
Huntress recently unveiled their Managed Endpoint Security Posture Management (ESPM) and Managed Identity Security Posture Management (ISPM), expanding its Agentic Security Platform to deliver end-to-end protection across endpoint, identity, and human risk.
These products empower customers to proactively close common security gaps like misconfigurations, excessive permissions and unauthorized applications within a unified platform.
Unlike legacy security posture management tools that require dedicated expertise and heavy manual oversight, Huntress uses threat intelligence from its AI-centric security operations center (SOC) and millions of protected endpoints and identities to continuously define, deploy, and maintain security controls on behalf of customers.
By providing the security expertise and technical capabilities that have previously limited access to security posture management tools, the products enable organizations to reduce the number of incidents they face while ensuring they maintain a consistent, hardened security posture across environments.
“Most organizations don't have a clear picture of their security posture, especially across endpoints. On average, one-third of workplace endpoint devices are unmanaged, and more than half of those are completely invisible and unsecured," said Gabe Knuth, Principal Analyst at Omdia.
Huntress recently reported that abuse of remote monitoring and management (RMM) tools surged 277 percent year-over-year, while mailbox manipulation and OAuth abuse accounted for nearly 30 percent of all identity-based threats. Additional features of the new platform include:
- Managed ESPM: Helps teams control which applications can run across endpoints to block unauthorized tools like rogue RMMs, prioritize and remediate endpoint vulnerabilities through an integration with Microsoft Defender for Endpoint, and quickly demonstrate compliance with dashboards and out-of-the-box reports that reduce attestation time from days to minutes.
- Managed ISPM: Applies expert-built identity policies to Microsoft 365 based on Microsoft guidance, industry standards, and real-world attacker techniques. It continuously assesses Entra ID and Conditional Access for gaps and automatically rolls back unauthorized changes within minutes before attackers can exploit them.






















