Skip to main content

Blackpoint Cyber Adds Identity ITDR Capabilities to CompassOne

4 companies named across 3 categories, one of 3 articles referencing Blackpoint Cyber. Previous coverage: Blackpoint Cyber names Wilfredo Santiago Chief Security and Trust Officer (Aug 2025).

Companies mentioned

Best suited for

Seniority
Director
Job function
Chief Information Security Officer
Persona
Security Operations Leader
Buyer role
Decision Maker / Budget Holder
Buyer journey
Need to Buy
Adoption curve
Late Majority
Technology maturity
Established Technology
Industry
Information Technology / Software & Services / Cybersecurity / Managed Detection & Response (MDR) / MSSP

Our classification, not the publisher's statement. Best suited for, not only for.

Blackpoint Cyber said it added new Identity Threat Detection and Response (ITDR) capabilities to CompassOne, its unified security platform. The update focuses on identity-based attack detection, response controls, and incident reporting for Microsoft 365 environments and related identity activity.

The company described new features intended to improve early detection, containment, and remediation, along with documentation after incidents. It said the changes include additional threat detections, automated containment controls, and incident-reporting tools.

Blackpoint said its CompassOne ITDR included a historical scan to deliver retrospective analysis of Microsoft 365 environments during tenant onboarding. The company also outlined new detection categories, automated response options, and visibility features tied to account actions and policy changes across Microsoft 365, Google Workspace, and Cisco Duo. It added a Forensic Report for incidents contained in M365 and a Historical Scan Report that included MITRE ATT&CK mappings.

In written remarks, William Kapes, Director of Technical Operations at Integritek, said, “A compromised mailbox is not an inconvenience; it’s a confidentiality problem with our clients’ own clients attached to it. Much of what we saw when evaluating the competition, was alerts dressed up as detection, which just moves the work back to us. Blackpoint’s SOC investigates and acts and every addition has been aimed at taking work off my team rather than handing them another dashboard to check,” and Sasmita Panda, VP of Engineering at Blackpoint Cyber, said, “Threats are becoming agentic, and identities are the new threat vector where attackers are entering the business,” and “We aren’t here to merely defend, we are here to protect, and that requires more than adding another detection rule—it requires the ability to continuously recognize new attack patterns, make sense of identity activity in context, and act immediately. Our expanded ITDR capabilities and newly launched ITDR AI SOC Agent are a powerful combination of machine-speed detection and containment with the expertise of our human AI-accelerated SOC. That allows us to respond to identity threats in an average of under 2 minutes and as fast as 21 seconds without losing the judgment, accountability, and precision that effective incident response demands.”

Blackpoint said the expanded ITDR offering also included six new Microsoft detections for Microsoft environments, additional detections for Microsoft Teams, and a Device Code Phishing detection, plus automated response options such as geo and VPN policy auto-block and an Auto Logout response option for Google Workspace ITDR.

Press release, provided by Globe Newswire on behalf of Blackpoint Cyber. Read the original.