Don’t let overlooked obligations become incidents. Learn how.
Utility navigation bar redirect icon
Portal LoginSupportContact
Search
Close search
Huntress Logo in Teal
  • Platform Overview
    Managed EDR

    Get full endpoint visibility, detection, and response.

    Managed EDR

    Get full endpoint visibility, detection, and response.

    Managed ITDR

    Protect your Microsoft 365 identities and email environments.

    Managed ITDR

    Protect your Microsoft 365 identities and email environments.

    Managed SIEM

    Managed threat response and robust compliance support at a predictable price.

    Managed SIEM

    Managed threat response and robust compliance support at a predictable price.

    Managed Security Awareness Training

    Empower your teams with science-backed security awareness training.

    Managed Security Awareness Training

    Empower your teams with science-backed security awareness training.

    Managed ISPM

    Continuous Microsoft 365 and identity hardening, managed and enforced by Huntress experts.

    Managed ISPM

    Continuous Microsoft 365 and identity hardening, managed and enforced by Huntress experts.

    Managed ESPM

    Proactively secure endpoints against attacks.

    Managed ESPM

    Proactively secure endpoints against attacks.

    Integrations
    Integrations
    Support Documentation
    Support Documentation
    See Huntress in Action

    Quickly deploy and manage real-time protection for endpoints, email, and employees - all from a single dashboard.

    Huntress Cybersecurity
    See Huntress in Action

    Quickly deploy and manage real-time protection for endpoints, email, and employees - all from a single dashboard.

    Huntress Cybersecurity
  • Threats We Stop
    Phishing
    Phishing
    Business Email Compromise
    Business Email Compromise
    Ransomware
    Ransomware
    Infostealers
    Infostealers
    View Allright arrowView Allright arrow
    Industries We Serve
    Education
    Education
    Financial Services
    Financial Services
    State and Local Government
    State and Local Government
    Healthcare
    Healthcare
    Law Firms
    Law Firms
    Manufacturing
    Manufacturing
    Utilities
    Utilities
    View Allright arrowView Allright arrow
    Tailored Solutions
    MSPs
    MSPs
    Resellers
    Resellers
    SMBs
    SMBs
    Compliance
    Compliance
    What Gets Overlooked Gets Exploited

    Most days, nothing happens. But one day, something will.

    Huntress Cybersecurity
    Cybercriminals Have Evolved

    Get the intel on today’s cybercriminal groups and learn how to protect yourself.

    Huntress Cybersecurity
  • Pricing
  • Community Series
    The Product Lab

    Shape the next big thing in cybersecurity together.

    The Product Lab

    Shape the next big thing in cybersecurity together.

    Fireside Chat

    Real people. Real perspectives. Better conversations.

    Fireside Chat

    Real people. Real perspectives. Better conversations.

    Tradecraft Tuesday

    No products, no pitches – just tradecraft.

    Tradecraft Tuesday

    No products, no pitches – just tradecraft.

    _declassified

    Exposing hidden truths in the world of cybersecurity.

    _declassified

    Exposing hidden truths in the world of cybersecurity.

    Resources
    Upcoming Events
    Upcoming Events
    Ebooks
    Ebooks
    On-Demand Webinars
    On-Demand Webinars
    Videos
    Videos
    Whitepapers
    Whitepapers
    Datasheets
    Datasheets
    Cybersecurity Education
    Cybersecurity 101
    Cybersecurity 101
    Cybersecurity Guides
    Cybersecurity Guides
    Threat Library
    Threat Library
    Real Tradecraft, Real Results
    Real Tradecraft, Real Results
    2026 Cyber Threat Report
    2026 Cyber Threat Report
    The Huntress Blog
    Huntress Lands on the Microsoft Marketplace
    Huntress Cybersecurity
    Huntress Lands on the Microsoft Marketplace
    Huntress Cybersecurity
    How Huntress & DEFCERT Are Streamlining CMMC Assessment Prep
    Huntress Cybersecurity
    How Huntress & DEFCERT Are Streamlining CMMC Assessment Prep
    Huntress Cybersecurity
    Live Hacking Into Microsoft 365 with Kyle Hanslovan
    Huntress Cybersecurity
    Live Hacking Into Microsoft 365 with Kyle Hanslovan
    Huntress Cybersecurity
  • Why Huntress

