Full-Time
Cybersecurity platform for managed service providers
$145k - $165k/yr
Seattle, WA, USA
In Person
Telecommuting within commuting distance of the Seattle office is permitted.
See people who can refer or advise you
WatchGuard Technologies provides a Unified Security Platform designed for managed service providers. It offers integrated cybersecurity products that cover network security and intelligence, advanced endpoint protection, multi-factor authentication, and secure Wi-Fi, all managed through a single platform. The platform coordinates threat intelligence, policy management, automation, and reporting to help MSPs scale their security services, improve operational efficiency, and align security operations with their clients’ needs. The key differentiator is its MSP-focused approach, offering centralized control and automation across multiple security domains to simplify provisioning, management, and ongoing protection for thousands of resellers and hundreds of thousands of end customers. The company’s goal is to enable security resellers to grow their business while delivering robust protection and streamlined operations across global customers.
Company Size
1,001-5,000
Company Stage
IPO
Headquarters
Seattle, Washington
Founded
1996
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Flexible Work Hours
Remote Work Options
Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
Disability Insurance
Health Savings Account/Flexible Spending Account
Paid Holidays
Paid Vacation
Paid Sick Leave
Paid Parental Leave
401(k) Retirement Plan
401(k) Company Match
Professional Development Budget
Adoption Assistance
Fertility Treatment Support
Childcare Support
CloudDR: bridging the gap between endpoint, email and cloud security tools. New for 2026, WatchGuard has unveiled CloudDR, a SaaS solution that helps MSPs protect cloud applications by discovering, detecting, and responding to threats. Unlike previous security tools, CloudDR can identify threats that traditional endpoint and network security tools may miss. As more and more businesses move to services which are cloud-based such as Microsoft 365, Salesforce and other SaaS platforms, the areas which attackers increasingly target include: * User accounts and identities * Cloud application misconfigurations * Unauthorized third-party applications configurations * Shadow IT and Shadow tools * Compromised credentials and suspicious access activity CloudDR protects your cloud and identities. By discovering hidden Cloud apps, lock down risky configurations and stop identity misuse, WatchGuard keeps users one step ahead of attackers. Before, once an attacker got past the security layers, if there were settings left open, attackers would be able to exploit that. Now however, with continuous visibility and detection - MSPs and customers stay protected. What CloudDR integrates directly with various SaaS platforms using agentless API connections. Downloading software isn't required, no agent is needed to deploy and there is no impact on the performance for an end user. Why CloudDR? There are four main reasons for choosing to implement CloudDR, * Unified Coverage Other solutions will only cover a specific area of a problem, whilst being specialised, they will not be capable of taking on issues outside of their remit. However, with CloudDR, it covers Shadow IT, misconfigurations and identity threats together. This therefore eliminates the complicated nature of the operations as well as the tool sprawl. * Actionable By Design WatchGuard's CloudDR is more than just sending out notifications and alerts - it delivers clear and actionable insights. Questions such as what's the issue or how can I solve this problem are asked with the built-in bulk remediation and automation. * MSP-First Architecture Multi-tenant from the start. Workflows for MSPs which can be scaled depending on the size of enterprise needing it, and due to its ease of use, it can be easily fitted into existing or new service bundles for a succinct, affordable and well managed solution. * Agentless Deployment No installation of software required and no performance drop off. CloudDR connects directly to SaaS APIs for immediate time-to-value and is usually able to be deployed within minutes in a customer environment. It is important to know however that this service is not a replacement of any directly similar product already available. It is its own full security category designed to be the bridge for businesses with gaps in their security. It monitors areas of potential weakness to find risks and threats and acts on them before they become serious security incidents. Whilst it isn't a direct replacement for anything in particular, there are some products which it can potentially replace: * Standalone SaaS security posture management tools (SSPM) which monitor Microsoft 365, Salesforce as well as other applications for misconfigurations. * Basic Shadow IT discovery tools. * Separate Identity Threat Detection and Response (ITDR) solutions for some organisations because CloudDR includes identity-based threat detection capabilities. CloudDR also helps replace many manual cloud security monitoring and auditing processes. Instead of requiring someone to complete an audit