F

Fortra

Integrated cybersecurity products and services provider

Principal Customer Success Manager

Full-TimeUpdated on 10/1/2026
$130k - $150k/yr
Expert
Bachelor's, Master's
Remote in USA
RemoteRemote within the United States, with customer travel of up to 25% as required.

About the job

Requirements
  • Typically requires 10 to 12 years in the current role.
  • Requires 15+ years of related experience in strategic account management or customer success management in a technical environment.
  • Typically requires a bachelor's degree with 15+ years of experience, an advanced degree with 12+ years of experience, or equivalent.
  • Requires excellent presentation, written, and oral communication skills.
  • Requires strong interpersonal skills, high energy, enthusiasm, integrity, and authenticity.
  • Requires flexibility, a results-oriented focus, resourcefulness, and exceptional problem-solving abilities.
  • Requires the ability to manage demanding situations and effectively prioritize tasks.
  • Requires strong organizational and time-management skills with the ability to manage multiple projects.
  • Requires cross-functional leadership and team-coordination skills.
  • Requires the ability to gain credibility, motivate, provide leadership, work with a diverse customer base, and maintain a positive attitude.
  • Requires the ability to navigate difficult and complex customer concerns.
  • Requires creative problem-solving and confidence in spearheading solutions.
  • Requires the ability to investigate and resolve issues resourcefully before escalating.
  • Requires subject-matter expertise in multiple brands.
  • Requires exceptional negotiation and persuasion skills and tenacity.
  • Requires account ownership and the ability to navigate all levels of client organizations, including executives, to build strategic and healthy business relationships.
  • Must be able and willing to travel on-site for customer visits as required by the business, up to 25%.
  • Requires keyboarding for 80% of the day and primarily phone and computer work.
  • Requires strong analytical and problem-solving skills with keen attention to detail.
Responsibilities
  • Maintain a strong understanding of the company’s solutions and emerging cybersecurity trends to provide valuable customer insights and protect customer interests.
  • Provide expert guidance on product capabilities and customize solutions to customer-specific needs and industry requirements.
  • Prescribe adoption and use of product features, functionality, and services to help customers achieve desired outcomes.
  • Articulate return on investment and long-term business impact to support customers’ strategic objectives.
  • Establish and manage the customer journey from onboarding through renewal to drive satisfaction, adoption, and retention.
  • Understand customer business drivers and success criteria to develop and advise on tailored Customer Success Plans.
  • Develop strategic recommendations from data insights to identify trends, risks, and opportunities that improve customer outcomes and advance customer success strategies.
  • Develop and implement action plans based on customer goals and align them with internal business strategies.
  • Maintain high customer retention and recurring-revenue retention rates.
  • Manage customer satisfaction throughout the customer lifecycle.
  • Create and maintain referenceable, healthy customers and executive-level relationships.
  • Build relationships across customer organizations from frontline teams through executive leadership.
  • Partner with executive-level customers to identify business challenges and develop tailored solutions by promoting company offerings.
  • Work with Sales Engineers and Account Executives to design solutions, create account plans, and identify cross-selling opportunities.
  • Align product value with desired business outcomes to foster long-term partnerships and customer advocacy.
  • Deliver presentations tailored to technical and non-technical audiences.
  • Diagnose and resolve escalated customer concerns and serve as the leadership focal point for communication and troubleshooting in critical situations.
  • Manage complex customer relationships, understand customer needs, and provide timely solutions.
  • Maintain relationships with assigned customers and serve as a trusted advisor to key influencers and decision-makers.
  • Prioritize customer needs and respond to risks or challenges to maintain high satisfaction.
  • Ensure accuracy and consistency in customer deliverables and strategy execution.
  • Update the customer relationship management system and other tools with opportunities, account details, and relevant business information.
  • Identify and nurture upsell opportunities with the sales team.
  • Collect and communicate customer feedback to internal teams.
  • Influence sales, product, and services teams to support onboarding, proactive support, and strategic solution alignment.
  • Assist Customer Success Managers by sharing best practices and providing guidance.
  • Lead special projects that enhance customer engagement, optimize processes, or support broader business initiatives.
  • Own high-value strategic customer accounts and maintain executive-level alignment on goals and value.
  • Identify churn risks and implement proactive mitigation strategies.
  • Drive cross-functional actions to resolve critical issues and minimize customer attrition.
  • Develop and execute risk-mitigation plans for strategic customers.
  • Develop, implement, and refine best practices, methods, and processes that improve Customer Success team efficiency and scalability.
  • Assess and report customer health metrics, account status, retention risks, and growth opportunities to upper management.
  • Develop and execute customer success strategies at the organizational level with C-suite leaders and managers.
  • Schedule and lead customer meetings and executive business reviews focused on business initiatives, product updates, and success plans.
  • Ensure subject-matter experts and relevant stakeholders participate in strategic customer discussions.
  • Continuously refine business-analysis processes to improve efficiency and outcomes.

