
Rubrik & Sophos launch advanced Microsoft 365 resilience tool
The collaboration introduces Sophos M365 Backup and Recovery Powered by Rubrik, which enables organisations to recover Microsoft 365 data, including Teams, OneDrive, Exchange, and SharePoint, from within the Sophos Central platform. Sophos Central is currently used by over 75,000 MDR (Managed Detection and Response) and XDR (Extended Detection and Response) customers.
Integration for resilience
This integrated solution is designed to help IT and cybersecurity teams bolster their defences against cyber threats such as ransomware, account compromise, insider threats, and data loss across Microsoft 365 applications. Sophos Central currently integrates telemetry from more than 350 sources, employing deep learning and language models to monitor and respond to threats across endpoints, cloud, networks, identity, email, and business applications.
Joe Levy, Chief Executive Officer of Sophos, said the partnership addresses the ongoing challenges faced by organisations in the digital era. We are reshaping what it means to stay operational in a world shaped by constant digital disruption. This is the future of cyber resilience: an intelligent, adaptive partnership that ensures organisations remain secure, responsive, and uninterrupted. By combining Sophos' prevention-first approach with Rubrik's unwavering recovery capabilities, we empower businesses to withstand attacks and maintain continuity, even under pressure.
Sophos will offer this backup and recovery capability as an add-on for its MDR and XDR customers. The integration brings Rubrik's protection and recovery technology into the Sophos Central platform, giving organisations additional tools for secure data recovery in the face of accidental or malicious data loss. The new offer aims to provide flexibility and enhanced operational resilience for users already invested in Sophos security solutions.
Industry context
The need for more robust protection for Microsoft 365 data is highlighted by recent research. According to The State of Ransomware report by Sophos, nearly half of organisations impacted by ransomware incidents paid a ransom to restore their data. Only 54 per cent of affected companies restored their data using backups, pointing to a gap in effective resilience strategies. Further data suggests that 60 per cent of Microsoft 365 tenants have experienced account takeovers and 81 per cent have encountered email compromise. Compromised global admin credentials are a specific risk, as attackers can sometimes manipulate data retention policies to permanently delete critical information.
Bipul Sinha, Chief Executive Officer, Chairman, and Co-founder of Rubrik, said the complex threat environment requires comprehensive strategies that cover both prevention and recovery. The reality of today's threat landscape demands a holistic approach to cyber resilience. With AI-enabled attacks and sophisticated breaches on the rise, organisations need more than just prevention; they need the ability to recover rapidly and reliably. Our partnership with Sophos delivers this critical capability directly within a platform security teams already use and trust, raising the bar for Microsoft 365 resilience.
Features and benefits
Sophos MDR and XDR customers are set to benefit from a range of security and recovery capabilities. Rubrik will provide secure, immutable backups for Microsoft 365 data using air-gapped storage, WORM locks, and customer-held encryption keys. Additional security measures such as multifactor authentication and data locks help prevent unauthorised tampering, even if credentials have been compromised.
The solution enables restoration of Microsoft 365 content - emails, OneDrives, SharePoint sites, Teams channels, and more - to original or alternative users, including inactive accounts. Rubrik's software will automatically detect users, sites, and mailboxes for protection, apply appropriate policies, and support delegated administration, all while being fully integrated with Sophos Central to minimise administrative overhead.
Both companies stated their commitment to supporting organisations in maintaining operational confidence despite evolving risks. The new joint solution is intended to provide customers and partners with the means to recover from cyber threats with minimal disruption.
The offering will be made available through Sophos' channel partner network in the coming months.