manually or periodic check-up, the platform is always monitoring cloud environments and automatically alerts administrators to emerging risks. By being automated too, it won't have the distractions of other ongoing tasks like an IT Technician would have and therefore reduces the workload of those who previously would have had to carry out the task. Based on this, it means IT teams can improve their security setup, respond to threats much quicker and operate more efficiently whilst reducing time and complexity associated with managing multiple security solutions. Despite the several possible replacements, there are still some areas which CloudDR will not replace. In some instances, it works alongside what is already in use to provide a more in-depth and substantial protection. This includes Endpoint Detection and Response (EDR) which includes solutions like WatchGuard EPDR, Microsoft Defender for Endpoint or CrowdStrike. Whilst these focus more on the endpoint devices such as monitor, detect and respond to threats on them, they provide behavioural monitoring and endpoint forensics which are not features with CloudDR. So instead CloudDR focuses on cloud applications rather than the physical devices, as a result that means organisations still require EDR solutions to provide protection for endpoints from malware and other device-based attacks. CloudDR wouldn't replace firewalls either. As firewalls protect networks by filtering traffic, stopping unauthorised traffic and enforcing security policies. CloudDR is only able to identify suspicious activity, it does not inspect network traffic or control access at the network perimeter meaning firewalls are still essential even with this new addition. Finally, it is important to know that MDR - Managed Detection and Response is not replaceable by CloudDR. The 24/7 service that combines security technology with areas such as human expertise, using threat investigation and continuous monitoring. CloudDR can detect but it cannot replace the expertise and the security operations centre, therefore if an organisation needs a constant security presence the MDR is still critical. CloudDR is not designed to replace core security tools mentioned above. Instead, it strengthens the areas these tools do not fully cover: SaaS application risk, cloud misconfigurations, identity misuse, Shadow IT, and suspicious cloud activity. EDR solutions such as WatchGuard EPDR remain essential for protecting devices from malware, ransomware, and endpoint-based attacks. Firewalls continue to protect the network perimeter by filtering traffic, enforcing access policies, and blocking unauthorised connections. MDR services also remain important for organisations that need continuous monitoring, expert investigation, and 24/7 security response. CloudDR complements these tools by providing visibility and protection across cloud applications and user identities. Rather than acting as a single centralised system that controls everything, it closes the gap between endpoint, network, and managed detection tools. When used alongside EDR, firewalls, and MDR, CloudDR becomes an additional layer in a broader defence strategy, helping MSPs and customers build a more complete, efficient, and resilient security posture. If you would you like to speak to one of its team to discuss CloudDR or improving your network security, get in touch: [email protected] or 01488 647 647
WatchGuard Technologies has announced a strategic partnership with Halo to help managed service providers deliver security services more efficiently. The partnership integrates WatchGuard Cloud with HaloPSA, embedding unified security operations directly into Halo's platform. The integration enables automated ticketing workflows driven by security events and licence signals, whilst improving contract alignment and billing accuracy through verified asset data. According to the Service Desk Institute, automation can reduce ticket volumes by an average of 30%, lowering operating costs. WatchGuard's unified security platform combines network, identity, endpoint and managed detection and response capabilities under WatchGuard Cloud. MSPs can now manage these operations through a single agent within HaloPSA, reducing tool sprawl and improving service consistency whilst minimising manual effort.
WatchGuard Technologies has launched a new Endpoint Security Portfolio designed to disrupt traditional endpoint detection and response licensing models. The offering includes enterprise-grade features like AI-powered security, vulnerability management and URL filtering as standard, rather than costly add-ons. Targeted at managed service providers and IT teams, the platform uses a single agent and management console to simplify deployment. It offers tiered licensing from Basic to Elite, with pay-as-you-go options and the ability to add services like 24/7 managed detection and response, patch management and multi-factor authentication. WatchGuard's VP of Endpoint Security, Adam Winston, criticised competitors for charging premium prices whilst making minimal product advancements. The new portfolio aims to provide advanced protection accessible to organisations of any size without excessive complexity or operational overhead.
