Technical

The Evolution of Lumu for MSPs in 2023

Table of Contents

At Lumu, our dedicated product team is constantly working to ensure that our MSP offering continues to evolve and provide value to our partners and their clients. Over the last year, we’ve made significant enhancements to the platform to simplify how our partners provide 24/7 threat detection and response services. 

During the last 12 months, we analyzed 2.6 trillion+  records of network metadata, 160% more than in 2022. From that metadata, we detected 321 million+ adversarial contacts, 67% more than in 2022. You may ask why this is relevant. Well, the more network metadata we analyze, the more efficient our AI capabilities become. Through collective defense, online learning, and transfer learning AI models, our system is set up to improve with additional customers and metadata sources.

Let’s take a look at some of the product highlights and enhancements to the platform in 2023. 

Lumu for MSPs Lite and Self Service: Streamlined Cybersecurity for MSPs

We have to start by recapping the release of Lumu for MSPs Lite, which gives MSPs the ability to automatically detect and block threats at no cost. 

The offering provides the full experience of Lumu for MSPs, by providing 24/7 threat detection and response for up to 3 tenants, with 3 integrations (including integrations for data collection, response, and security operations), and up to 50 endpoints.

MPS can now autonomously manage their operations, such as adding new tenants, increasing the number of monitored endpoints of each tenant, or customizing subscription plans. 

Our streamlined checkout process and simplified pricing model further enhance operational efficiency and cost-effectiveness.

Empowering MSP Cybersecurity Teams

Lumu’s MSP offering has always been focused on helping MSPs operate cybersecurity better, this is why we made significant changes to our incident management platform. 

Even though Lumu provides 24/7 automated detection and response, we understand analysts need to be able to quickly access information in an environment where every second counts. We enhanced this view so that cyber analysts can be more efficient. This centralized view of all malicious activity provides the ability to filter, understand operational metrics, and take actions on behalf of clients.

In this section, you’ll also be able to see how many incidents have been closed or muted based on the selected timeframe.

The ‘Incident Details’ section is where teams prioritize incidents and view incidents based on what is open, muted, or closed.

Our ‘Filters’ section allows users to filter incidents based on threat type, endpoints affected, labels, contacts, date of creation, and more. These filters are designed to quickly find the incidents.

This section also allows you to search for incidents by typing keywords, download the list of incidents, refresh incidents and clear filters as needed. 

Lastly, the ‘Take Action’ option gives you the ability to select multiple incidents and take group actions like closing, muting, or marking ‘Start Working’ to let other members of the organization know that you’re working on it.

Focused on prioritization and incident management, the incident view was enhanced to make operating cybersecurity easier.

More Context, Better Decision Making

Our incidents now contain additional details around actions taken by other elements of your client’s cybersecurity stack. This helps MSPs understand what has already been done so they can focus on remediation efforts and close out the incident within the Lumu portal quickly. 

Closing the Gaps in Your Cybersecurity Operation

Our integration ecosystem has grown significantly with the addition of over 40 integrations to our product over the past 12 months This bringings our total integration count to around 125+

Integrations are a key component of our mission at Lumu as they enable MSPs to leverage their existing tools in their client’s cyber stack.

Here are some notable product integrations that were added for real-time incident response and security operations. 

Alignment with the MSP Cybersecurity Stack

We incorporated a number of new integrations designed to designate real-time responses and actions to malicious incidents on behalf of your tenants by integrating PSAs and RMM Tools.

[LOGOS] Cisco Meraki, Sophos Endpoint Protection, Trend Micro Vision One, DNSFilter, BitDefender , Malwarebytes, Sophos Firewall, Datto’s Auto Task, GLPI 

One of the more notable incident response integrations added in 2023 is Microsoft Defender.

This integration allows MSPs to designate precise actions against different threat types, leveraging threat intelligence from Lumu paired with Microsoft’s endpoint protection.

Product Recognition

Lumu was also recognized as a Leader by not one but TWO major analyst firms. Lumu is the only NDR vendor with this recognition in the MSP Market. 

Forrester named Lumu a Leader Forrester’s Network Analysis And Visibility Landscape, Q1 2023.

Between enhancements to the Lumu platform, the growth of our integration ecosystem, and industry validation it’s no doubt that 2023 was an eventful year for Lumu. We can’t wait to share all of the enhancements we have in store for next year. Until then!

Recent Posts

  • Blog

Lumu & the MSP Community: 2024 in Review

Reading Time: 4 minsLumu has worked hand-in-hand with MSPs throughout a year that consolidated the…

3 days ago
  • Blog

Reflecting on 2024: Lumu’s Innovations in SecOps

Reading Time: 5 minsLumu’s 2024 SecOps advancements focus on automation and smarter threat detection, with…

5 days ago
  • Attacks

Lumu’s Detection & Response to a Real-World DNS Tunneling Attack

Reading Time: 7 minsThis is the story of a serious DNS tunneling attack on a…

1 week ago
  • Events

Cybersecurity Insights for MSPs: Lessons from IT Nation Connect 2024

Reading Time: 4 minsDiscover the top insights from Lumu’s pre-conference workshop at IT Nation Connect,…

4 weeks ago
  • Stories

Cybersecurity Trends 2025 and Beyond: Navigating AI-Driven Evasion Techniques and Autonomous Threats for Resilient Defense

Reading Time: 2 minsAs we move into 2025, AI-driven evasion and autonomous threats will redefine…

4 weeks ago
  • Trends

CISA Reveals How 12 Ransomware Gangs are Bypassing EDRs

Reading Time: 7 minsEndpoint Detection and Response (EDR) has a critical role in most companies’…

2 months ago