Hashtags

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles


Techday NZ
5 hours ago
- Techday NZ
Sophos & Rubrik launch integrated Microsoft 365 backup service
Sophos and Rubrik have announced a partnership to deliver a Microsoft 365 cyber resilience solution aimed at protecting businesses from the risks of ransomware, account compromise, insider threats, and data loss across popular Microsoft applications. The new solution, Sophos M365 Backup and Recovery Powered by Rubrik, marks the first Managed Detection and Response (MDR)-optimised Microsoft 365 backup and recovery service to be fully integrated within Sophos Central, the company's security operations platform. It is designed to allow IT and cybersecurity teams to access a unified global platform for enhanced cyber defence and recovery operations. Integration with Sophos Central The service is intended as a new add-on for Sophos' more than 75,000 MDR and XDR customers, enabling the rapid and secure restoration of Microsoft 365 data in the event of accidental deletion or malicious activity. The solution integrates Rubrik's SaaS-based data protection directly with the Sophos Central platform, which assimilates over 350 different telemetry sources from endpoint, cloud, network, identity, email, and business applications. Joe Levy, Chief Executive Officer at Sophos, commented: "We are reshaping what it means to stay operational in a world shaped by constant digital disruption. This is the future of cyber resilience: an intelligent, adaptive partnership that ensures organizations remain secure, responsive, and uninterrupted. By combining Sophos' prevention-first approach with Rubrik's unwavering recovery capabilities, we empower businesses to withstand attacks and maintain continuity, even under pressure." The new offering is underpinned by a prevention-first strategy combined with Rubrik's recovery technologies to address the increasing frequency and sophistication of security incidents impacting business continuity. Features and functionality Sophos M365 Backup and Recovery facilitates the restoration of data for SharePoint, Exchange, OneDrive, and Teams users. The integration with Sophos Central aims to streamline protection and recovery without the need for additional tools. The platform is detailed as leveraging deep learning, custom large language models (LLMs), and frontier models to better detect and respond to threats across a wide attack surface. Bipul Sinha, Chief Executive Officer, Chairman, and Co-founder of Rubrik, said: "The reality of today's threat landscape demands a holistic approach to cyber resilience. With AI-enabled attacks and sophisticated breaches on the rise, organizations need more than just prevention; they need the ability to recover rapidly and reliably. Our partnership with Sophos delivers this critical capability directly within a platform security teams already use and trust, raising the bar for Microsoft 365 resilience." The joint solution promises immutable backups isolated using air-gapped storage, WORM (Write Once Read Many) locks, and encryption keys controlled by the customer. Multi-factor authentication and other measures are said to prevent unauthorised tampering, even if credentials are compromised. Customers can restore Microsoft 365 components to original or alternate user accounts, including those that are inactive, to support diverse recovery scenarios. The product also automates protection across the Microsoft 365 estate by discovering new users, sites, and mailboxes, applying Entra ID-based policies, and supporting delegated administration - all managed from the Sophos Central interface. Addressing the threat landscape Research highlighted by both companies signals an urgent requirement for reinforced Microsoft 365 data defences. According to The State of Ransomware report from Sophos, almost half of ransomware-impacted organisations paid ransoms to recover data, but only 54% relied on backups for restoration. Other studies cited reveal that 60% of Microsoft 365 tenants have faced account takeovers and 81% suffered email compromise, exposing businesses to significant operational risk when retention policies or admin credentials are breached. Both Sophos MDR and XDR customers will have access to this backup and recovery feature, structured to close the gap between prevention and recovery for critical business data stored in cloud environments. The aim is to provide what the companies articulate as speed, granularity, and reliability when restoring information following security incidents. The collaboration is part of Sophos and Rubrik's stated commitment to help organisations manage risk confidently and recover from breaches or data loss with minimal disruption. This service will be available through Sophos' channel partner network in the coming months.


