
Work Here?
Blumira provides cloud-based SIEM services for SMBs, mid-market companies, and MSPs. It collects logs from an organization’s systems, analyzes activities for signs of threats, and alerts security teams while enabling automated responses through a subscription-based platform. The service supports regulatory compliance such as HIPAA and helps meet cyber insurance requirements, making it suitable for healthcare and other regulated sectors. Its MSP-friendly model includes Not For Resale licenses for internal MSP use, focusing on affordability and scalability to reach organizations priced out by traditional security tools.
Industries
Data & Analytics
Enterprise Software
Cybersecurity
Company Size
51-200
Company Stage
Series B
Total Funding
$27.9M
Headquarters
Ann Arbor, Michigan
Founded
2018
Help us improve and share your feedback! Did you find this helpful?
Total Funding
$27.9M
Below
Industry Average
Funded Over
3 Rounds
Industry standards
Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
Unlimited Paid Time Off
Flexible Work Hours
Remote Work Options
401(k) Retirement Plan
Company Equity
Blumira enhances EDR and ITDR to speed up threat detection and containment. Blumira has announced the release of expanded endpoint detection and response (EDR) and identity threat detection and response (ITDR) capabilities in its platform. Security teams on Blumira Respond and Automate editions can now contain active threats by isolating compromised endpoints, stopping malicious processes, and locking out attackers across Microsoft 365 and Active Directory, without ever leaving the Blumira dashboard. "Ransomware and identity-based attacks including business email compromise are top-of-mind concerns keeping IT teams up at night right now," said Matt Warner, CEO of Blumira. "Response teams shouldn't have to jump between multiple dashboards during an active breach, or have to wonder what to do next. These endpoint and identity security improvements help us deliver on our promise of manageable, scalable security for busy teams and partners." Ransomware attacks continue to increase, rising by 34% since 2024, and are seen in 44% of breaches according to Verizon's DBIR 2025 report. For IT administrators and MSP technicians managing an active incident, the difference between a contained threat and a full-blown breach often comes down to incident response times and having the right toolkit. By bringing endpoint and identity response into a unified platform where threats are detected and investigated, Blumira cuts down the time between threat detection and mitigation. "We're stopping breaches in seconds instead of minutes or hours. I don't have to find a password, log in, get to the user, revoke MFA, and change their password. I can do all of that in one click," said Matt Timm, Network Operations Center Team Lead at TR Computer Sales. "Efficiency is key, especially in a security monitoring department. For us to have everything in one central location - the information, what's happening, the ways that we can fix it, and then the feedback of how it was fixed - is huge." Stop threats fast, wherever you find them. The benefits of Blumira ITDR and EDR include: * Improved response times: Users can respond directly from a new finding, so teams move from detection to containment with less time and less clicks * Enriched threat context: Response teams have the context of an investigation, whether it's related to a compromised M365 account to shutting down privilege abuse before it escalates * Faster containment with a clear response process: IT teams have fewer tools to manage under pressure, and have the insight they need to build team confidence and security expertise Extending security operations across your toolchain. Blumira is also announcing enhancements to its Public API, giving partners and power users new capabilities to assign findings, add comments, resolve incidents, and query evidence programmatically. For MSPs managing security across multiple client environments, these additions make it easier to connect Blumira to existing PSA platforms, RMM tools, and custom workflows, keeping security operations inside the tools teams already use every day. More about
Blumira launches SOC Auto-Focus AI and enhanced MSP Partner Program to accelerate security operations. Blumira SOC Auto-Focus provides security teams the ability to quickly respond, investigate and remediate findings. Blumira, the security operations platform for growing teams and partners, today announced the launch of SOC Auto-Focus, an AI-powered security investigation tool, alongside enhancements to its Managed Service Provider (MSP) partner program. SOC Auto-Focus is designed to help IT teams and MSPs work smarter, reduce alert fatigue and accelerate incident response through contextual intelligence and expert guidance. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251015680148/en/ Blumira SOC Auto-Focus provides security teams the ability to quickly respond, investigate and remediate findings. SOC Auto-Focus is a fundamental shift for how under-resourced IT administrators and security teams approach threat investigation. Rather than replacing human decision-making, the solution enhances analyst capabilities by providing instant context, clear prioritization and guided response workflows developed by Blumira's security experts. "The security industry has been promising AI solutions that replace human judgment, but that's not what teams actually need," said Matt Warner, CEO of Blumira. "SOC Auto-Focus delivers something more valuable: the context and expertise to make better decisions faster. It's about amplifying human intelligence, not replacing it, and helping teams build their security expertise with every finding they investigate." Unlike traditional AI security tools that require extensive training periods or provide generic analysis without environmental context, SOC Auto-Focus works immediately upon deployment. The solution draws upon the deep security expertise already built into Blumira's platform, ensuring recommendations are grounded in proven security practices rather than algorithmic guesswork. "Auto-Focus translates technical alerts into plain language summaries and points me directly to the impact," said Travis Short, SOC Analyst at NineStar Connect. "It bridges the knowledge gap instantly, saving me from spending time digging through logs or Googling for answers." Blumira SOC Auto-Focus provides security teams the ability to quickly respond, investigate and remediate findings with: * Instant context with plain-language summaries of security events, along with what those events usually mean * Clear prioritization with criticality levels, recommended response timeframes, and transparent confidence ratings * Guided response with step-by-step investigation and remediation actions crafted by security experts * In-the-moment education on risk patterns and best practices that builds team expertise with every finding With SOC Auto-Focus, organizations can measure their return on investment through reduced mean time to respond to security incidents, increased successful remediation rates, decreased repeat incidents, and improved confidence among IT team members. In addition to empowering security teams with