    Go beyond AI in the fight against today’s hackers with Huntress Managed EDR purpose-built for your needs

    Huntress Cybersecurity
    Why Huntress

    Go beyond AI in the fight against today’s hackers with Huntress Managed EDR purpose-built for your needs

    Huntress Cybersecurity
    The Huntress SOC

    24/7 Security Operations Center

    The Huntress SOC

    24/7 Security Operations Center

    Reviews

    Why businesses of all sizes trust Huntress to defend their assets

    Reviews

    Why businesses of all sizes trust Huntress to defend their assets

    Case Studies

    Learn directly from our partners how Huntress has helped them

    Case Studies

    Learn directly from our partners how Huntress has helped them

    Community

    Get in touch with the Huntress Community team

    Community

    Get in touch with the Huntress Community team

    Compare Huntress
    Bitdefender
    Bitdefender
    Blackpoint
    Blackpoint
    Breach Secure Now!
    Breach Secure Now!
    Crowdstrike
    Crowdstrike
    Datto
    Datto
    SentinelOne
    SentinelOne
    Sophos
    Sophos
    Compare Allright arrowCompare Allright arrow
  • HUNTRESS HUB

    Login to access top-notch marketing resources, tools, and training.

    Huntress Cybersecurity
    HUNTRESS HUB

    Login to access top-notch marketing resources, tools, and training.

    Huntress Cybersecurity
    Partners
    MSPs

    Join our partner community to deliver expert-led managed security.

    MSPs

    Join our partner community to deliver expert-led managed security.

    Resellers

    Partner program designed to grow your cybersecurity business.

    Resellers

    Partner program designed to grow your cybersecurity business.

    Tech Alliances

    Driving innovation through global technology Partnerships

    Tech Alliances

    Driving innovation through global technology Partnerships

    Microsoft Partnership

    A Level-Up for Your Business Security

    Microsoft Partnership

    A Level-Up for Your Business Security

  • Press Release
    Huntress Announces Collaboration with Microsoft to Strengthen Cybersecurity for Businesses of All Sizes
    Huntress Cybersecurity
    Press Release
    Huntress Announces Collaboration with Microsoft to Strengthen Cybersecurity for Businesses of All Sizes
    Huntress Cybersecurity
    Our Story

    We're on a mission to shatter the barriers to enterprise-level security.

    Our Story

    We're on a mission to shatter the barriers to enterprise-level security.

    Newsroom

    Explore press releases, news articles, media interviews and more.

    Newsroom

    Explore press releases, news articles, media interviews and more.

    Meet the Team

    Founded by former NSA Cyber Operators. Backed by security researchers.

    Meet the Team

    Founded by former NSA Cyber Operators. Backed by security researchers.

    Careers

    Ready to shake up the cybersecurity world? Join the hunt.

    Careers

    Ready to shake up the cybersecurity world? Join the hunt.

    Awards
    Awards
    Contact Us
    Contact Us
  • Portal Login
  • Support
  • Contact
  • Search
  • Get a Demo
  • Start for Free
Portal LoginSupportContact
Search
Close search
Get a Demo
Start for Free
HomeBlog
Leaving the Silo: MSP Vendors Give Back
Published:
February 3, 2022

Leaving the Silo: MSP Vendors Give Back

By:
Rachel Bishop
Share icon
Glitch effectGlitch effectGlitch effect

Ever since we announced that we were donating $100,000 to the Dutch Institute for Vulnerability Disclosure (DIVD), things have been a bit hectic around here at Huntress.

At the risk of sounding pessimistic, we figured a few of our fellow vendor friends may reach out and say this sounded cool—and, if we were really lucky, chip in a few hundred bucks.

We had no idea that within a few weeks, we’d hear from nine vendors that they wanted to donate a combined $75,000 to DIVD.

