Call a Specialist Today! (02) 9388 1741


WatchGuard Products
WatchGuard ThreatSync+ SAAS - 1 Year
WatchGuard ThreatSync+ SAAS - 1 Year - 1 to 50 licenses
Note: If you already have an existing Endpoint license and need additional licenses, then you are eligible for a customized quote. Reach out to us, your WatchGuard expert, to get started!
#WGTSSAAS30101
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 1 Year - 51 to 100 licenses
Minimum 51 quantity
#WGTSSAAS30201
Our Price: Request a Quote

Click here to jump to more pricing!

Please Note: All Prices are Inclusive of GST

Overview:

Unified Network Security Made Simple

ThreatSync+ Software as a Service (SaaS) is a 100% Cloud-native, AI-powered, Cloud and SaaS application threat detection and response solution. It delivers cross-Cloud platform monitoring, detection, and response focused on finding threats hidden in M365, Azure, Google Workspaces, and AWS environments, with simplicity, efficiency, and value for midsize and small enterprises.

Once Cloud risks and threat events are identified, ThreatSync+ SaaS sends them to ThreatSync Core for remediation, providing a unified orchestration response. Together, they streamline Cloud cybersecurity, enhance visibility, automate response actions across the organization more quickly, reduce risk and cost, and offer greater accuracy.

ThreatSync

Benefits

  • Eliminate reliance on complex and costly built-in Cloud threat detection systems from Azure, Google, and AWS.
  • Gain unified risk and threat visibility across multiple Cloud platforms and SaaS applications, including M365 and Google Workspace.
  • Reduce Cloud security and compliance costs by automating monitoring, alerting, remediation, and compliance control reporting.
  • Deliver out-of-the-box M365 risk and threat reports to demonstrate security hygiene status and improvements.

Features

Enterprise AI-driven accuracy in detecting attacks operating inside your Cloud workspaces, including:

  • Brute Password Attack
  • Privileged Account Attack
  • Privileged Account Escalations
  • Account Compromise
  • Lateral Movement
  • Sensitive File Theft
  • File Exfiltration Staging
  • Data Exfiltration
  • Insider Threats
  • Rogue/Impossible User Behaviors

Out-of-the-box NIST and ISO policy-based, AI-powered control frameworks support and continuous compliance monitoring.

ThreatSync+ SaaS supports Azure, M365, Active Directory Cloud, Google, Google Workspaces, and AWS platforms. This cross-platform support enables the coordination and automation of multiple processes and tools with security orchestration, providing a cohesive security posture.


Upgrade to the ThreatSync+ Suite

ThreatSync+ SaaS is fully integrated into the ThreatSync+ Suite. Upgrading to the Suite expands threat detection coverage to include complete hybrid network and Cloud infrastructures and adds automated compliance reporting – all for one low cost. The ThreatSync+ Suite includes ThreatSync Core, ThreatSync+ NDR and SaaS, and WatchGuard Compliance Reporting.


ThreatSync and ThreatSync+ SaaS
Deliver Affordable, Expansive, and Unified Threat Detection and Response

SaaS Deployment

Features:

Cutting Edge

Cutting-Edge Cloud AI

Using unsupervised and semi-supervised machine learning operating in a multi-tier neural network, ThreatSync+ SaaS ingests and correlates Cloud and SaaS application logs to surface risks and threats across Cloud environments. The AI engine identifies misuse and risky file access or sharing, risky user/account activity, and risky admin activity associated with password attacks, privileged escalations, and data exfiltration stages of cyberattacks.

Surface Hidden Cloud Risks

ThreatSync+ SaaS watches all your Cloud environments 24/7, offering a unified view of Azure, M365, Google, and AWS risks and threats. Gain visibility into application, account, and file risks, including privileged account creation and management, application usage, and file movement from controlled to public locations with a simplified view.