WatchGuard Technologies has launched expanded network detection and response (NDR) capabilities designed to simplify advanced threat detection for managed service providers and small to midsize enterprises. The new offerings include WatchGuard NDR for Firebox, Managed NDR and Total NDR. NDR for Firebox embeds detection directly into existing firewall environments, eliminating the need for standalone sensors or additional hardware. Managed NDR services, delivered by WatchGuard's Security Operations Centre, provide continuous monitoring and guided response for organisations without dedicated security teams. Total NDR integrates with ThreatSync XDR and enables automated IP blocking across third-party firewalls from Fortinet, Palo Alto Networks and Check Point. The company aims to address security gaps exploited by threat actors using encrypted traffic and stolen credentials, making NDR accessible without requiring specialised staff or infrastructure.
WatchGuard expands NDR capabilities, making advanced network threat detection practical for MSPs and midmarket organizations. Embedded detection, managed services, and automated response simplify NDR adoption for SMEs and MSPs. SEATTLE, March 26, 2026 (GLOBE NEWSWIRE) - WatchGuard(R) Technologies, a global leader in unified cybersecurity for MSPs, today announced new WatchGuard NDR for Firebox, Managed NDR and Total NDR offerings for organizations to easily deploy and scale AI-powered threat detection that uncovers, investigates and contains malicious activity without added complexity. This expansion of its award-winning network detection and response (NDR) capabilities further enables small and midsize enterprises (SMEs) and managed service providers (MSPs) to address critical network security gaps vulnerable to modern exploitation. The newly expanded WatchGuard NDR capabilities include: * WatchGuard NDR for Firebox embeds advanced detection directly into existing firewall environments, eliminating the need for standalone sensors or new hardware. Organizations gain deep traffic visibility and behavioral analysis using telemetry already present within their networks. Delivered through a unified management experience and integrated into the WatchGuard Unified Security Platform(R), detection becomes a natural extension of existing security operations rather than a separate tool requiring additional oversight. * For organizations without dedicated security operations teams, WatchGuard Managed NDR services, delivered by the WatchGuard Security Operations Center (SOC), provide continuous monitoring, investigation, and guided response. This allows MSPs and SMEs to operationalize advanced detection without building or staffing an internal SOC. * Total NDR extends coverage through integration with ThreatSync XDR, while WatchGuard NDR enables automated IP blocking across third-party firewalls from Fortinet, Palo Alto Networks and Check Point, supporting coordinated enforcement across multi-vendor environments and accelerating threat containment. "Organizations understand they need detection beyond the firewall, but operational complexity has slowed adoption," said Andrew Young, chief product officer at WatchGuard. "We're simplifying how advanced detection is deployed and managed, so MSPs and IT teams can operationalize NDR without adding infrastructure, overhead, or specialized staff." By combining embedded detection, managed expertise and automated cross-platform response, WatchGuard is transforming network detection and response from a specialized capability into an accessible, scalable tenet of modern security operations. Threat actors routinely exploit encrypted traffic, stolen credentials, and trusted administrative tools to move laterally within a network and remain undetected. NDR has emerged as a critical layer for uncovering high-impact threats hidden within legitimate network traffic, but the technical and staffing resources required to support legacy solutions have prevented widespread MSP and SME adoption. WatchGuard's NDR capabilities analyze behavioral patterns across users, devices, and connections to identify malicious intent earlier, reduce attacker dwell time and limit breach impact. With this expansion, WatchGuard builds on its award-winning NDR solution, recognized by CRN as Network Security Product of the Year and by SPARK Matrix as a Leader, while making NDR more practical for everyday deployment and operations. "Many midmarket organizations recognize the importance of NDR but struggle with deployment and operational complexity," said Chris Kissel, research vice president, Security & Trust Products group at IDC. "Embedding detection into existing infrastructure and enabling automated response across mixed environments significantly lowers the barrier to adopting advanced threat protection."