And we’re just getting started. 😉

MSP Vendor Spotlight

As we heard from vendors who wanted to get involved, we grew curious to know what this initiative means to others. So, we asked them—and their responses give us a lot of hope regarding working together and fostering a community of vendor transparency and accountability in 2022. 🙌

Axcient

Becky Teal, Senior Partner Program Manager (Huntress): Why was it important for you to get your company involved in this initiative?

Ben Nowacky, SVP of Products (Axcient): Security in a silo can never be effective. Cybercriminals have us in their sights, and we believe in the power of collaboration and transparency as potent weapons against them. True accountability to our partners requires this approach. Simply waiting for the next attack—and hoping that any single vendor or MSP defenses are sufficient—just isn’t an option.

Transparency for Axcient is nothing new. We adopted a very transparent security-first approach to our products from the outset. In addition to sharing the results from annual SOC audits and regular external testing with partners, we’ve adopted a “shift-left” approach to security, making security more central in product development and testing for security earlier in the development lifecycle. It is a core KPI and integrated requirement that must be validated before pushing any code to our partners. 

As vendors in the security space, we are always looking to do more and do it better. Of course, we do the necessary things like pen-testing and vulnerability assessments. Still, our goal is to evolve and progress even further to do our best to ensure our partners never have to deal with a preventable breach stemming from us as a trusted vendor. 

We are stronger as a community, and we are equally committed to protecting our company, our platform, and our customers by being open about security. This initiative should lead to good things for our MSP partners.

Becky: What do you think MSP vendors should be doing to make cybersecurity safer for their partners in 2022? 

Ben: Vendors need to grasp the trust our MSPs partners put in us when they invest in our solutions as part of their stack. This privileged position puts a lot of responsibility on vendors to ensure they are not the weak link in cyber resiliency. That’s why we’ve made the commitment to transparency in our development and testing—both our products and our own infrastructure. But this means doing more than the basics like regular pen-testing and security patching and being proactive and transparent when issues arise. 

We preach to MSP partners that they must test, test, test, and the vendor community must also conduct regular risk assessments to constantly improve. We hold very aggressive resolution SLAs on security issues and make security a company-wide mission. And we all know engineering and development need to make security a core KPI, but other parts of the organization like sales, finance and marketing also need to be security-obsessed by staying alert for social engineering attacks, phishing and other potential footholds criminals may seek to gain in an organization. Only by taking a security-first approach across the company can we enable our partners to offer security to their clients.  

Becky: Anything else you’d like to say about DIVD/this initiative/the community? 

Ben: While every company participating with Huntress believes security is the most significant threat to MSPs and customers, the missing components are collaborative programs like this DIVD program to help identify issues early. Then, vendors can play more offense instead of reactive defense. By identifying threats, collaborating across vendors and partners, and communicating openly, honestly, and transparently among our community, we could prevent so many of these supply chain attacks from happening.

Unveil Security Group

Becky: Why was it important for you to get your company involved in this initiative?

Joe Clapp, President (Unveil Security Group): Vendor neutrality is core to the Unveil corporate ethics. We had been looking for a vulnerability disclosure organization that mirrored our own ethics. Additionally, Unveil consultants and researchers commonly find bugs in products that do not have reasonable disclosure mechanisms. We want to support an organization that is interested in supporting responsible disclosure for the societal good—wherever those vulnerabilities reside.

Becky: What do you think MSP vendors should be doing to make cybersecurity safer for their partners in 2022? 

Joe: Know where you are blind. Spend the time identifying systems from which you are not collecting logs or the network segments you are not collecting network traffic on.

Critically analyze your information security training program. Is it a “check the box” program or does it truly improve your security posture? If it’s not benefiting you, spend your resources elsewhere.

Implement near-continuous monitoring of your services exposed to the Internet and on critical internal systems. If it changes, find out why.

Becky: Anything else you’d like to say about DIVD/this initiative/the community? 

Joe: I would encourage the community to seek creative opportunities to help DIVD beyond financial help. Examples such as allowing an in-house web developer to develop for DIVD a few hours a month or an administrative assistant (especially one with non-English language skills) to template communications notices could be a significant help for DIVD.