About the company

Fortra provides a suite of cybersecurity products and services that help businesses protect against cyber threats. It offers integrated solutions across threat detection and response, data protection, network security, and security automation, delivered through subscriptions and licenses with ongoing support. The products are designed to work together as a scalable, end-to-end security stack that clients can deploy and manage as their needs grow. What sets Fortra apart is its customer-centric approach—focusing on simplifying security, delivering integrated tools that work together, and providing continuous support to boost the client’s security posture. The goal is to help organizations operate securely and efficiently by reducing complexity and automating security processes.

Company Size

1,001-5,000

Company Stage

Growth Equity (Venture Capital)

Total Funding

N/A

Headquarters

Eden Prairie, Minnesota

Founded

1991

Get referred to Fortra

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • July 29, 2026 Europe expansion opens regulated buyers needing EU data sovereignty.
  • May 7, 2026 FedRAMP High pursuit targets federal and defense budgets.
  • Automate 26.1 adds Graph migration before Microsoft's October 1, 2026 EWS retirement.

What critics are saying

  • CVE-2026-9862 in BoKS exposes remote command injection on port 6507.
  • GoAnywhere and Outlook Plugin updates signal recurring patch pressure across core products.
  • One major exploit or breach can poison Fortra's trust in privileged access tools.

What makes Fortra unique

  • Fortra bundles data security, MFT, and offensive security across one platform.
  • Zero-Point Security acquisition deepens Cobalt Strike, Core Impact, and Outflank training.
  • Cloud Email Protection now supports Europe data residency and sovereign hosting.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Flexible Work Hours

Growth & Insights and Company News

Headcount

6 month growth

↑ 1%

1 year growth

↑ 1%

2 year growth

↑ 1%
SmartTechNXT
Sep 14th, 2026
Microsoft EWS retires 1 October 2026: Automate 26.1 makes the move to Graph simpler.

Microsoft EWS retires 1 October 2026: Automate 26.1 makes the move to Graph simpler. What's new in Automate version 26.1? Fortra has released Automate 26.1, bringing several updates that directly affect how organisations manage their automation environments. The most significant change addresses Microsoft's retirement of Exchange Web Services (EWS) for Exchange Online, effective 1 October 2026. Any business running email-based automation processes through EWS will need to transition to Microsoft Graph before that deadline. Automate 26.1 builds Microsoft Graph support directly into the platform, making the transition straightforward for existing users. Rather than requiring a complex migration, the upgrade integrates Graph protocols natively, so email-based automation workflows can continue to operate beyond the EWS end-of-life date with minimal disruption. Beyond the Graph migration, this release introduces multi-factor authentication (MFA) for the Management Console, adding a practical security layer for teams accessing and managing their Automate environment. The release also delivers enhanced SFTP controls and improved failure logging, giving operations teams better visibility when diagnosing file-transfer issues. These capabilities are included in the standard Fortra Automate upgrade, with no changes to the existing edition or licensing structure. SmartTechNXT, as a certified Fortra implementation partner, can assist with assessing your current Automate environment, planning the upgrade, and providing the technical support needed to implement it. With the October deadline approaching, it is worth reviewing your setup sooner rather than later to ensure a smooth transition. If you would like SmartTechNXT to review your current Automate setup and advise on the upgrade path, get in touch, and SmartTechNXT can arrange a convenient time.

PR Newswire
Jul 29th, 2026
Fortra expands Cloud Email Protection to Europe.

