Market News

MSSP Market News: AI Leads Security Growth, Consolidation, and Deals

AI in cybersecurity

This week, it felt like AI stopped being an “add-on” in security and became the core story. Cato picking up Aim Security shows how AI security market is accelerating - and how SASE isn’t just about secure connectivity anymore, but about pulling order out of the mess created by copilots, custom agents, and the shadow AI tools employees spin up. UltraViolet’s move on Black Duck is another sign: application security can’t be a box-check exercise anymore, not when AI-generated code is flooding repos. And Varonis pulling in SlashNext underlines how attackers move fluidly from inbox to identity to data, so defenses have to connect those dots too. The thread tying these deals together is simple: CISOs don’t want fragmented tools - they want unified AI-aware platforms.

The funding rounds had the same energy but from the other angle: speed. Sola’s $35M is all about getting teams to build security apps on the fly, while FireCompass is channeling AI into red teaming that actually feels like going up against a real adversary. Tidal Cyber’s raise stood out too, pushing threat-led defense so companies stop planning against hypotheticals and start planning against what attackers really do. On the integration side, the updates reflect a trend to equip MSPs and MSSPs with enterprise-grade tools they can actually package and sell. The bigger story? Everyone - vendors, investors, partners - is aligning around the same bet: AI isn’t just another feature, it’s is already reshaping how security is built, delivered, and paid for.

Market Pulse: Cybersecurity Deals, Funding, and Platform Shifts

Cato Networks acquires Aim Security: Cato Networks has acquired Aim Security to bring AI risk protection into its SASE platform, a move announced alongside surpassing $300 million in ARR. Aim’s technology enforces guardrails, monitors AI interactions, and addresses risks tied to copilots, custom agents, and shadow AI usage. By embedding these capabilities, Cato unifies network, application, and AI security in a single cloud-based fabric, reducing reliance on fragmented tools. With new funding from Acrew and full integration planned by 2026, Cato is positioning itself as the control point for both secure connectivity and enterprise AI adoption.

UltraViolet Cyber expands application security testing with Black Duck acquisition: UltraViolet Cyber has acquired Black Duck’s Application Security Testing services to address vulnerabilities driven by open-source reliance and AI-generated code. By embedding AST into its unified offensive and defensive model, UltraViolet enables earlier flaw detection, streamlined remediation, and direct integration with managed operations. The addition moves UltraViolet beyond traditional pen testing or MSSPs layering services, establishing it as a provider of continuous validation and end-to-end defense. For enterprises and federal agencies, the result is fewer reactive testing cycles, lower remediation costs, and stronger resilience across the software lifecycle.

Varonis Expands into Email Security with SlashNext: Varonis has acquired SlashNext to extend its data-first security model into one of the most targeted attack vectors: email. The integration adds AI-driven phishing and social engineering defenses, linking email protection with identity and data security in a unified flow. For MSSPs and VARs, the move strengthens the consolidation story CISOs want, replacing fragmented tools with a single platform that’s easier to justify on ROI. With email security spend rising alongside AI-powered phishing campaigns, Varonis positions itself as a vendor that protects not just sensitive data at rest, but users at the first point of contact.

Sola Security raises $35M Series A Funding: Sola Security has raised $35 million in Series A funding, bringing its total to $65 million since launching last year. The round was led by S32 with backing from M12, Microsoft’s venture arm, and New Era Capital Partners, along with earlier investors including Mike Moritz, S Capital, and Glilot Capital Partners. Founded in 2024 by cybersecurity veterans Guy Flechter and Ron Peled, Sola is tackling what it sees as stagnation in traditional security tools by using AI to accelerate response times from days to minutes. With fresh capital, the company plans to push deeper into AI and broaden its platform, positioning itself as a way for security teams to move faster and tailor solutions without vendor lock-in.

FireCompass raises $20 million in funding: FireCompass has raised $20 million in strategic funding from EC-Council’s $100M Cybersecurity Innovation Fund, bringing its total to nearly $30 million. The Bengaluru-based company delivers AI-powered automated penetration testing and red teaming, combining attack surface management, continuous threat exposure management, and PTaaS in one platform. Its agentic AI engine runs thousands of attack playbooks to mimic real adversaries, chaining vulnerabilities, moving laterally, and validating risks without false positives. With fresh capital earmarked for R&D, talent expansion, and global go-to-market, FireCompass is positioning itself as an offensive security platform built to keep pace with AI-driven attackers.

Tidal Cyber has raised $10 million in Series A funding: Tidal Cyber has raised $10 million in Series A funding to expand its Threat-Led Defense platform, which aligns security with real adversary behaviors rather than compliance checklists. Founded by veterans of MITRE and the ATT&CK Evaluations program, the company helps organizations identify coverage gaps, validate tool effectiveness, and build continuous, adversary-informed defenses. Backed by Bright Pixel Capital along with USAA, Capital One, and Veteran Ventures, the funding will accelerate product development and growth. With CEO Rick Gordon pushing to move teams past legacy approaches, Tidal Cyber is positioning Threat-Led Defense as a core enterprise security strategy.

SentinelOne partners with Pax8: SentinelOne has partnered with Pax8 to bring its Managed AI Defense program to small and mid-sized businesses through the Pax8 marketplace. The offering bundles endpoint detection, AI analytics, network discovery, vulnerability management, and threat hunting into a managed service tailored to close the skills and resource gap SMBs face. For MSPs, the partnership provides immediate market reach, a familiar procurement channel, and predictable per-endpoint pricing. With training and resources included, SentinelOne is enabling partners to deliver enterprise-grade protection from day one - shifting SMB cybersecurity from fragmented tools to a unified, AI-driven defense.

Portnox has integrated with SentinelOne: Portnox has integrated with SentinelOne to turn zero trust into real-time enforcement. By linking network controls with endpoint intelligence, the solution blocks risky devices and revokes access automatically the moment threats are detected. CEO Denny LeCompte called it an “out-of-the-box solution” that closes gaps quickly, whether isolating a ransomware-infected laptop, denying access to an unmanaged contractor device, or securing a dormant PC. For MSSPs, the multi-tenant design provides centralized visibility, fast scaling, and simplified operations without extra hardware—delivering consistent zero trust enforcement with less overhead.


Have news to share or just want to connect? Reach us anytime at [email protected] or [email protected].

Suparna Chawla Bhasin

Suparna is the Senior Managing Editor for CyberRisk Alliance’s Channel Brands, including MSSP Alert and ChannelE2E. She manages content development, sharpens editorial workflows, and ensures storytelling is tightly aligned with audience needs. With a background in technology, media, and education, she combines strategic insight with creative execution.

You can skip this ad in 5 seconds