OITVoip

Becky: Why was it important for you to get your company involved in this initiative?

Ray Orsini, CEO (OITVoip): Just like MSPs have a responsibility to their clients, I believe we vendors have a responsibility to the MSPs we serve. However, many of us were held back due to not having the internal resources necessary to properly implement a program that would not only support but encourage ethical security researchers to share information. This initiative lowers the bar significantly so that every vendor can participate, regardless of size.

Becky: What do you think MSP vendors should be doing to make cybersecurity safer for their partners in 2022? 

Ray: It’s all about transparency and communication. It’s no secret that MSPs have been the target of malicious actors. Insurance carriers are keeping an equally close eye on MSPs in order to meet coverage requirements. 

While the practices of the MSP definitely have a key role to play, MSPs don’t necessarily have control over the software they deploy. That’s why we need to be as transparent as possible whenever an incident occurs to prepare the MSP to take appropriate action. I would also like to see more vendors take a more active role in assisting MSPs prepare their playbooks for incident response.

Becky: Anything else you’d like to say about DIVD/this initiative/the community? 

Ray: As a former MSP and current vendor, I thank Huntress and DIVD for their combined efforts in our community. I also congratulate those first vendors who have stepped up to realize the value of this initiative and have pledged a donation. 

To that end, I will be working with Jason Slagle of CNWR to create a Vulnerability Disclosure Program (VDP) workshop where we will assist any vendor to create a program that has all of the appropriate elements required for responsible disclosure and response. And I would like to publicly thank Huntress for sponsoring our program for the betterment of the community.

* Editor’s note: We’ll update this blog as soon as we have more details about the VDP workshop!

Appgate

Becky: Why was it important for you to get your company involved in this initiative?

Marc Inderhees, Senior Director of MSP Channel Sales (Appgate): We are thrilled to have an opportunity to support DIVD. It’s critical that vendors invest in the community. MSPs are the first line of defense and need our backing and investment to properly protect their customers.

Becky: What do you think MSP vendors should be doing to make cybersecurity safer for their partners in 2022? 

Marc: In addition to supporting DIVD I’m a big proponent of cybersecurity enablement for the MSPs and ensuring that they have the same tools available to deploy internally cost-effectively to protect their environments.

Becky: Anything else you’d like to say about DIVD/this initiative/the community? 

Marc: Let’s hope this is the beginning of a growing and long-standing vendor effort to support the MSP community.

Taylor Business Group

Becky: Why was it important for you to get your company involved in this initiative?

Michael France, Managing Partner (Taylor Business Group): There are many bounty programs by manufacturers to incent ethical hackers. By supporting DIVD, we feel more money will get to the ethical hackers to identify the risks, making the software the MSP community uses safer.

Becky: What do you think MSP vendors should be doing to make cybersecurity safer for their partners in 2022? 

Michael: Communication! Continue to talk to the MSP owners at events, through webinars and with direct access to communities like Taylor Business Group.

Becky: Anything else you’d like to say about DIVD/this initiative/the community? 

Michael: As we have seen in our members, security has become an opportunity for growth and a risk to their business, as an example, insurance costs have gone up. The DIVD initiative will hopefully reduce some of the risks.

Blumira

Becky: Why was it important for you to get your company involved in this initiative?

Jeremy Young, Director of Partner Strategy (Blumira): The perfect cybersecurity program can be derailed in an instant by the right vulnerability. As vendors providing software to the SMBs and MSPs who are the engine of the global economy, we must do everything we can to mitigate these risks for our customers. Supporting organizations like DIVD who work to make the entire community safer is an easy decision to make and one that we encourage our fellow vendors and MSP partners to join in on.

You can read more about Blumira’s commitment to strengthening community partnerships and improving MSP/SMB security on their blog.

Servosity

Becky: Why was it important for you to get your company involved in this initiative?

