LevelBlue acquires Cybereason to expand global MDR, XDR, and threat response leadership
LevelBlue has signed a definitive agreement to acquire Cybereason, a cybersecurity firm known for its Extended Detection and Response (XDR) platform, threat intelligence team, and digital forensics and incident response (DFIR) capabilities.
For clients and strategic partners, the acquisition delivers value with threat detection, response, and global coverage, all from a unified security partner. By combining LevelBlue’s AI-powered capabilities and MDR offerings with Cybereason’s expertise, organizations can better address cyber challenges while reducing operational complexity and risk.
“The addition of Cybereason is a strategic leap forward in our mission to become the most complete cybersecurity partner for our clients and strategic partners,” said Bob McCullen, CEO and Chairman of LevelBlue. “By combining Cybereason’s world-class XDR and DFIR capabilities with our AI-powered MDR and incident response, we can deliver unified protection.”
As part of the transaction, SoftBank Corp., SoftBank Vision Fund 2, and Liberty Strategic Capital, known for investing in disruptive and innovative technology, will become investors in LevelBlue, underscoring strong confidence in the company’s long-term strategy and vision.
Additionally, Steven T. Mnuchin, former U.S. Treasury Secretary and Managing Partner of Liberty Strategic Capital, will join LevelBlue’s Board of Directors. His appointment brings decades of experience at the intersection of global finance, government policy, and strategic investment, providing valuable guidance as LevelBlue deepens its role in protecting critical infrastructure and global enterprise systems.
“Cybersecurity is now inseparable from economic security and national resilience,” said Steven Mnuchin. “LevelBlue has established itself as a leader in integrated managed security services, and I look forward to helping guide its growth at a time when organizations worldwide are seeking trusted partners who understand the complexity of today’s threat landscape. I also want to thank Manish Narula, CEO of Cybereason, for his strong leadership in driving this outcome and propelling Cybereason into its next chapter of growth and innovation.”
The acquisition enhances LevelBlue’s ability to deliver measurable, outcome-driven results, helping clients accelerate threat detection, reduce response times, and build long-term cyber resilience. It also marks a key step in LevelBlue’s broader strategy to unite the industry’s strongest organizations, technologies, and talent into one integrated partner. With recent acquisitions of Trustwave and Stroz Friedberg, LevelBlue continues to accelerate its position as the most complete cybersecurity partner for organizations looking to move from reactive defense to proactive resilience.
“Joining LevelBlue marks an exciting new chapter for Cybereason,” said Manish Narula, CEO of Cybereason. “This acquisition strengthens our collective capabilities across XDR, MDR, offensive security, DFIR, and cybersecurity consulting services, enabling us to unlock additional value for our clients and their counsel and cyber insurance partners globally.”
Expanded capabilities and reach
LevelBlue’s acquisition of Cybereason delivers several enhancements for clients and strategic partners across all industries and regions:
- Stronger endpoint security (XDR + MDR): Cybereason’s advanced XDR capabilities are complementary with Trustwave’s industry-leading MDR offering and bolster LevelBlue’s native MDR service, providing faster, more accurate detection and response, helping clients reduce dwell time and contain threats before they spread.
- World-class DFIR services: Cybereason’s DFIR technology and services, coupled with the recent acquisition of Stroz Friedberg, immediately extend LevelBlue’s capacity, capability, and reach, creating extensive global coverage, unmatched technology-agnostic forensic expertise, and intelligence-driven speed to give organizations, and their counsel and cyber insurance partners, the confidence that every incident is met with the most effective response.
- Smarter threat intelligence: By unifying Cybereason’s research team with LevelBlue SpiderLabs, clients benefit from deeper visibility into emerging threat actors and attack techniques, paired with actionable insights.
- Offensive + defensive synergy: LevelBlue provides end-to-end security, including penetration testing, risk assessments, detection engineering, and constant monitoring, allowing clients to harden defenses while ensuring operational resilience.
- Simplified, technology-agnostic integration: Whether clients rely on Microsoft, SentinelOne, or hybrid stacks, LevelBlue helps optimize their existing security investments to improve their overall cybersecurity outcomes.
- Enhanced global coverage: Cybereason’s strong presence in Japan, where it is among the largest providers, expands LevelBlue’s global footprint and regional delivery capabilities.