cyGlass logo

cyGlass

by Watchguard · Since 2023
No reviews yet
ActiveAvailable globallyCloud
Quick facts
VendorWatchguard
Year launched2023
StatusActive
LocationLevel 7 99 Mount Street North Sydney NSW 2060 Australia
Countries servedGlobal
Languages3
Integrations1+
Free tier
Free trial
Contact salesYES

About cyGlass

CyGlass is a hybrid network defense software from WatchGuard that supports cybersecurity for modern businesses. It combines XDR security, zero trust security, and insights into cybersecurity trends so organizations can protect their assets effectively. The solution is tailored for hybrid cloud environments, providing a comprehensive approach to security challenges. CyGlass aims to assist businesses by focusing on the specific needs of existing customers while continuing to develop reliable security measures. Key capabilities: XDR security zero trust security insights into cybersecurity trends contact options additional resources for MSP and MSSP guidance Best for: businesses that need to secure hybrid cloud networks.

CyGlass Hybrid Network Defense, now part of WatchGuard’s Unified Security Platform under ThreatSync+ NDR, delivers a compelling solution for midsize and small organizations seeking comprehensive cybersecurity across increasingly complex environments. Its core strength lies in its ability to unify threat detection across on-premise networks, remote users, and cloud services, especially within the Microsoft ecosystem. Designed to be intuitive and immediately functional, CyGlass emphasizes ease of use, allowing IT and security teams to activate critical threat monitoring and remediation tools within minutes—without deploying new hardware or undergoing extensive configurations. This frictionless setup, combined with the platform’s plain-English explanations, integrated guidance, and automated controls, makes advanced network defense more accessible to organizations with limited cybersecurity staff or expertise. What sets CyGlass apart is its robust AI-driven architecture. Utilizing over a hundred unsupervised and semi-supervised machine learning models, it continuously analyzes user behavior, access patterns, and communications to detect anomalies and surface high-risk threats in real time. Its AI models are designed not just to generate alerts but to correlate events and assign risk scores, helping security teams prioritize their response efficiently.

Pros & Cons

What users like
  • +AI-driven threat detection: Uses over 100 machine learning models to identify anomalies across user activity, file movement, and network traffic.
  • +Unified visibility: Offers a single-pane view of risks across on-premises, cloud, and hybrid environments.
  • +Microsoft ecosystem integration: Provides specialized detection for M365, Azure, and Active Directory threats.
  • +Prebuilt compliance tools: Includes automated controls and reports aligned with frameworks like NIST and CSF.
  • +User-friendly design: Plain-language alerts and investigation guidance make it accessible to both technical and non-technical teams.
  • +Quick deployment: Cloud-native, agentless setup with no hardware required—ideal for midsize and small organizations.
What users flag
  • Limited public pricing info: Requires demo or sales contact to understand cost structure.
  • Focused scope: Primarily centered on network and cloud threat detection; may need to be paired with endpoint or identity-specific tools for full coverage.
  • Transition phase: As it integrates into WatchGuard’s broader platform, some features or branding may evolve, which could affect continuity for existing users.

Features

Key features

Holistic Single View of Risks and Threats
Provides a unified view across on-premises networks, remote workers, cloud platforms, and applications, allowing IT and security teams to see all risks and unfolding attacks.
Award-Winning AI-Based Risk and Threat Detection
Utilizes over a hundred unsupervised and semi-supervised machine-learning models to detect, correlate, and prioritize unusual activities (authentication, access, communications, file events) with risk scores.
M365, AD, and Azure Threat Detection and Response
Uniquely detects and surfaces application, data, and identity risks within Microsoft 365, Azure, and Active Directory, correlating events for fast remediation.
Automated Continuous Regulatory Compliance & Reporting
Provides prebuilt policy objectives that activate automated controls and effectiveness reports, covering regulations/frameworks like CSF or NIST.
Risks, Threats, and Remediation in Plain English
Simplifies security for IT and security teams with plain language explanations, integrated definitions, investigation guidance, and support for quick understanding and remediation.
Fast, Easy, and Affordable Deployment
Gets up and running in minutes with no additional hardware or software, integrates seamlessly, and is priced to meet the budgets of midsize and small organizations.