Techday NZ
11 hours ago
- Techday NZ
Omnissa expands leadership team to drive partner led growth
Omnissa has appointed three senior executives to drive partner-led growth and enhance its digital workspace market strategy. Johnna Bowley, Liz DeVoss, and Andrew Vallila have joined Omnissa in key go-to-market leadership positions as the company looks to build on recent momentum and strengthen its global and regional sales focus. Chief Executive Officer Shankar Iyer commented on the appointments, noting the company's growth since gaining independent status and the anticipated impact of the new leaders. "Our first year as an independent company has been marked by rapid growth, and deep trust from our customers and partners. We've built meaningful momentum, and with this top talent now a part of Omnissa, we're well positioned to take that progress further - delivering even greater value, deepening partner collaboration and supporting customers at every stage of their digital workspace journey," said Shankar Iyer. The company is advancing its global partner strategy following the introduction of the Omnissa Partner Program. Johnna Bowley has been named Vice President of Partner Ecosystem Strategy and Operations, charged with expanding Omnissa's channel business and operationalising channel growth across partner routes to market. Bowley brings more than 25 years of experience in building and transforming global channel organisations, having held senior leadership positions at technology firms including Egnyte, Rubrik, Citrix, Riverbed, and NetApp. At Omnissa, Bowley will report to the Chief Marketing Officer, overseeing alignment of sales, marketing, and technical services to enhance partner-led growth. Renewals and Americas sales Omnissa has also expanded its leadership to focus on customer retention and regional sales performance. Liz DeVoss has been appointed Global Vice President of Renewals, responsible for modernising the global renewals organisation and optimising strategies geared towards ensuring customer satisfaction and long-term growth. DeVoss joins the company following more than 20 years at Quest Software, where she led global renewals and operations through various phases of growth and transformation. In conjunction with the renewals appointment, Omnissa named Andrew Vallila as Vice President of Sales for the Americas. Vallila will oversee regional sales strategy and execution, with over two decades of experience in driving revenue growth and evolving go-to-market models. He has previously held leadership roles at Securonix, Dell Security, and Oracle. DeVoss and Vallila join Omnissa's global sales organisation and will report directly to the Senior Vice President of Global Sales. Supporting partner and customer value The appointments are part of Omnissa's ongoing efforts to scale its global partner ecosystem, expand its presence in the Americas, and deliver measurable value for its customer base. According to the company, these strategic hires are aimed at accelerating channel and sales growth while supporting customer engagement throughout the digital workspace journey. Follow us on: Share on:


Techday NZ
15 hours ago
- Techday NZ
Abnormal AI launches updated Microsoft 365 security solution
Abnormal AI has launched an updated Security Posture Management product aimed at providing AI-driven protection, automated prioritisation, and remediation guidance for Microsoft 365 environments. The company's revised offering addresses the challenges created by increasingly complex Microsoft 365 ecosystems, where accidental misconfigurations are contributing to cloud email vulnerabilities. The proliferation of third-party applications, an expanding layer of settings, and dispersed administrative responsibilities within organisations have resulted in potential blind spots and inadvertent security gaps. Previously, such vulnerabilities have reportedly been exploited by threat groups including Midnight Blizzard. Abnormal AI states that its extensive integration with Microsoft 365, coupled with its experience in counteracting advanced email threats, enables it to uncover configuration risks that might otherwise go undetected. The new add-on component for Security Posture Management is designed to continuously identify misconfigurations spanning users, applications, and tenants, providing security teams with actionable visibility and enhanced control. The company highlights three principal features of the updated product: comprehensive visibility, automated prioritisation, and remediation guidance. According to Abnormal AI, the solution continuously uncovers risky Microsoft 365 misconfigurations using CIS benchmarks and Abnormal's own threat intelligence. Automated prioritisation is intended to ensure that the most critical risks, based on their impact, prevalence, and relevance to the organisation's environment, are addressed first. Remediation guidance offers clear instructions for resolving identified issues, aiming to eliminate the need for manual audits or custom scripting. "Thousands of organisations rely on Abnormal to stop email-based attacks like phishing and account compromise. But attackers are also exploiting misconfigurations to bypass phishing defences," said Evan Reiser, CEO of Abnormal AI. "Because we already integrate deeply with Microsoft 365 to protect inbound email, we can extend our API-based architecture to detect these hidden risks. Security Posture Management gives security teams continuous visibility into misconfiguration risks across their entire Microsoft 365 environment." The latest enhancement to Security Posture Management arrives as businesses continue to face a fluid threat landscape, particularly around widespread platforms such as Microsoft 365. With increasing adoption of cloud-based collaboration tools, proper configuration has become a central focus for security teams seeking to mitigate the risk of account compromise and unauthorised access. Abnormal AI describes its platform architecture as supporting quick deployment through API integration with both Microsoft 365 and Google Workspace, as well as other cloud applications including Slack, Workday, ServiceNow, and Zoom. The firm reports that its services are presently used by more than 3,200 organisations worldwide, including a substantial segment of the Fortune 500. The company has stated that its anomaly detection engine leverages a range of contextual signals to analyse risk on every cloud email event, supporting the detection and blocking of socially-engineered attacks. This is positioned as part of a broader trend within cybersecurity that leverages artificial intelligence and machine learning to counter increasingly sophisticated attack techniques. Abnormal AI has indicated that additional demonstrations of its Security Posture Management capabilities, including the updated features, are being made available to interested parties and customers. Further details are available from the company upon request.