Hidden Cloud Risks
Deploy Rapid Threat Detection

Deploy Rapid Threat Detection and Response

ThreatSync+ SaaS efficiently detects, identifies, and enables remediation actions for threats detected across SaaS applications and Cloud accounts. Attacks are identified quickly so that remediation efforts prevent further damage. Threat coverage includes brute-force password attacks, account compromise, lateral movement, privilege escalation, and data theft. Remediation is executed via ThreatSync or through open SOAR systems.

Reduce TCO with Cloud-Native Architecture

With its 100% open Cloud-native architecture, there is no need for additional hardware. ThreatSync+ SaaS operates in the WatchGuard Cloud and is compatible with your ThreatSync and ThreatSync+ NDR deployments. Secure log collection is managed from the Cloud and ingests data from AWS, Google, and Microsoft Cloud platforms. This minimizes costs while maximizing risk and threat visibility.

TCO with Cloud
Expand Coverage

Expand Coverage: Upgrade to the ThreatSync Suite

Expand threat detection and response coverage across your hybrid environment with ThreatSync Suite. Correlate risks and threats across network, Cloud, and SaaS applications and directories with our open XDR platform. The ThreatSync Suite includes ThreatSync Core and ThreatSync+ with NDR, Cloud/SaaS coverage, and WatchGuard Compliance Reporting, delivering expansive risk and threat detection and remediation with a cost-saving compliance reporting capability.


Anatomy of a Threat Report:

Understanding the risks and threats hidden in your organization’s Microsoft 365 (M365) deployment is no easy task. The security capabilities native to M365 are significant, but they are also complex and challenging to manage. Understanding the risks and threats in M365 activities is crucial for protecting your entire organization and your suppliers, partners, and customers.

By actively monitoring your M365 deployment with automated risk and threat reporting, you can identify vulnerabilities or cyberattacks that get lost in the complexity of Microsoft Defender. This proactive approach empowers you as a cybersecurity professional to address M365 issues before damage occurs, thereby boosting your cybersecurity hygiene and defenses.

M365 Risk and Threat Reporting

ThreatSync+ SaaS includes M365 Risk and Threat Reporting. The report provides a detailed look at risky and threatening activity and policy control violations across M365 users. It begins with a visualization and timeline of your overall M365 threat score and trends based on fifteen best-practice control policies. It provides a detailed look at each of the fifteen controls actively monitored by the system. Each control effectiveness section shows the individual threat score and trend line for the control being monitored, and if any gaps or failures are found, guidance on how to remediate them is provided.

The report is easily configurable to meet the specific needs of organizations or cyber defense programs. New controls can be easily built in ThreatSync+ SaaS and added to the M365 report. Its purpose is to quickly and accurately highlight M365 issues, provide managers with a way to establish M365 security objectives, and track progress and improvements toward them.

M365 Threat

The Microsoft 365 Risk and Threat report is a comprehensive resource that offers detailed insights into the activities within your Microsoft 365 deployment. It provides a thorough overview of the risks and threats related to all fifteen critical controls and objectives, ensuring that your Microsoft 365 environment and users are safeguarded. These insights are crucial for your cybersecurity program as they furnish the necessary information to comprehend your security position and identify steps for enhancing it. The specific information included in the report may vary based on the deployed controls but typically encompasses:

  • A prioritized view of top threats to your M365 environment.
  • The criticality level of each risk, typically classified as critical, high, or medium.
  • A description of each risk, including the type, severity, and potential impact.
  • Recommendations for removing each risk, such as installing security updates, removing malware, isolating devices, changing credentials, or configuring security settings.

Examples of specific security risks that may be identified in the assessment:

  • Internal files share externally
  • Suspicious file activity by rate
  • Anonymous file activity
  • Internal files made public
  • Brute force password attack
  • Suspicious admin changes, rate
  • Suspicious admin changes, time
  • Suspicious access location
  • Suspicious access time
  • Impossible travel/access
  • Suspicious access rate
Top Network

ThreatSync Purchase Options:

ThreatSync Core offers a base set of XDR capabilities with qualifying network and endpoint security product purchases at no additional charge. Additional ThreatSync+ product licenses can be purchased separately to add advanced XDR capabilities such as third-party product feeds and deep AI-based detections, monitoring, and analysis.

