A Fortify 24x7 brand. Security kept in stock, given a number and a price.Order statusAsk the counter
ShopCyberDefense
1Aisle

Every machine is busy. Almost nobody is watching.

Bought on its own, detection is a stream of alarms handed to whoever picks up the phone. Every line stocked in this aisle arrives with the reading attached: an agent that understands behaviour, a layer stitching that onto everything else running, and an engineer at Fortify 24x7 who rules on what happens next.

SentinelOneFluencyAnalysts on shiftSix lines
Lines here6
PlatformsSentinelOne + Fluency
Numbering1101 to 1106
Counted byOne endpoint, or one node
AnsweringEvery hour there is

Detection is a job, not a dashboard

A detection tool and detection itself are two separate purchases. The tool throws alarms. The job is working out which of them matter, at whichever hour they land, with enough around them to be certain. Every line stocked here includes that job, worked by Fortify 24x7 engineers, because a firm left reading its own alarms has bought itself a hobby.

The agent judges behaviour instead of matching names. It spots a process spawning something peculiar, tearing through a long row of files at speed, or striking up a conversation with somewhere it has never spoken to before. That judgement keeps going with the cable out, which is what a laptop somewhere in a departure lounge needs, and what the box behind the counter needs too.

A firm left reading its own alarms has bought itself a hobby.

Picking between the three levels

Level one watches, then advises. Level two widens the circle of what gets read together, so mail traffic, network logs and sign in records are weighed beside whatever the agent reports. Level three adds hands: isolation and undoing, carried out by machine and reviewed afterwards by a person.

Take level three where none of your people are awake to act on advice at four on a Sunday. Take level one where somebody is, and where you would sooner a human signed off each containment. Node lines stand apart because a node is counted differently, not because it gets less.

Lines stocked in this aisle

Detection and response, item by item.

Each price here is read out of billing when the page opens. Whatever you write on sits waiting on the order form, so nothing is lost by reading first and buying afterwards.

Fortify-MDRCatalog no. 1101

Managed Endpoint Watch

SentinelOne down on the machine · Fortify 24x7 analysts reading what comes back

The agent judges how software behaves on the computer itself instead of ticking names off a list. Where something begins encrypting, hoarding, or reaching somewhere with no business being reached, an analyst at our desk picks it up and says plainly what to do next.

  • Carried by Windows, macOS and Linux, and still deciding after the network drops away.
  • Triage and escalation stay with the Fortify 24x7 desk, at whatever hour.
  • Findings and next steps filed on your account page as notes you can read back.
Catalog noNo. 1101
CoversWorkstations and servers, whether Windows, macOS or Linux
Stocked forAny business whose first sign of trouble would otherwise be a locked screen
Packed bySentinelOne, operated and watched by Fortify 24x7
Checked out byEach protected endpoint
Checking price per protected endpoint
paid up front, a month at a time
QTY
Fortify-XDRCatalog no. 1102

Endpoint Watch, Cross Source

SentinelOne broadened by Fluency across logs you already produce

Same watching, broader view. Fluency reads mail traffic, network logs and sign in records beside whatever the agent reports, so a strange login here and a peculiar process there stop being two loose curiosities nobody ever puts together.

  • Endpoint activity weighed against identity, mail and network events in one picture.
  • Detections beyond the reach of any lone agent working off its own evidence.
  • Underlying records held longer, since certain questions only surface much later.
Catalog noNo. 1102
CoversEndpoints, together with the identity, mail and network sources already in place
Stocked forFirms living all day inside a Google or Microsoft tenant
Packed bySentinelOne with Fluency correlation, run by Fortify 24x7
Checked out byEach protected endpoint
Checking price per protected endpoint
paid up front, a month at a time
QTY
Fortify-XDR+Catalog no. 1103

Endpoint Watch with Containment

SentinelOne with isolation and undoing switched on

The broad view, this time with hands. Any machine crossing the confidence line gets pulled off the network and set back as it was, all of that happening while the case is still being read. It counts most in the hours when none of your people are at a desk.