Fortra expands Cloud Email Protection to Europe. Jul 29, 2026, 10:00 ET The industry's first cloud-native email security solution now fully supports European data sovereignty requirements MINNEAPOLIS, July 29, 2026 /PRNewswire/ - Fortra, a global cybersecurity software and services provider, today announced the expansion of its transformative Cloud Email Protection solution into Europe, enabling organizations to defend against advanced email threats while meeting European Union data residency requirements. Purpose-built for modern cloud environments, Fortra's Cloud Email Protection stops threats that bypass traditional defenses using a combination of AI-powered detection, global threat intelligence from the Fortra platform, and automated remediation. As one of the industry's early cloud-native email security platforms, Cloud Email Protection was created with machine learning and AI models as its core, helping organizations simplify and scale email protection while stopping threats like business email compromise, spear phishing, and targeted social engineering. Organizations across Europe increasingly require security solutions that allow sensitive email data to remain within European jurisdictions. Fortra's European deployment in ISO27001/SOC2 datacenters enables customers to keep their data in-region, supporting local compliance requirements while maintaining enterprise-grade protection. Built with privacy-by-design principles, the platform minimizes the collection of personal information while protecting email communications through layered security controls including encryption, access management, and comprehensive auditing. Customers retain control of their data while benefiting from enterprise email security. Administrative access, data handling practices, and regional hosting support organizations' strict sovereignty requirements. "Organizations need email security that keeps pace with today's threat landscape while supporting regional compliance requirements," said Aaron Cockerill, Chief Product Officer at Fortra. "Cloud Email Protection has used machine learning and AI as a foundational part of its detection capabilities since its inception as a cloud-native solution. This expansion ensures customers in Europe can benefit from that advanced protection while detecting and eliminating threats faster - without adding operational complexity." About Fortra Fortra is a data security company that delivers AI-amplified solutions to help organizations use and protect data with confidence. Powered by purpose-built AI, highly unique data sources and intelligence, and modular delivery, Fortra enables organizations to reduce AI risk, identify threats faster, and strengthen their cyber posture. Learn more about the market's most comprehensive cybersecurity platform at fortra.com. SOURCE Fortra

H&D
Jul 29th, 2026
Fortra releases new updates for GoAnywhere: what HANDD customers need to know.

Fortra releases new updates for GoAnywhere: what HANDD customers need to know. Posted by HANDD on 29th July 2026 At HANDD, HANDD Business Solutions Ltd is always keeping a close eye on the latest developments from its technology partners, and this month, Fortra has rolled out a significant round of updates across the GoAnywhere product family, covering MFT, Agents, Gateway, and the Outlook Plugin. Below, HANDD Business Solutions Ltd break down what's new, what's fixed, and what HANDD Business Solutions Ltd recommend for your environment. GoAnywhere MFT 7.10.1. The standout item in this release is Fortra's renewed Drummond Certification for GoAnywhere MFT, reaffirming its compliance with industry interoperability standards - good news for organizations that rely on that certification as part of their vendor assurance process. Other key enhancements include: * New V2 RADIUS provider with Message Authenticator support, giving admins a more secure option for two-factor authentication and RADIUS login methods. * Lucene Directory Type flag (Auto, NIO, or MMAP), offering more control over search indexing behavior, along with a smoother migration path from the legacy system property and better support for Windows UNC paths at startup. * Agent Transfer performance options, including opt-in thread caching and thread pooling for faster transfers. * Improved security controls across Web Client pages and REST APIs. * A reworked approach to generating Job and File Audit IDs, guaranteeing uniqueness without relying on database or cluster resources (note: ID values will appear larger, but ordering is preserved). On the fixes side, Fortra resolved a memory leak tied to queued transfer requests, a race condition affecting job cancellation during shutdown, and several SFTP/SSH issues - including a timestamp preservation bug and a proxy authentication failure in the Mina SSH provider. Clustered environments also benefit from a fix ensuring Active Transfers display activity across all nodes, not just the local one. Underlying components have also been refreshed: Apache Tomcat (9.0.120), Netty (4.2.15), and the PostgreSQL JDBC driver (42.7.11), now verified with an automated connectivity smoke test. GoAnywhere agents 3.5.0. A notable security enhancement in this release: Agent executables are now digitally signed with a trusted code-signing certificate, strengthening trust and integrity verification across deployed agents. Fortra has also made the client/server connection bridge optimization for reverse and forward proxying - previously opt-in - enabled by default, improving data transfer efficiency out of the box. Additional updates include a fix for UDP back-pressure in Gateway that should meaningfully reduce packet loss, plus updates to the Azul Java 11 runtime (11.0.31) and log4j (2.25.4). GoAnywhere Gateway 2.6.1. Gateway's release centers on transfer setup performance, with an improved threading model that speeds up Agent transfer initialization. It also carries over several fixes shared with MFT - including the SSH command timeout issue, the SFTP timestamp preservation fix, and the Mina SSH proxy authentication fix - along with the PostgreSQL JDBC driver upgrade and its new connectivity smoke test. Outlook Plugin 3.3.1 - security update. This release is smaller in scope but important: Fortra has upgraded the log4net package from 2.0.15 to 3.3.2, resolving CVE-2026-40021. HANDD Business Solutions Ltd strongly encourage all Outlook Plugin users to prioritize this update. HANDD's recommendation. Given the security-relevant changes across this release cycle - the renewed Drummond Certification, RADIUS Message Authenticator support, tightened Web Client/REST API controls, digitally signed Agent executables, and the CVE-2026-40021 fix in the Outlook Plugin - HANDD Business Solutions Ltd recommend planning your upgrade across your GoAnywhere estate as soon as practical. As always, back up your environment before upgrading and review Fortra's full release notes for any configuration details relevant to your setup. If you'd like support planning or carrying out your upgrade, HANDD's team is on hand to help - get in touch with HANDD Business Solutions Ltd today. Need more information or assistance? If you have any questions about these updates or require help with your GoAnywhere upgrade, please contact its support team at [email protected].

