Home » Emerging Technologies » Cyber Security » Sophos ITDR Launched to Strengthen Identity Security
News Desk -

Share

Sophos, a global cybersecurity solutions, has announced the launch of Sophos ITDR (Identity Threat Detection and Response). The new solution integrates with Sophos XDR and Sophos MDR to continuously monitor customer environments for identity risks and misconfigurations. It also scans the dark web for compromised credentials.

The launch follows the Secureworks acquisition and marks the first Secureworks solution fully integrated into the Sophos Central platform. This integration enhances security operations for over 600,000 Sophos customers.

Sophos ITDR addresses identity-based attacks, one of the fastest-growing threat vectors worldwide. According to Sophos X-Ops, stolen credentials on the dark web rose 106% between June 2024 and June 2025. The Sophos Active Adversary Report also revealed that compromised credentials caused 56% of MDR and incident response cases.

“Cloud and remote work have expanded the identity attack surface,” said Rob Harrison, SVP, Product Management, Sophos. “Sophos ITDR gives customers faster visibility into identity risks, monitors for compromised credentials, and enables rapid analyst-led response.”

The solution includes AI-driven detections for attacks such as kerberoasting, privilege escalation, account takeover, brute force, and lateral movement. It also offers automated response actions, including account lock, password reset, MFA refresh, and session revocation.

Key features of Sophos ITDR include:

  • Identity Posture Dashboard for a prioritized view of identity risks.
  • Compromised Credential Monitoring to alert users when credentials appear on the dark web.
  • User Behavior Analytics (UEBA) to detect anomalous activity early.

Sophos ITDR automatically generates cases when identity threats are detected. Sophos MDR analysts then investigate and take remediation actions to reduce risk and accelerate response.

A CISO at a financial services firm reported, “Identity has become the new frontline of cyber defense. Sophos ITDR provides visibility and automation to stay ahead of attackers.”