SOC Auto-Focus, Blumira is also addressing the growing demand for scalable security solutions among its MSP partners with new partner features including advanced multi-tenant management capabilities, streamlined onboarding processes for MSP clients, and enhanced reporting tools that simplify compliance documentation across multiple customer environments. For more information on SOC Auto-Focus or the refreshed MSP Partner Program, visit www.blumira.com. About Blumira Blumira is a leading provider of security operations solutions designed to make enterprise-grade security accessible to organizations of all sizes. The company's mission is to eliminate the complexity and resource barriers that prevent effective security operations. With expert-built detection rules, 24/7 security operations support, and cutting-edge automation technology, Blumira empowers IT teams and managed service providers to detect, investigate, and respond to security threats with confidence. For more information, visit blumira.com. View source version on businesswire.com:https://www.businesswire.com/news/home/20251015680148/en/ Director of Voice and Security Content [email protected]
Blumira introduces SOC Auto-Focus AI and expanded MSP program to strengthen security operations. Blumira has launched SOC Auto-Focus, an AI-powered investigation tool built to help security and IT teams respond to threats with greater speed and clarity. The company is also rolling out major enhancements to its MSP Partner Program, aimed at giving managed service providers the flexibility and tools to grow their security practices without adding headcount. AI that supports, not replaces, analysts. While much of the industry pitches automation as a replacement for human analysts, Blumira is taking a different approach. Matt Warner, Co-founder and CEO, Blumira, told MSSP Alert, "When we began developing SOC Auto-Focus, we asked ourselves what the primary security considerations are when using AI in a security operations workflow. In our review of available research on how using AI tools affects critical thinking, we found that oftentimes the error made by the human is accepting the overpromises made of its capabilities." Warner explained that Auto-Focus was intentionally designed to enhance context rather than decision-making. "We made clear at every level - including the name - that its function is enriching context so that responders can make better decisions, faster. Auto-Focus differentiates itself by augmenting human judgment, not replacing it, which AI is perfectly suited to do." By drawing on Blumira's existing library of detection rules, best-practice workflows, and attack pattern data, Auto-Focus delivers insight into what's happening, why it matters, and what similar activity typically represents. "This way, even team members, regardless of their security background, can make better decisions while still learning those patterns themselves," Warner added. Building trust in AI for the SOC. As many teams experience "AI fatigue" from tools that overpromise and underdeliver, Blumira is leaning into transparency and control. "A perfect tool that teams are reluctant to use isn't a very useful tool at all," Warner said. "The approach we landed on aligns with where security professionals want to use AI - as an assistive function that augments and extends their own abilities without giving up control or losing visibility." He emphasized that Auto-Focus also serves an educational purpose. "We provide a detailed workflow alongside each finding, acting as guidance for less-experienced admins and analysts who don't have a documented playbook for response. Each finding they respond to is another opportunity to build that security muscle." Warner pointed to workforce data underscoring the importance of this approach. "The latest ISC2 workforce study makes clear that budgets and headcount are limited, which often means organizations hire fewer, more senior analysts who must juggle both complex and routine tasks. That shift makes for less resilient teams. We need the next generation of security professionals to have opportunities for that on-the-job training necessary to build that knowledge. Our goal is that by building expertise into the Blumira platform, through tools like Auto-Focus, newcomers to security work can be more effective." MSP program built for flexibility and growth. Alongside the new AI capabilities, Blumira's updated MSP Partner Program reflects a broader focus on flexibility and scalability for service providers. "We're redesigning our MSP program around flexibility," Warner said. "We recognize that MSPs operate differently, so our new tiered editions align with how they actually work. We're eliminating annual commits to accommodate these diverse business models." Warner added that the company has also expanded its partner enablement resources. "We've drastically scaled up our onboarding process for new partners, adding more training and support through our new Partner Portal. This includes detailed guidance on how to use the MSP Portal for a fast overview of all their client accounts, and tailoring the configuration of those accounts to meet their clients' individual needs." Blumira has refined its MSP offerings with the addition of a Respond Core package, providing core detection and response features with shorter retention periods for clients who don't need a full-year term. Channel strategy and compliance enablement. As MSSPs and MSPs face mounting customer security demands, Blumira's enhanced partner model is designed to help them scale efficiently. "MSSPs and MSPs are in a challenging position right now," Warner said. "They have clients with increasing security requirements due to compliance mandates or the growing risks driven by offensive use of AI tools. Our partners want to meet those needs and stay competitive, but most can't afford to hire a new team of security experts. With Blumira, they can meet client needs with the team they already have, and grow that team's expertise over time." He added that the new partner tiers are built to evolve with a provider's security maturity. "We intentionally created partner tiers that scale with their security business, as well as continuing security education to further build that in-house expertise." Blumira is also expanding support for MSPs pursuing CMMC Level 1 and Level 2 compliance, including a comprehensive CMMC support program and shared responsibility matrices to help partners streamline certification.
Blumira, a security operations platform based in Ann Arbor, today launched new features and capabilities designed to help IT teams and managed service providers (MSPs) work smarter, reduce alert fatigue, and simplify compliance reporting.
SourceForge Spring 2025 Award Blumira Inc. is also proud to share that Blumira was named a Top Performer in the SIEM category by SourceForge for Spring 2025, a distinction that speaks to the quality and usability of its platform as reviewed by real users.
Find jobs on Simplify and start your career today
Industries
Data & Analytics
Enterprise Software
Cybersecurity
Company Size
51-200
Company Stage
Series B
Total Funding
$27.9M
Headquarters
Ann Arbor, Michigan
Founded
2018
Find jobs on Simplify and start your career today