Triage capabilities which will enable eSentire’s Cyber Security Investigations (CSI) team to complete an end-to-end engagement in a matter of days.

The eSentire CSI team leverages the eSentire Atlas XDR Investigator, a best-in-class digital forensics endpoint technology that is remotely deployed to devices across an organization’s network. Once the agents are installed, should an incident occur, the IR engagement will begin with key forensic artifacts being collected from the environment and sent to eSentire’s Atlas XDR Platform. Powered by artificial intelligence, the Atlas XDR Platform processes and analyzes the condition of forensic artifacts, facilitates data enrichment with custom threat feeds, and enables relevance scoring with multiple Machine Learning layers. The platform’s extensive machine learning algorithms facilitate content recognition across attack types including ransomware, data theft, malware and more, providing eSentire’s elite Incident Responders with the visibility needed to immediately and remotely begin identifying the security threat and suppressing it, no matter where it is located, in four hours or less—a time to value that is unmatched industry-wide.

Once the incident is suppressed, eSentire’s CSI team begins working to answer three questions:

eSentire’s Digital Forensics and Incident Response services provide full support from response to recovery including the filing of cyber insurance claims, compliance & litigation evidence preservation, transitioning findings to law enforcement, supporting legal proceedings, expert witness testimony and strengthening security gaps through the implementation of lessons learned.

“When an incident strikes, having immediate access to expert on-demand cyber forensics and incident response services brings rapid control and stability to your organization,” said Larry Gagnon, SVP Incident Response, eSentire. “We are delivering the best time to value in the market in terms of Incident Response. Not only are we cutting cyber insurance costs in half by limiting damages and engagement times, but most importantly we are returning organizations to full capacity with unprecedented speed, in a matter of days.”

Protecting the reputations and critical processes of more than 1200 organizations in 75 countries, eSentire puts businesses ahead of threat disruption by delivering the world’s most complete response capability. In addition to providing Digital Forensics & Incident Response Services, eSentire’s security portfolio includes 24/7 Multi-Signal Managed Detection and Response Services and strategic assessment and planning Managed Risk Services.

eSentire is showcasing its expanded Automated Forensic Triage capabilities at the NetDiligence Conference this week at the Ritz Carlton in Toronto, Canada. Connect with Team eSentire on-site or online to see how the company is revolutionizing cyber incident response for customer organizations and insurance partners by delivering the best time to value in Digital Forensics and Incident Response.

About eSentire

eSentire, Inc., is the Authority in Managed Detection and Response, protecting the critical data and applications of 1200+ organizations in 75+ countries from known and unknown cyber threats. Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk, and enables security at scale. The Team eSentire difference means enterprises are protected by the best in the business with a named Cyber Risk Advisor, 24/7 access to SOC Cyber Analysts & Elite Threat Hunters, and industry-leading threat intelligence research from eSentire’s Threat Response Unit (TRU). eSentire provides Managed Risk, Managed Detection and Response and Incident Response services. For more information, visit www.esentire.com and follow @eSentire.