Dragos has completed its acquisitions of NetRise and runZero, expanding its industrial cybersecurity platform with exposure management and software supply chain security capabilities following the closing of Accenture’s majority investment in the company earlier this year.
The acquisitions bring together three previously separate areas of cybersecurity within the Dragos Platform: operational technology asset visibility and threat detection, exposure management across IT, OT and cloud environments, and visibility into the firmware and software supply chain underlying connected devices.
Dragos said the combination will enable critical infrastructure organizations to see and defend their full extended operational technology, or xOT, environments. The company defines xOT broadly to encompass connected devices, networks, cloud infrastructure, software supply chains and the operational systems responsible for physical processes.
Alongside the acquisitions, Dragos co-founder and CEO Robert M. Lee has been named Chairman of the Board. He will continue serving as CEO.
Dragos will remain independently operated under its existing leadership team following Accenture’s majority investment. The company said maintaining vendor neutrality is important because critical infrastructure environments typically rely on technologies from numerous equipment and software providers.
The full NetRise and runZero teams are joining Dragos.
runZero CEO HD Moore, NetRise CEO Thomas Pace and NetRise CTO and Chief Scientist Michael Scott will lead the integration of their respective technologies into the Dragos Platform while continuing to support existing customers.
runZero adds asset discovery and exposure management capabilities that can aggregate IT, OT and cloud asset information from sources customers already use.
That technology is intended to give security teams a more complete inventory of the systems operating throughout an organization, including devices that may otherwise be difficult to identify or monitor.
Understanding what assets exist has become increasingly challenging as industrial environments become connected to enterprise networks, cloud services, remote-management systems and other technologies.
Dragos plans to combine runZero’s capabilities with its existing OT asset visibility and cybersecurity technology to create a more comprehensive inventory across these connected environments.
NetRise expands the platform in a different direction by analyzing the firmware and software operating inside devices.
Its technology is designed to identify risks within software components, including outdated libraries, known vulnerabilities and hardcoded credentials.
For organizations operating critical infrastructure, that visibility can provide a deeper understanding of risks that exist beneath the device level and may not be apparent from traditional network monitoring.
NetRise can also help organizations develop the documentation required for cybersecurity and regulatory programs, including requirements associated with NERC CIP, NIS2 and Transportation Security Administration directives.
Together, the acquisitions extend Dragos’ visibility from the underlying firmware inside devices through operational networks and into enterprise IT and cloud infrastructure.
Dragos argues that this broader approach has become necessary as the traditional separation between operational systems and other technology environments continues to disappear.
Industrial cybersecurity historically operated around the assumption that many operational systems were isolated, or “air-gapped,” from external networks.
In modern environments, however, industrial equipment increasingly connects with enterprise applications, cloud infrastructure, wireless systems and internet-connected devices.
That connectivity can improve efficiency and operational visibility, but it also expands the number of potential pathways an attacker can use to reach systems controlling physical processes.
Dragos serves organizations across industries including electric power, oil and gas, manufacturing, water, transportation, data centers, mining and ports.
The company sees protecting the complete xOT environment as increasingly important because attacks against those organizations can affect physical operations rather than only digital information.
Earlier this year, Dragos acquired Phosphorus Cybersecurity, expanding its capabilities for identifying and protecting connected devices embedded across critical infrastructure and operational networks.
The NetRise and runZero acquisitions build on that strategy by adding broader exposure management and deeper software supply chain analysis.
Dragos is also expanding the data available to its Intelligence Fabric, which combines more than a decade of OT-specific telemetry and incident-response intelligence used throughout the company’s platform.
The additional asset, exposure and software information generated through NetRise and runZero will become part of that intelligence environment.
Dragos EmberAI, the company’s AI technology developed specifically for operational environments, will also draw from the expanded data.
The company expects the combination to provide security analysts with faster and more detailed guidance when investigating vulnerabilities, exposures and potential threats.
The acquisitions follow the completion of Accenture’s majority investment in Dragos in June 2026.
That transaction provides Dragos with additional capital and access to Accenture’s global reach as the company seeks to expand its platform across major industrial and critical infrastructure organizations.
Accenture executives Harpreet Sidhu, Global Cybersecurity Lead; Luis Luque, Global OT Cybersecurity Lead; and John Coltsmann of Corporate Development are joining the Dragos Board.
Dmitri Alperovitch, co-founder and Chairman of Silverado Policy Accelerator and co-founder and former CTO of CrowdStrike, is also returning to the board.
Dragos plans to provide additional details about how NetRise and runZero will be integrated into its platform during an upcoming webinar featuring Lee, Moore and Pace.
The broader strategy positions Dragos around the idea that industrial cybersecurity can no longer focus solely on the operational network itself.
Instead, defenders increasingly need to understand the interconnected collection of devices, software components, networks, enterprise systems and cloud infrastructure capable of influencing physical operations.
By bringing NetRise and runZero into the company, Dragos is attempting to create a unified platform spanning that entire environment while maintaining its core focus on cybersecurity for operational technology and critical infrastructure.
KEY QUOTES:
“The world’s largest companies have invested heavily in enterprise IT security, yet it’s their cyber-physical systems that generate revenue and carry national and local security impact. Organizations across electric, oil and gas, manufacturing, data centers, and other critical infrastructure sectors need to defend every system that can influence a physical process. That extended environment is xOT. NetRise, runZero, and Dragos defend it together.”
Robert M. Lee, Chairman and CEO of Dragos
“Intrusions into OT networks have become a daily reality for critical infrastructure operators given the geopolitical conflicts we’ve been witnessing around the world in recent years. Cybersecurity for these environments is more than a matter of uptime. It’s about whether the lights stay on and the water stays safe when an adversary attacks. Dragos, NetRise, and runZero now give defenders what they’ve been missing: the right xOT tools for that fight.”
Dmitri Alperovitch, Co-Founder and Chairman of Silverado Policy Accelerator and Co-Founder and Former CTO of CrowdStrike