VPN Central
Jun 18th, 2026
Fortra Access Manager vulnerability enables remote command injection attacks.

Fortra Access Manager vulnerability enables remote command injection attacks. 6 min. read Published on June 18, 2026 Fortra has disclosed a critical command injection vulnerability in Core Privileged Access Manager, also known as BoKS, that can let a remote attacker run operating system commands on affected systems. The flaw is tracked as CVE-2026-9862 and affects the boks_autoregisterd service. According to Fortra advisory FI-2026-007, an attacker with network access to the service may execute commands with the privileges of the service during autoregistration processing. BEST SPRING 2026 DEALS The issue carries a critical 9.8 CVSS 3.1 score because exploitation requires network access, low attack complexity, no authentication, and no user interaction, according to the NVD entry for CVE-2026-9862. What CVE-2026-9862 affects. Core Privileged Access Manager is Fortra's privileged access management platform for Linux and UNIX environments. Fortra describes Core Privileged Access Manager as a way to centralize security policy, account management, access control, and privileged access enforcement across multi-vendor server environments. The vulnerable component is boks_autoregisterd, which supports host autoregistration in BoKS deployments. Fortra says the service listens on TCP port 6507 by default, which means exposure depends heavily on firewall rules and network segmentation. NVD lists the affected versions as boks-server 8.1.0.0 through 8.1.0.22 and boks-server 9.0.0.0 through 9.0.0.4. Why the vulnerability is critical. CVE-2026-9862 is classified as CWE-78, which covers improper neutralization of special elements used in an operating system command. The MITRE CWE-78 definition explains that this weakness occurs when externally influenced input can modify the intended command before it reaches the operating system. In practical terms, a remote attacker who can reach boks_autoregisterd may be able to inject commands into the autoregistration workflow. Those commands would run with the privileges assigned to the service, which can create a serious path to system compromise. The risk rises further because BoKS controls privileged access. A compromised privileged access management component can expose sensitive administration workflows, disrupt authentication controls, or help an attacker move deeper into a Linux or UNIX server environment. Fortra recommends restricting access to port 6507. Fortra's immediate workaround is to restrict network access to boks_autoregisterd until fixed builds are deployed. Administrators should limit TCP port 6507 to trusted management networks and block access from untrusted internal segments and the public internet. Where autoregistration is not required, Fortra also recommends disabling the service through the BoKS Master configuration. The Fortra security advisory says administrators can comment out the autoregisterd line in the boksinit configuration and then reload boks_init or restart BoKS. Disabling the service prevents exploitation through boks_autoregisterd, but it also stops autoregistration until the configuration is restored. Organizations should plan that change carefully in environments where automated host onboarding is still active. Affected versions and exposure checklist. The National Vulnerability Database says the flaw affects specific BoKS server 8.1 and 9.0 builds and maps the weakness to CWE-78. NVD also records CISA ADP data that marks the vulnerability as automatable with total technical impact. That does not mean every BoKS deployment is equally exposed. The most urgent cases are systems where boks_autoregisterd listens on a reachable network interface and where port 6507 can be reached from untrusted networks. Administrators should answer these questions immediately: * Are VPNCentral running boks-server 8.1.0.0 through 8.1.0.22? * Are VPNCentral running boks-server 9.0.0.0 through 9.0.0.4? * Is boks_autoregisterd enabled on the BoKS Master? * Is TCP port 6507 reachable from outside the management network? * Do firewall logs show unexpected traffic to port 6507? * Do BoKS logs show unusual autoregistration activity? * Can autoregistration be disabled until fixed builds are installed? Why boks deployments need fast mitigation. Fortra's BoKS platform is used to manage accounts, access, privilege enforcement, sudo controls, and administration across Linux and UNIX environments. That makes the product a high-value target when a critical network-reachable flaw appears. An attacker who can run commands through a privileged service may attempt to alter files, deploy malware, create persistence, tamper with access controls, or use the affected host as a staging point for lateral movement. Security teams should treat port 6507 exposure as an emergency configuration issue. Even before fixed builds are available, network-level restrictions can sharply reduce the attack surface. How security teams should respond. Organizations should start with containment. Limit access to boks_autoregisterd, disable the service where possible, and confirm whether affected BoKS server versions are present in production, staging, and backup environments. Teams should then review logs for suspicious activity. Look for unexpected autoregistration attempts, unfamiliar source IP addresses, abnormal process execution, changed configuration files, or signs of shell command execution around the BoKS service. The CWE guidance for command injection also highlights the value of least privilege, sandboxing, strict input handling, and firewall controls. For customers waiting on fixed builds, those defensive layers can help limit both exploitability and impact. No public exploitation confirmed yet, but risk remains high. Fortra's advisory and NVD listing do not currently state that CVE-2026-9862 has been exploited in active attacks. However, the vulnerability is network-reachable, unauthenticated, low-complexity, and affects privileged access infrastructure. That combination makes delayed mitigation risky. Organizations should not wait for public exploit activity before restricting access to the vulnerable service. The safest response is to assume that exposed boks_autoregisterd services will attract scanning. Restrict port 6507, disable autoregistration where possible, monitor for suspicious activity, and deploy Fortra's fixed builds as soon as they are released. Faq. What is CVE-2026-9862? CVE-2026-9862 is a critical OS command injection vulnerability in Fortra Core Privileged Access Manager (BoKS). It affects the boks_autoregisterd service and can allow a remote unauthenticated attacker with network access to execute commands with the service's privileges. Which Fortra BoKS versions are affected? NVD lists boks-server 8.1.0.0 through 8.1.0.22 and boks-server 9.0.0.0 through 9.0.0.4 as affected by CVE-2026-9862. Is CVE-2026-9862 being exploited in the wild? Fortra's advisory and the NVD entry do not currently state that CVE-2026-9862 has been exploited in active attacks. Even so, the flaw is critical because it is remotely reachable, unauthenticated, and can have total technical impact. What port does the vulnerable BoKS service use? Fortra says boks_autoregisterd listens on TCP port 6507 by default. Administrators should restrict this port to trusted management networks or disable the service if autoregistration is not required. How can organizations mitigate CVE-2026-9862? Organizations should restrict network access to boks_autoregisterd, block untrusted traffic to TCP port 6507, disable autoregistration where possible, review logs for suspicious activity, and install Fortra's fixed builds as soon as they become available. Readers help support VPNCentral. VPNCentral may get a commission if you buy through its links. Improve this guide User forum 0 messages

