Uptycs
MDR Services
Uniquely positioned for cloud-native and hybrid environments with osquery-powered telemetry, eBPF monitoring, and unified CNAPP + MDR. Ideal for enterprises running Kubernetes at scale who need deep container and cloud workload security with DFIR capabilities.
Best For / Not Ideal For
Ideal for
- +Cloud-native enterprises running Kubernetes and containerized workloads
- +Organizations using osquery who want managed security
- +Companies needing unified CNAPP + MDR across hybrid cloud environments
- +Enterprises requiring 13-month data retention for compliance
Not ideal for
- −Traditional on-premises-only environments with no cloud footprint
- −SMBs needing a simple, affordable MDR solution
- −Organizations wanting a large, established MDR provider with thousands of employees
- −Teams seeking vendor-agnostic MDR without adopting osquery agent
What They Actually Do
Approval: Configurable — You choose which actions need approval
Incident Response: Included in contract
Response SLA: Contact for specific SLA commitments
Managed PROTECT tier provides fully managed detection, containment, and threat elimination. Experienced DFIR team leads incident investigations and manages the entire IR process. Can collaborate with external consultants or internal staff. AI summarizes malicious activity with MITRE-mapped remediation recommendations.
Stack Compatibility
EDR
SIEM
Cloud
Ticketing
Other Integrations
Attack Surface Coverage
Endpoint
included
Cloud Workloads
included
SaaS Apps
included
Identity
included
Network
Limited
OT/ICS
Contact
Pricing & Total Cost
- Pricing Model
- Per-asset pricing with tiered packages (Discover, Audit, Secure); MDR services are custom-quoted add-ons
- Price Range
- Discover Workload: $3/month; Discover Cloud: $5/month; Audit Workload: $6/month; Audit Cloud: $10/month; Secure + MDR: custom. $12,000 minimum annual contract.
What costs extra
- $Managed PROTECT (full MDR) is premium tier
- $Managed Onboarding (60-day service)
- $Managed Monitoring (intermediate tier)
- $DFIR incident response engagement
Hidden cost warnings
- Warning:MDR is an add-on to the CNAPP platform, not a standalone service
- Warning:$12,000 minimum annual contract may be high for small deployments
- Warning:Three service tiers can be confusing — ensure you understand what each includes
✓Trial available (35 days)
✓Proof of Value available
Service Details
Contract Terms
Annual contracts, $12,000 minimum
Data Retention
13-month historical data
Dedicated Analyst
Yes
Portal Access
Yes
Custom Reporting
Yes
Quarterly Reviews
No
Communication & Visibility
Communication Channels
Escalation Method
Managed Monitoring tier provides expert staff on-hand to triage detections and offer immediate guidance; Managed PROTECT provides active containment with escalation
Data Access
Full Query Access
You can query raw log data directly
What to Ask Uptycs
Based on common blind spots and real-world evaluation patterns
- 1.
What is the full cost of Managed PROTECT MDR versus the base CNAPP platform?
- 2.
How does the osquery agent perform alongside our existing EDR solution?
- 3.
What is the detection coverage for Kubernetes-specific attack vectors?
- 4.
Can we export all 13 months of historical data in a standard format upon contract exit?
- 5.
What is the DFIR team's typical response time for active incidents?
- 6.
How does the follow-the-sun model work with only 216 total employees?
- 7.
What is the company's financial runway and growth trajectory given reported layoffs?
Compare With Similar Providers
Browse Related
Information compiled from public sources. Verify details directly with the provider before making decisions.