24 Sep 2024

Rapid7, Inc., a pioneer in extended risk and threat detection, announced the addition of third-party detections for defence-in-depth with Managed Threat Complete (MTC), the company’s Managed Detection and Response (MDR) solution. Rapid7’s global service now includes coverage for CrowdStrike Falcon, SentinelOne Singularity Endpoint, and Microsoft Defender for Endpoint.

Native endpoint security has always been part of Rapid7's defence-in-depth approach. Now, by enriching and layering SOC expertise with third-party endpoint detections, MTC delivers a more comprehensive defense of the customer's extended ecosystem.

Rapid7’s MDR service

Rapid7’s MDR service goes beyond endpoint telemetry alone and leverages its next-gen SIEM foundation

Rapid7’s MDR service goes beyond endpoint telemetry alone and leverages its pioneering next-gen SIEM foundation to integrate and correlate diverse telemetry across the attack surface - endpoint, network, user, cloud. This wider coverage, combined with Rapid7’s expertise, provides critical context and faster investigations for more effective response for the modern attack surface.

The additional endpoint support announced builds on Rapid7’s strategy to provide modern attack surface monitoring across endpoint, cloud service providers, identity and access management, and network security solutions.

Next-gen SIEM

Our pioneering next-gen SIEM allows Rapid7 to process broad telemetry and was purpose-built to operationalise our SOC expertise to deliver unparallelled clarity for our MDR service,” said Craig Adams, chief product officer at Rapid7.

Adding third-party detection support to Managed Threat Complete deepens our visibility across a customer’s environment, which in turn helps us respond even more quickly and efficiently to threats.”

Rapid7’s SOC analysts

With the addition of extended ecosystem monitoring, customers can connect the supported tools in their environment to MDR for triage, investigation, and response. Rapid7’s SOC analysts can now better serve customers with:

  • Enhanced Visibility: With coverage for third-party event sources, the need to manually normalise information across a customer’s technical environment is eliminated, saving time and giving teams confidence that their full attack surface is covered.
  • Reduced Noise: Detect threats across all phases of the MITRE ATT&CK framework and modern threat landscape - without more noise. Realise high efficacy detections with operationalised threat intelligence and expertise.
  • Optimised Response: With broader telemetry and correlation across endpoint, network, identity and cloud, Rapid7’s incident response analysts can respond faster and more accurately to threats to eradicate them from customers’ environments.