Huntress Shifts to Proactive Defense with New Posture Management Tools

πŸ“Š Key Data
  • 277% year-over-year surge in abuse of remote monitoring and management (RMM) tools
  • Nearly 30% of identity-based threats involve mailbox manipulation or OAuth abuse
  • One-third of workplace endpoint devices are unmanaged, with over half being completely invisible and unsecured
🎯 Expert Consensus

Experts agree that Huntress's shift to proactive defense with its new posture management tools addresses critical security gaps, particularly in endpoint and identity security, which are responsible for a majority of security incidents.

19 days ago
Huntress Shifts to Proactive Defense with New Posture Management Tools

Huntress Expands to Proactive Defense with New Posture Management Tools

COLUMBIA, Md. – March 17, 2026 – Cybersecurity firm Huntress today announced a significant expansion of its platform, moving deeper into proactive defense with the launch of two new products aimed at hardening systems before attackers can strike. The new Managed Endpoint Security Posture Management (ESPM) and Managed Identity Security Posture Management (ISPM) tools are designed to continuously find and fix common security weaknesses, marking a strategic shift from reaction to prevention for the popular security vendor.

The new offerings are integrated into the Huntress Agentic Security Platform, which the company says delivers end-to-end protection across endpoints, identities, and the human element. The launch demonstrates rapid innovation, with the ISPM product developed in less than four months by leveraging technology and expertise from its November 2025 acquisition of Inside Agent.

An Epidemic of Exposure

The launch arrives as organizations grapple with an increasingly porous and difficult-to-manage attack surface. According to industry research, the very gaps Huntress aims to close are responsible for a majority of security incidents. Basic misconfigurations, unmanaged devices, and the abuse of legitimate software have become the low-hanging fruit for cybercriminals.

β€œMost organizations don't have a clear picture of their security posture, especially across endpoints. On average, one-third of workplace endpoint devices are unmanaged, and more than half of those are completely invisible and unsecured," noted Gabe Knuth, Principal Analyst at Omdia. This visibility gap creates a massive blind spot that attackers frequently exploit. Research from other firms reinforces this, with some reports suggesting that 99% of cloud security failures were the result of customer-side misconfigurations.

Huntress’s own threat intelligence highlights another critical trend: the weaponization of legitimate tools. The company recently reported a staggering 277% year-over-year surge in the abuse of remote monitoring and management (RMM) tools, where attackers use trusted software to blend in and evade detection. Coupled with findings that nearly 30% of identity-based threats involve mailbox manipulation or OAuth abuse, the need for automated, continuous hardening of both endpoints and identities becomes critically clear.

Beyond Reaction: An Agentic Approach to Prevention

Huntress aims to tackle these issues head-on with its new managed posture tools, which represent a core component of its "Agentic Security Platform" vision. The strategy moves beyond traditional detect-and-respond models by using automation and intelligence to proactively enforce security policies and eliminate weaknesses before they become incidents.

β€œAcross the millions of endpoints and identities we protect, we see attackers exploiting the same security gaps over and over again,” said Prakash Ramamurthy, Chief Product Officer at Huntress. β€œWe built Managed ESPM and Managed ISPM to close those gaps before attackers can exploit them.”

The new products function as automated security experts working around the clock:

  • Managed Endpoint Security Posture Management (ESPM): This tool hardens endpoints by controlling which applications are allowed to run, effectively blocking unauthorized software like rogue RMM tools. It also integrates with Microsoft Defender for Endpoint to help teams prioritize and remediate critical vulnerabilities. For compliance purposes, it offers dashboards and reports designed to reduce attestation time from days to minutes.

  • Managed Identity Security Posture Management (ISPM): Focusing on the identity layer, this product applies expert-built security policies to Microsoft 365 and Entra ID environments. It continuously scans for security gaps in identity configurations and Conditional Access policies, automatically rolling back unauthorized or risky changes within minutes to prevent exploitation.

This proactive stance is powered by threat intelligence gathered from Huntress's AI-centric Security Operations Center (SOC) and the millions of assets it already protects. This allows the platform to automatically define, deploy, and maintain security controls based on real-world attacker techniques, rather than relying on static, generic best practices.

Democratizing Enterprise-Grade Security

A key differentiator in the Huntress strategy is its focus on the "managed" aspect of its services. By providing the security expertise and technical capabilities through its platform, Huntress aims to make advanced posture management accessible to organizations that lack dedicated security teams and large budgets, particularly small-to-medium businesses (SMBs) and the Managed Service Providers (MSPs) that serve them.

Legacy posture management tools often require significant manual oversight and specialized knowledge to configure and maintain, putting them out of reach for many. Huntress's approach is to shoulder that burden for its customers.

This has resonated with early adopters. "Managing endpoint security posture across our clients' environments requires deep expertise and constant attention to keep up with application control policies, operating system configurations, browser settings, and more," said Tzvi Shoop, a Cyber Security Consultant at Digacore who participated in the alpha program. "After trialing Managed ESPM... we've seen firsthand how Huntress can take that entire burden off our plate and maintain our clients' endpoints in a hardened state... The results have been transformational for our team."

Strategic Growth Through Acquisition and Innovation

The rapid development of the Managed ISPM solution, in particular, highlights Huntress's agile and strategic approach to growth. The company built the identity-focused product from the ground up in less than four months, a feat made possible by its strategic acquisition of Inside Agent in November 2025.

The acquisition brought in a team with specialized expertise in hardening Microsoft 365 and Entra ID, allowing Huntress to quickly integrate their knowledge and technology. This "buy-and-build" strategy enabled the company to accelerate its roadmap and respond swiftly to a pressing market need for better identity security, demonstrating how targeted M&A can be a powerful catalyst for innovation in the fast-paced cybersecurity industry.

This expansion into proactive security management positions Huntress to offer a more comprehensive lifecycle of protection, from pre-incident hardening and user training to post-breach detection and response.

Both Managed ESPM and Managed ISPM are now available through an Early Access program. Huntress plans to showcase the new products at the upcoming RSA Conference at booth S-3301, with General Availability slated for Summer 2026.

Theme: Geopolitics & Trade Generative AI Machine Learning Automation
Product: AI & Software Platforms
Event: RSA Conference Acquisition
Sector: Financial Services
UAID: 21530