IBM bolsters cyber security offerings with Randori acquisition
It plans to use the company’s attack surface management and offensive security offerings to strengthen its cloud and AI capabilities


IBM plans to acquire Randori, an attack surface management (ASM) and offensive cyber security provider based in Boston, it revealed yesterday.
Randori helps customers to identify external facing assets that are visible to attackers, and prioritise which poses the greatest risk. IBM hopes the acquisition will advance its hybrid cloud and AI skills and capabilities. This will be its fourth acquisition of 2022 and it revealed it has acquired over 20 companies since Arvind Krishna became CEO in April 2020.
The new acquisition provides software to help security teams discover gaps, assess risks, and improve their security over time. Its attack surface management product maps a customer’s attack surface to help identify shadow IT risks and potential entry points for ransomware.
IBM aims to integrate Randori’s software with the extended detection and response (XDR) capabilities of IBM Security QRadar. Security teams will be able to use Randori’s real-time attack surface visibility for intelligent alert triage, threat hunting, and incident response. IBM hopes this can help eliminate the need for customers to manually monitor new critical applications and respond quickly when new issues or emerging threats arise on their perimeter.
RELATED RESOURCE
"Our clients today are faced with managing a complex technology landscape of accelerating cyber attacks targeted at applications running across a variety of hybrid cloud environments – from public clouds, private clouds and on-premises," said Mary O'Brien, general manager of IBM Security. "In this environment, it is essential for organisations to arm themselves with the attacker's perspective in order to help find their most critical blind spots and focus their efforts on areas that will minimise business disruption and damages to revenue and reputation."
Randori is also able to provide businesses with a product that combines attack surface management with continuous automated red teaming (CART) to stress test defence and incident response teams. IBM plans to use this to complement its X-Force Red hacker lead offensive security services.
The Boston-based company is backed by Accomplice, .406 Ventures, Harmony Partners and Legion Capital. The financial terms of the deal weren’t disclosed, and the transaction is expected to close in the next few months.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Zach Marzouk is a former ITPro, CloudPro, and ChannelPro staff writer, covering topics like security, privacy, worker rights, and startups, primarily in the Asia Pacific and the US regions. Zach joined ITPro in 2017 where he was introduced to the world of B2B technology as a junior staff writer, before he returned to Argentina in 2018, working in communications and as a copywriter. In 2021, he made his way back to ITPro as a staff writer during the pandemic, before joining the world of freelance in 2022.
-
Anthropic CEO Dario Amodei thinks we're burying our heads in the sand on AI job losses
News With AI set to hit entry-level jobs especially, some industry execs say clear warning signs are being ignored
-
AI security blunders have cyber professionals scrambling
News Growing AI security incidents have cyber teams fending off an array of threats
-
‘There is no law of computer science that says that AI must remain expensive and must remain large’: IBM CEO Arvind Krishna bangs the drum for smaller AI models
News IBM CEO Arvind Krishna says smaller, more domain-specific AI models have become the most efficient and cost-effective options for enterprises.
-
IBM puts on a brave face as US government cuts hit 15 contracts
News Despite the cuts, IBM remains upbeat after promising quarterly results
-
IBM completes HashiCorp acquisition after regulatory approval
News IBM has completed its $6.4 billion acquisition of cloud automation and security firm HashiCorp,
-
IBM eyes Oracle expertise gains with latest acquisition
News The deal aims to help IBM address the complexities of public sector cloud transformation
-
UK regulator to investigate IBM takeover of HashiCorp
News The CMA is concerned that the merger could affect competition in the cloud services market
-
Channel Focus: All you need to know about IBM's partner program
How Big Blue seeks to go deep, tackling enterprise complexity: A brief guide to the role of partners in IBM's plan to accelerate software and consulting sales.
-
Put AI to work for talent management
Whitepaper Change the way we define jobs and the skills required to support business and employee needs
-
The power of AI & automation: Productivity and agility
whitepaper To perform at its peak, automation requires incessant data from across the organization and partner ecosystem.