Nozomi Networks and Sophos are integrating their platforms. OT telemetry, asset information, and threat data from Nozomi Vantage are now fed directly into Sophos Fusion, where security teams can correlate them with data from the IT environment.
Vantage is Nozomi’s cloud-native OT security platform. Thanks to this integration, security analysts in a SOC no longer need to switch between consoles to see what’s happening in an industrial environment.
Incidents can originate on both the OT side and the IT side, so anyone who focuses solely on endpoints, the network, the cloud, and identity is missing part of the picture, and that gap is growing as organizations connect more industrial assets and adopt remote management.
For Sophos, this is one of the first major integrations with a third-party provider since the launch of Fusion. That platform was announced last month as the successor to Sophos Central and is described by the company as an AI-native defense system. Fusion builds on the Taegis analytics from Secureworks, which Sophos acquired.
What the integration delivers
According to both parties, the integration enables correlation between OT, endpoint, network, cloud, and identity data. They also highlight richer context during investigations, reduced manual work in the SOC, and automated enrichment and response via SOAR workflows.
“This partnership helps security teams easily assess OT and IT vulnerabilities in one place, allowing them to take action much faster,” says Chris Bell, SVP of Global Channel and Alliances at Sophos. Matt Cowell, VP of Strategic Alliances at Nozomi, states that the intersection of IT and OT has long been misunderstood by the security industry.