Sophos Endpoint Selected for CIS MDR™, a Purpose-Built Cybersecurity Solution for U.S. State, Local, Tribal and Territorial (SLTT) governments 

DALLAS, Texas — 八月 13, 2025 —

Sophos, a global leader of innovative security solutions for defeating cyberattacks, today announced it has been selected by the Center for Internet Security, Inc. (CIS) as the endpoint protection provider for commercial cloud for U.S. State, Local, Tribal, and Territorial (SLTT) government organizations as part of its newly launched CIS Managed Detection and Response™ (CIS MDR™) service. CIS MDR is a fully managed, 24/7/365 endpoint protection solution specifically designed to detect and stop attacks targeting U.S. government organizations.

The CIS MDR Security Operations Center (SOC) uses Sophos Endpoint powered by Intercept X to stop malicious activity early in the attack chain before attacks can impact government systems. CIS MDR provides continuous monitoring, detection, and response services which are now available through a Sophos-hosted commercial cloud infrastructure that meets the scale, availability, and operational needs of SLTT entities.

More than 600,000 organizations trust Sophos to defend against cyberthreats, including advanced remote ransomware attacks and active adversaries. Unique to Sophos, the solution includes Adaptive Attack Protection that dynamically heightens defenses on an endpoint when a hands-on-keyboard attack is detected, minimizing the attack surface and disrupting the attacker’s activities.

“CIS is a trusted entity helping U.S. governments safeguard critical infrastructure and public sector systems,” said Rob Lalumondier, vice president of public sector, Sophos. “All SLTT governments deserve access to comprehensive security solutions to protect against today’s evolving and persistent cyber threats. According to our State of Ransomware in the U.S. 2025 report, the average cost to recover from an attack, excluding ransom payments, was nearly $2 million last year. CIS MDR helps reduce this burden by delivering expert-led detection and response around the clock. This service combines the power of Sophos Endpoint with CIS’ world-class SOC to deliver true 24/7 protection.”

CIS MDR is designed to address the regulatory, staffing, and budgetary constraints faced by SLTT organizations while defending against the unique cyber threats that target these entities. With Sophos Endpoint, CIS MDR offers device-level protection and response to strengthen an organization’s endpoint security program, and it provides active defense against both known (signature-based) and unknown (behavioral-based) malicious activity.

CIS MDR also benefits from Sophos’ proprietary CryptoGuard anti-ransomware technology, which is uniquely able to stop remote ransomware attacks, which now account for 70% of successful ransomware attacks, according to Microsoft’s 2024 Digital Defense Report.

“The mission of CIS is to strengthen the cybersecurity posture of U.S. State, Local, Tribal, and Territorial government organizations, and delivering purpose-built solutions like CIS MDR is central to that mission,” said Lee Noriega, executive director of cybersecurity services, Center for Internet Security (CIS). “By leveraging a secure commercial cloud environment hosted by Sophos, we’re able to expand access to this fully managed service and meet the operational realities of our members with an enterprise-grade endpoint solution that is already trusted by more than 300,000 organizations. Sophos provides the flexibility and resilience needed to support real-time detection and response for SLTT organizations across the U.S.”

CIS MDR is part of a broader integrated cyber defense ecosystem, working in concert with MS-ISAC threat intelligence, incident response, and compliance tools to deliver a unified, coordinated defense strategy.

For more information about CIS MDR™, go to https://www.cisecurity.org/services/managed-detection-and-response.

About CIS

The Center for Internet Security, Inc. (CIS®) makes the connected world a safer place for people, businesses, and governments through our core competencies of collaboration and innovation. We are a community-driven nonprofit, responsible for the CIS Critical Security Controls® and CIS Benchmarks™, globally recognized best practices for securing IT systems and data. We lead a global community of IT professionals to continuously evolve these standards and provide products and services to proactively safeguard against emerging threats. Our CIS Hardened Images® provide secure, on-demand, scalable computing environments in the cloud. CIS is home to the Multi-State Information Sharing and Analysis Center® (MS-ISAC®), the trusted resource for cyber threat prevention, protection, response, and recovery for U.S. State, Local, Tribal, and Territorial government entities. To learn more, visit cisecurity.org or follow us on X: @CISecurity.

关于 Sophos

Sophos 是全球领先的网络安全公司,凭借其人工智能驱动的平台和专家主导的服务,保护着全球 60 万家组织的安全。Sophos 根据各组织在不同安全成熟度的各式各样的需求提供支持,并与其共同成长,携手应对日益严峻的网络攻击。其解决方案结合机器学习、自动化、实时威胁情报以及来自 Sophos X-Ops 的前线真人专家的专业知识,提供 24/7 全天候高级威胁监控、侦测与响应服务。
Sophos 提供行业领先的托管式侦测与响应 (MDR) 服务,同时配备一整套全面的网络安全技术组合,包括端点、网络、电子邮件和云安全、扩展式侦测与响应 (XDR)、身份辨识威胁侦测与响应 (ITDR),以及下一代 SIEM。结合专家咨询服务,这些能力帮助组织主动降低风险,并更迅速地响应,提供力求在不断变化的威胁面前保持领先所需的可见性和可扩展性。
Sophos 通过全球合作伙伴生态系统进入市场,包括托管式服务提供商 (MSPs)、托管式安全服务提供商 (MSSPs)、经销商、分销商、市场集成商以及网络风险合作伙伴,为组织提供灵活的选择,使其能够在保护业务安全的同时建立值得信赖的合作关系。  Sophos 总部位于英国牛津。如欲了解更多信息,请访问 www.sophos.cn。