Additional features

Simplified Security
Designed to make cybersecurity less complex for businesses.
Holistic Single View of Risks and Threats
Provides a unified perspective across on-premises, remote workers, and cloud environments.
Visibility into Device, Network, Cloud, and User Risk
Offers insight into security risks across various IT components and users.
AI-Driven, Correlated Threat Detection
Uses artificial intelligence to detect threats and connect related events.
Immediate Remediation
Provides quick solutions for identified threats.
Automated Continuous Regulatory Compliance
Automatically helps maintain adherence to regulations.
Automated Reporting
Generates reports for compliance and security posture.
Award-Winning AI-Based Detection
Utilizes machine learning models for risk and threat identification.
Unsupervised and Semi-Supervised Machine-Learning Models
Employs advanced AI techniques for threat detection.
Detection of Unusual Activities
Surfaces anomalous authentication, access, communications, and file events.
Risk Score Calculation
Prioritizes remediation activities based on calculated risk levels.
Threat Detection Models
Includes models for Anomalous User Activity, Anomalous Network and Cloud Communications, High-Risk File Movement/Volume, and High-Risk North/South Network Traffic.
M365 Threat Detection and Response
Detects and surfaces risks within Microsoft 365 applications and data.
AD Threat Detection and Response
Identifies and responds to threats within Active Directory.
Azure Threat Detection and Response
Detects and surfaces risks within Azure cloud environments.
Correlating Authentication and Access Control Events
Connects security events related to user authentication and access.
Incident Prioritization
Ranks incidents by severity to guide response.
Fast, Efficient Remediation
Provides quick and effective solutions to security issues.
In-Depth Visibility
Offers detailed insight into network and cloud activities.
Prebuilt Controls and Reports
Provides ready-to-use security controls and reporting templates.
Smart Alerts
Intelligent alerts that focus security teams on important issues.
Plain Language Explanations
Presents risks and threats in easy-to-understand terms.
Integrated Definitions
Provides definitions of security terms within the platform.
Investigation Guidance
Offers instructions on how to investigate security incidents.
Support
Provides assistance for users.
Threat Correlations Across Users, Endpoints, Networks, and Cloud
Connects disparate security events to provide full context.
Single Investigation View
Consolidates information about an event, its danger, involved accounts, IPs, and locations.
Up and Running in Minutes
Quick deployment time.
No Additional Hardware or Software Required
Operates without extra infrastructure needs.
Seamless Integration with Existing Infrastructure
Works well with current IT setups.
Managed Remotely
Can be fully controlled from a distant location.
Designed and Priced for Midsize and Small Organizations
Affordable and suitable for smaller business budgets.
Prebuilt Policy Objectives
Activates automated controls for various threats (e.g., ransomware defense, rogue device identification) and compliance frameworks (CSF, NIST).

Pricing

Free trial
Free version
Request a quote
Promo Offer

Countries & Languages

Global
Countries served
3
Interface languages
10
Billing currencies

Interface languages

EnglishSpanishFrench

Billing currencies

🇺🇸USD🇪🇺EUR🇬🇧GBP🇦🇺AUD🇨🇦CAD🇯🇵JPY🇨🇭CHF🇨🇳CNY🇮🇳INR🇷🇺RUB

No reviews yet

Be the first to drop a review

Alternatives to cyGlass

S2Team logo

S2Team

S2Team is a human risk management platform for organizations. It excels by turning employee cybersecurity…

iOCO logo

iOCO

iOCO is one of Africa’s largest technology solutions and digital transformation companies, offering a broad…

Trend Vision One logo

Trend Vision One

Trend Vision One is a cybersecurity platform from Trend Micro that provides an AI-powered solution…

SOC360 logo

SOC360

SOC360 is a cybersecurity software platform from CyberSOC Africa that provides threat detection and response…

HackenProof logo

HackenProof

HackenProof is a cybersecurity platform from HackenProof, Inc. that focuses on vulnerability management. It includes…

Cypherleak logo

Cypherleak

Cypherleak is a risk monitoring platform from Cypherleak that helps protect the business. It combines…

Often compared with cyGlass

Compare any two tools →
S2Team logo
S2Team
Cybersecurity
0.0
iOCO logo
iOCO
IT Management
0.0
Trend Vision One logo
Trend Vision One
Cybersecurity
0.0
SOC360 logo
SOC360
Managed Detection and Response (MDR)
0.0