Angel Business Communications Ltd
Jun 1st, 2026
Climb Channel Solutions expands cybersecurity reach with Fortra Partnership in UK&I.

Climb Channel Solutions expands cybersecurity reach with Fortra Partnership in UK&I. Climb Channel Solutions enhances its cybersecurity portfolio through partnership expansion with Fortra, targeting the UK and Ireland markets. * Monday, 1st June 2026 Posted 19 hours ago in by Sophie Milburn Climb Channel Solutions, a global technology distributor, has announced a new partnership in the UK and Ireland with cybersecurity provider Fortra. The agreement builds on an existing North American partnership and is intended to expand Climb's cybersecurity offering in response to market demand. Climb was recently named North America Commercial Partner of the Year at Fortra's first Americas Partner Summit. The company aims to incorporate Fortra's technologies to support demand for data-focused security solutions. Fortra provides a cybersecurity platform covering areas including data security, brand protection, exposure management, and adversary emulation. Its tools are used to support organisations in securing and managing sensitive data throughout its lifecycle. Features such as data discovery and classification are designed to assist businesses with compliance, privacy, and AI governance requirements, as well as identifying potential threats. As the volume of sensitive data increases alongside developments in AI, some organisations are shifting towards data-centred security approaches. For channel partners and managed service providers (MSPs), this trend is associated with increased demand for integrated security platforms to support compliance and operational requirements. Climb Channel Solutions Chief Revenue Officer Gerard Brophy stated that extending Fortra's presence into the UK and Ireland aligns with the company's strategic direction. He noted that the partnership is intended to provide a platform-led approach for partners and MSPs, addressing data protection requirements and expanding Climb's cybersecurity portfolio in the EMEA region. Fortra Vice President of Global Channels Faraz Siraj also commented on the collaboration, describing it as an opportunity to extend the company's solutions within the UK and Ireland market. The partnership will include Fortra participation in the Climb Connect UK event in London, which will allow in-person engagement with partners and discussions around further expansion opportunities.