Endpoint Security
Explore our standalone endpoint security tiers and the protection provided at each level. Leveraging Bitdefender and Huntress solutions, organizations can choose to self-manage or partner with us in a co-managed approach. Compare capabilities and build an estimate aligned with your security requirements.
Bitdefender Endpoint Security
Bitdefender Packages:
-
$6.00 endpoint/month
A foundational endpoint protection solution designed to prevent, detect, and respond to common cyber threats across Windows, macOS, and Linux systems. This service includes advanced antivirus, machine learning based threat detection, web protection, and centralized policy management. It is ideal for organizations seeking strong baseline security with minimal operational overhead while maintaining visibility into endpoint activity.
-
$9.00 endpoint/month
An enhanced endpoint security solution that introduces basic managed detection and response capabilities. In addition to the protections included in Secure, this tier adds behavioral monitoring, alert validation, and guided response actions to help identify and contain suspicious activity. Secure Plus is designed for organizations that want active threat monitoring with limited analyst involvement to support faster detection and response.
-
$12.00 endpoint/month
A fully managed endpoint detection and response solution delivering continuous monitoring, advanced threat detection, and analyst led response. This tier includes full MDR capabilities with threat hunting, incident investigation, and coordinated remediation to rapidly contain and eliminate threats. Secure Extra is ideal for organizations that require complete visibility, expert response, and a mature security posture capable of defending against sophisticated and persistent attacks.
Bitdefender Addons:
-
$5 endpoint/month
Automates security compliance tracking and reporting across systems. Maps configurations to standards, identifies gaps, and provides actionable remediation steps to maintain regulatory and security alignment.
-
$2 endpoint/month
Continuously discovers and monitors your external attack surface, identifying exposed assets, shadow IT, and misconfigurations. Reduces risk by providing visibility into what attackers can see and exploit.
-
$4 endpoint/month
An add on that extends the storage period for Endpoint Detection and Response telemetry, alerts, and investigation data to ninety days within the GravityZone platform. This allows security teams to perform deeper threat hunting, forensic analysis, and incident investigations by maintaining a longer history of endpoint activity and security events.
-
$5.00 endpoint/month
An add on that extends the storage period for Endpoint Detection and Response telemetry, alerts, and investigation data to ninety days within the GravityZone platform. This allows security teams to perform deeper threat hunting, forensic analysis, and incident investigations by maintaining a longer history of endpoint activity and security events.
-
$6 endpoint/month
An add on that extends the storage period for Endpoint Detection and Response telemetry, alerts, and investigation data to ninety days within the GravityZone platform. This allows security teams to perform deeper threat hunting, forensic analysis, and incident investigations by maintaining a longer history of endpoint activity and security events.
-
$3.50 endpoint/month
A security monitoring feature that tracks changes to critical files, system directories, and configuration items on protected endpoints and servers. It alerts administrators when files are created, modified, or deleted, providing visibility into unauthorized or suspicious activity and supporting compliance requirements such as PCI DSS, HIPAA, and other regulatory frameworks.
-
$5.00 endpoint/month
A security monitoring feature that tracks changes to critical files, system directories, and configuration items on protected endpoints and servers. It alerts administrators when files are created, modified, or deleted, providing visibility into unauthorized or suspicious activity and supporting compliance requirements such as PCI DSS, HIPAA, and other regulatory frameworks.
-
$6 endpoint/month
A security monitoring feature that tracks changes to critical files, system directories, and configuration items on protected endpoints and servers. It alerts administrators when files are created, modified, or deleted, providing visibility into unauthorized or suspicious activity and supporting compliance requirements such as PCI DSS, HIPAA, and other regulatory frameworks.
-
$1.50 endpoint/month
A centralized encryption management solution that allows administrators to deploy, monitor, and manage full disk encryption across endpoints using native operating system encryption technologies such as Microsoft BitLocker and macOS FileVault. It provides policy enforcement, encryption status visibility, and recovery of key management through the GravityZone console, helping organizations protect data at rest and meet security and compliance requirements.
-
$2.00 endpoint/month
An add on module within GravityZone that allows administrators to scan endpoints for missing operating system and third party software updates, deploy patches remotely, and track patch compliance from a centralized console. It helps reduce security risk by ensuring Windows, macOS, and supported applications remain up to date with the latest security fixes and updates.
-
$2 endpoint/month
Applies behavior-based application control to restrict unauthorized or risky processes in real time. Learns normal activity and enforces policies to reduce ransomware, living-off-the-land attacks, and misuse.