How To Buy

WatchGuard’s family of XDR products enables MSPs and companies of every size to deploy a foundational core of XDR functionality and add advanced options to quickly expand protection across threat surfaces and attack vectors. Choose the ThreatSync products that best suit your environment to deploy a custom solution that fits your needs and capabilities.

  • ThreatSync Core includes foundational XDR capabilities:
    • Threat information correlation
    • Incident scoring and management
    • Intelligent automated remediation
    Features are platform-ready and available for each network and endpoint security product activation at no additional charge.
  • ThreatSync+ XDR products can be purchased separately to add advanced XDR capabilities, including third-party product feeds and AI-based detections, monitoring, and analysis.
  • ThreatSync+ NDR: 100% Cloud-native, AI-powered threat detection and response solution that requires no hardware and protects on-premises network, VPN, and identity threat surfaces.
  • ThreatSync+ SaaS: 100% Cloud-native, AI-powered threat detection and response solution that requires no hardware and protects SaaS applications, Cloud platforms, and Cloud identity threat surfaces.
  • WatchGuard Compliance Reporting enhances ThreatSync and WatchGuard Cloud reports, providing comprehensive compliance reporting for business and regulatory needs.
  • ThreatSync Suite: Single integrated package including ThreatSync Core, ThreatSync+ products (NDR, SaaS, and future identity/EDR integration), and WatchGuard Compliance Reporting, offering a complete integrated XDR solution.

Specifications:

Feature ThreatSync Core ThreatSync+ ThreatSync+ SaaS Compliance Reporting ThreatSync Suite
Included with WatchGuard products / license type Included with WatchGuard products Requires additional licenses Requires additional licenses Optional add-on, requires additional license Additional licenses includes: ThreatSync Core, ThreatSync+ NDR, ThreatSync+ SaaS, and WatchGuard Compliance Reporting
Threat information correlation
Incident scoring and management
Intelligent automated remediation
100% Cloud native
Includes WatchGuard network & endpoint security products
Standard XDR reports
Includes open XDR architecture (3rd-party products)
Continuous monitoring advances
Integrated AI detection
AI correlation analysis
Advanced dashboard views and reports
Comprehensive N/S/E/W Network Detection and Response (NDR)
Comprehensive SaaS Application and Cloud Platform Detection and Response
Over 100 regulatory controls mapped to compliance reports
Automated continuous compliance for ISO-27001, NIST, CMMC, UK and Cyber Essentials
Reporting that supports insurance audit compliance, Critical Security Controls, CISA Ransomware Defense, and IEEE standards

Documentation:

Download the WatchGuard ThreatSync+ SaaS (.PDF)

No PDF plugin? You can download the PDF.

Pricing Notes:

WatchGuard Products
WatchGuard ThreatSync+ SAAS - 1 Year
WatchGuard ThreatSync+ SAAS - 1 Year - 1 to 50 licenses
Note: If you already have an existing Endpoint license and need additional licenses, then you are eligible for a customized quote. Reach out to us, your WatchGuard expert, to get started!
#WGTSSAAS30101
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 1 Year - 51 to 100 licenses
Minimum 51 quantity
#WGTSSAAS30201
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 1 Year - 101 to 250 licenses
Minimum 101 quantity
#WGTSSAAS30301
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 1 Year - 251+ licenses
Minimum 251 quantity
#WGTSSAAS30401
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 3 Year
WatchGuard ThreatSync+ SAAS - 3 Year - 1 to 50 licenses
Note: If you already have an existing Endpoint license and need additional licenses, then you are eligible for a customized quote. Reach out to us, your WatchGuard expert, to get started!
#WGTSSAAS30103
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 3 Year - 51 to 100 licenses
Minimum 51 quantity
#WGTSSAAS30203
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 3 Year - 101 to 250 licenses
Minimum 101 quantity
#WGTSSAAS30303
Our Price: Request a Quote
WatchGuard ThreatSync+ SAAS - 3 Year - 251+ licenses
Minimum 251 quantity
#WGTSSAAS30403
Our Price: Request a Quote