Cyware, a leader in AI-powered threat intelligence management, has announced a strategic partnership with Microsoft to enhance threat intelligence operations for enterprise and public sector security teams. The collaboration features deep product integrations between Cyware Intel Exchange and Microsoft Sentinel, creating an end-to-end solution that modernizes security operations by automating threat intelligence ingestion, enrichment, and response actions.
Cyware announces strategic partnership with Microsoft
Deep integration between Cyware Intel Exchange and Microsoft Sentinel
Enables bi-directional threat intelligence exchange
Solutions available through Microsoft Commercial Marketplace
Supports STIX/TAXII-based threat intelligence sharing
Accelerates threat detection, sharing, and response capabilities
The partnership addresses critical challenges security teams face in operationalizing threat intelligence at scale, including siloed data and manual handoffs between tools. The deep integration between Microsoft Sentinel and Cyware Intel Exchange enables bi-directional threat intelligence exchange, allowing Microsoft Sentinel to ingest actionable intelligence from Cyware while Cyware receives intelligence from Microsoft Sentinel. This creates a seamless workflow that drives faster investigations and response with real-time context sharing and actioning.
Executives from both companies emphasized the strategic value of the partnership for security teams. "This partnership with Microsoft brings together Cyware's strength in AI-powered threat intelligence operations and Microsoft's security technology to help customers make smarter, faster decisions," said Anuj Goel, CEO and Co-Founder of Cyware. "By meeting defenders directly in Microsoft Sentinel, and making Cyware deployable through Microsoft Commercial Marketplace we are reducing friction from purchase to value while giving security teams enriched, high-fidelity intelligence they can act on immediately."
"We're focused on empowering every defender with a more connected, intelligence-driven experience," said Erez Einav, Corporate Vice President, Sentinel and Defender XDR at Microsoft. "This partnership with Cyware extends how threat intelligence is shared, validated, and automated across Microsoft Sentinel, helping customers streamline workflows, strengthen detection quality, and accelerate response."
Beyond the Microsoft Sentinel integration, Cyware Intel Exchange also connects with Microsoft Defender, enabling Defender Threat Intelligence feeds to flow into Cyware for enrichment and automated indicator searches. This additional integration speeds triage and investigation processes. The partnership builds on Cyware's recent inclusion in the Microsoft Intelligent Security Association (MISA) and its participation as an inaugural Copilot launch partner, strengthening ongoing integrations and supporting Azure-hosted deployment options for customers standardizing on Microsoft's security ecosystem.
Cyware is an industry leader in operationalized threat Intelligence and collective defense, helping security teams transform threat intelligence from fragmented data points to actionable, real-time decisions. We unify threat intelligence management, intel sharing and collaboration, as well as hyper-orchestration and automation — eliminating silos and enabling organizations to outmaneuver adversaries faster and more effectively.