Why Fortinet Is Buying SOAR Provider CyberSponse

By Annie Baker • Dec 16, 2019
  • Fortinet, a leader in integrated and automated cybersecurity solutions, announced it acquired CyberSponse. These are the details about the deal.

Fortinet — a global leader in integrated and automated cybersecurity solutions — announced recently that it has acquired CyberSponse. CyberSponse is a leading Security Orchestration, Automation and Response (SOAR) platform provider based out of Arlington, Virginia. And CyberSponse — which is already a Fortinet Security Fabric partner — will further extend the automation and incident response capabilities of FortiAnalyzer, FortiSIEM, and FortiGate such as simplifying security operations. The terms of the deal were undisclosed.

As today’s cyberthreat landscape is constantly evolving, the increasing number of point security products adds to alert fatigue that exacerbates an already complex security operations environment that is set against the backdrop of a cybersecurity skills shortage.

“The growing number of security tools being deployed by enterprises have introduced operational complexities that make organizations more vulnerable to breaches. With the integration of CyberSponse’s powerful SOAR platform into the Fortinet Security Fabric, we will offer customers accelerated incident response and the ability to standardize and scale processes that will enhance security posture and reduce business risk and associated costs,” said Fortinet founder and CEO Ken Xie.

And to combat this complexity enterprises and service providers seek to simplify operations and maximize the efficiency of security operations centers (SOCs) by consolidating and triaging alerts from a wide range of security products, automate the analysis and the repetitive tasks to save valuable resources, and leverage well-defined playbooks to enable real-time incident response.

“Organizations are still looking for advanced incident response (IR) capabilities that can help them be more efficient. To meet these goals, large organizations will gladly embrace a SOAR solution from Fortinet that can help them enhance automation, orchestration and response capabilities and maximize efficiencies, savings, and speed,” added Enterprise Strategy Group Senior Principal Analyst and Fellow Jon Oltsik.

Going forward, Fortinet and CyberSponse will equip security analysts across organizations of all sizes with a powerful and patented solution that is unique and differentiated, including enterprise-grade scalable architecture with distributed multi-tenancy that augments streamlined SOC operations and enables MSSPs to deliver managed detection and response (MDR) services with ease.

And more than 325 connectors can easily integrate with all major security vendors and technologies and offers a single centralized point of visibility and control. Plus more than 200 out-of-the-box easy-to-configure playbooks can automate incident response action sequence and routine

Security analysts will also gain advanced case management modules with an incident timeline and asset correlation views plus an automated ROI or savings measurement tool. And this ensures granular role-based access controls to secure user-related data.

“This is an ideal match. CyberSponse’s mission has always been to make security operations management effortless and effective with innovative yet disruptive technology. The combined powerhouse of Fortinet’s Security Fabric and CyberSponse’s SOAR technology will ensure customers are protected by the most sophisticated global security operations platform that includes hundreds of integrations enabling streamlined out-of-the-box playbook execution,” explained CyberSponse founder and CSO Joseph C. Loomis.