Sentinel One
-
$12.00 endpoint/month
SentinelOne Singularity Complete provides AI-powered endpoint and cloud workload protection through a unified agent. It combines prevention, EDR, behavioral detection, threat hunting, automated remediation, and one-click rollback to stop malware, ransomware, zero-day exploits, and fileless attacks. Centralized visibility and real-time telemetry help security teams investigate incidents, reduce response time, manage endpoints at scale, and protect systems online or offline.
SentinelOne Addons:
-
$5.00 endpoint/month
(200 endpoint minimum)SentinelOne Vigilance is a 24/7 managed detection and response service that monitors, investigates, and responds to endpoint and cloud security threats. SentinelOne analysts review alerts, perform threat hunting, validate incidents, and take policy-based containment actions through the Singularity platform. The service reduces alert fatigue, accelerates response, and provides expert oversight, incident details, and actionable recommendations to strengthen security operations.
-
$5.00 endpoint/month
SentinelOne Singularity Network Discovery provides real-time visibility into IP-enabled devices connected to an organization’s network. It uses existing SentinelOne agents to discover, identify, and fingerprint managed, unmanaged, rogue, and IoT devices without additional hardware or agents. Security teams can detect coverage gaps, monitor new connections, and block unauthorized devices from communicating with protected endpoints, helping reduce network attack surface and lateral movement risk.
-
$1.50 endpoint/month
SentinelOne Singularity RemoteOps Forensics enables security teams to remotely collect, preserve, and analyze forensic evidence across multiple endpoints from a single console. It automates evidence acquisition, combines forensic artifacts with real-time endpoint telemetry, and supports customizable collection profiles. This helps investigators reconstruct incidents, identify root cause, scope affected systems, and accelerate response without requiring physical access to devices.
-
$2.65 endpoint/month
SentinelOne Purple AI is an agentic AI security analyst built into the Singularity Platform. It helps security teams investigate alerts, hunt threats, analyze endpoint, identity, cloud, and third-party telemetry, and build attack timelines using natural-language prompts. Purple AI correlates evidence, explains findings, recommends response actions, and can support automated investigations, helping analysts reduce investigation time, improve consistency, and respond to threats faster.
-
$2.25 endpoint/month
SentinelOne Singularity Threat Intelligence enriches security alerts and telemetry with actionable context on threat actors, malware, indicators of compromise, campaigns, and attacker tactics. Integrated intelligence helps analysts prioritize risk, investigate incidents, hunt for emerging threats, and understand potential business impact. It connects external threat data with the Singularity Platform to improve detection, accelerate response, and support proactive security decisions.
Huntress
-
$6.00 endpoint/month
Huntress EDR delivers continuous endpoint monitoring, threat detection, and analyst led response. It works as a standalone solution with Microsoft Defender or integrates with Bitdefender endpoint security for layered protection.
-
$2.50 identity/month
Huntress Managed ITDR provides 24/7 identity threat detection and response for Microsoft 365 and Google Workspace. It monitors user accounts, sign-ins, MFA activity, inbox rules, forwarding changes, and other identity events to identify account takeover, business email compromise, suspicious access, and credential misuse. Huntress SOC analysts investigate validated threats and provide rapid remediation guidance to help contain incidents before they spread.
-
$2.50 identity/month
Huntress Managed Identity Security Posture Management continuously assesses Microsoft 365 identity configurations, permissions, policies, and account health. It identifies security gaps such as weak MFA enforcement, excessive privileges, stale accounts, unauthorized applications, and policy drift. Huntress provides prioritized findings and expert-backed remediation guidance to reduce identity-based attack paths and help prevent account takeover and business email compromise.
-
$2.00 identity/month
Huntress Managed Security Awareness Training helps employees recognize and respond to phishing, social engineering, credential theft, and other cyber threats. It combines short, story-driven lessons, realistic phishing simulations, targeted coaching, automated scheduling, manager reminders, and detailed reporting. Training is informed by current threat intelligence and supports stronger security behaviors, reduced human risk, and compliance documentation.
-
$5.00 source/month
Huntress Managed Security Information and Event Management centralizes and analyzes security-relevant logs from endpoints, servers, firewalls, network devices, cloud platforms, and identity systems. Its 24/7 SOC monitors activity, tunes detections, investigates suspicious events, and provides actionable incident reports. Smart filtering reduces noise while supporting threat hunting, investigations, compliance reporting, audit readiness, and long-term log retention.