  • Network isolation fires by itself once a conviction is solid enough to act on.
  • Changes made by convicted software are undone wherever the platform permits it.
  • Each automatic action gets reviewed by a person afterwards, then written up for you.
Catalog noNo. 1103
CoversWindows, macOS and Linux, with containment wherever the platform permits it
Stocked forFirms with nobody on call at three in the morning
Packed bySentinelOne response tier, operated by Fortify 24x7
Checked out byEach protected endpoint
Checking price per protected endpoint
paid up front, a month at a time
QTY
Fortify-MDR-K8Catalog no. 1104

Managed Node Watch

SentinelOne Kubernetes agent · the same analysts, the same desk

The watching line for container hosts. Nodes are tallied apart from laptops because the agent behaves differently there, and counting them among the endpoints would put a quiet lie in your invoice.

  • The agent sits on the node. Count nodes, never pods.
  • The same triage and escalation desk that covers the endpoint lines above it.
  • Sized for a modest cluster running the application you actually sell.
Catalog noNo. 1104
CoversKubernetes worker nodes
Stocked forFirms running a cluster with no platform team watching over it
Packed bySentinelOne node agent, operated by Fortify 24x7
Checked out byEach Kubernetes node
Checking price per Kubernetes node
paid up front, a month at a time
QTY
Fortify-XDR-K8Catalog no. 1105

Node Watch, Cross Source

SentinelOne node agent, widened by Fluency

Node level watching with the same broadened view as the endpoint line above it, so cluster activity is read beside sign in and network records instead of in a window of its own that nobody keeps open.

  • Node telemetry weighed against identity, mail and network sources.
  • Records behind an alert held long enough to settle a question raised weeks later.
  • One desk covering cluster and office as a single estate.
Catalog noNo. 1105
CoversKubernetes worker nodes plus your identity, mail and network sources
Stocked forBusinesses whose cluster and office estate should be read together
Packed bySentinelOne node agent with Fluency correlation, run by Fortify 24x7
Checked out byEach Kubernetes node
Checking price per Kubernetes node
paid up front, a month at a time
QTY
Fortify-XDR+K8Catalog no. 1106

Node Watch with Containment

SentinelOne node agent with automated response

The node line with containment turned on. A workload that convicts gets cut away rather than left running until somebody wakes, reads a message and decides to do something.

  • Isolation at node level fires by itself once a conviction is solid enough.
  • Undone wherever the platform permits, with the action written up afterwards.
  • Reviewed by a Fortify 24x7 engineer, never left standing as a machine decision.
Catalog noNo. 1106
CoversKubernetes worker nodes, with containment where the platform allows it
Stocked forBusinesses whose cluster serves customers while nobody is watching it
Packed bySentinelOne node response tier, operated by Fortify 24x7
Checked out byEach Kubernetes node
Checking price per Kubernetes node
paid up front, a month at a time
QTY
Honest shelf talk

Where this aisle stops

Six lines, set out at their edges, so whatever else you need is visible now instead of a fortnight from now.

  • Spotting is not stopping. An agent that recognises an intrusion is reporting a beginning, not preventing one. What the money buys is the speed of the reply, never a quiet year.
  • Unenrolled machines sit outside all of it. Hardware the agent never reaches sends nothing back, features in no investigation, and gains nothing at all from a line on this page.
  • Undoing is not a backup. Containment lines reverse changes made by software that convicted, wherever the platform allows reversing. They will not raise a dead disk or last Tuesday's draft. Aisle 6 handles that.
  • Code you publish sits outside. A defect in software you write cannot be seen from an agent on a laptop. Testing it is separate work, and naming it here beats letting a shelf label hint at cover it does not provide.
  • Cluster design remains yours. On node lines we watch nodes. How roles get bound, how secrets are handled, what the admission rules say: all of that stays your architecture. We advise on it. We do not own it.
NOTE 01

Heads up: card statements show FORTIFY 24X7 - Shop CyberDefense is a Fortify 24x7 brand, and your subscription is billed by Fortify 24x7.