Damien Stevens, CEO (Servosity): I’m excited to partner with DIVD and Huntress in the fight against cybercrime. MSPs know that a thoroughly tested and immutable backup is their last line of defense in the event of an attack. Working together as a community in an open and transparent manner gives us the chance to tilt things in the favor of the MSP, instead of having the odds stacked against them.

Response from MSPs

Truly, we wouldn’t have been able to pull off this initiative if it weren’t for our friends who work at MSPs. These experts helped inform our strategy to help make their worlds a little safer this year and maybe even save them a headache or two.

Our friend Kelvin Tegelaar, CTO and co-owner at Lime Networks, chatted with us about what these donations will mean to the MSP community as a whole:

"For our entire community, this is a game-changer, as it allows security experts to find issues in our software before it turns into a major incident, without fear of repercussions."

Our friend and hack_it regular Jason Slagle, President of Technology at CNWR, Inc., also had some words regarding what he hopes to see from the MSP vendor community this year:

“The MSP space needs a dosage of transparency from our vendors. For too long now we've been at the mercy of vendors that often choose not to disclose vulnerabilities that could have impacted us or our customers.

“My hope is that with the help of DIVD and their disclosure and transparency, we can start to change the culture to one of openness where we can all benefit from knowing our vendors take security seriously, and we can all learn the lessons they do along the way.”

How You Can Get Involved

If you’re interested in getting involved with this initiative, please reach out and get in touch:

  • You can reach Huntress here 
  • You can learn more about the bug bounty program here
  • You can contact DIVD directly about the bounty program at bugbounty@divd.fund

 

Want to hear more about the bug bounty program and from other vendors on why they’re getting involved? Watch our on-demand webinar Leaving the Silo: A Panel Discussion with DIVD and MSP Vendors!

Categories
Cybersecurity Education
Huntress News
Summarize this postClose Speech Bubble
ChatGPTClaudePerplexityGoogle AI

See Huntress in action

Our platform combines a suite of powerful managed detection and response tools for endpoints and Microsoft 365 identities, science-backed security awareness training, and the expertise of our 24/7 Security Operations Center (SOC).

Book a Demo
Share
Facebook iconTwitter X iconLinkedin iconDownload icon
Glitch effect

You Might Also Like

  • Huntress Donates $100,000 to DIVD Bug Bounty Program to Elevate SMB Cybersecurity, Calls on MSP Vendors to Follow Suit

    We believe it’s time for MSP vendors to level up cybersecurity community efforts, so we’re taking the first step with a $100,000 contribution to DIVD.
  • Bug Bounties for the 99%

    Bug bounty programs are everywhere for enterprise organizations. But where does that leave the 99%—those under-resourced small to mid-sized businesses?
  • Vulnerabilities and Information Disclosure in MSP Survey Software

    We discovered an information disclosure vulnerability in survey software designed for MSPs. We detail how we worked with the Crewhu team to responsibly disclose and remedy the vulnerability.
  • Huntress’ Commitment to the Cybersecurity Community

    We founded Huntress with a commitment to elevating the cybersecurity community as a guiding principle. Here are some of the ways we strive to make a difference.
  • Investigating Unauthorized Access: Huntress QA Environment Incident

    Learn about our investigation regarding unauthorized access to our QA and product testing environment.
  • Critical Vulnerability Disclosure: ConnectWise/R1Soft Server Backup Manager Remote Code Execution & Supply Chain Risks

    Huntress has validated an initial report for an authentication bypass and sensitive file leak present in the Java framework “ZK”, used within the ConnectWise R1Soft software Server Backup Manager SE.
  • A Journey Back to the World of MSP Security

    Dima Kumets explains why he wanted to make his way back to the world of MSP security—and how he ended up as a Principal Product Manager at Huntress.
  • Scaling To Protect the 99%

    Learn about the latest platform changes and updates as Huntress continues to scale to protect the 99%.

Sign Up for Huntress Updates

Get insider access to Huntress tradecraft, killer events, and the freshest blog updates.
Privacy • Terms
By submitting this form, you accept our Terms of Service & Privacy Policy
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Huntress Managed Security PlatformManaged EDRManaged EDR for macOSManaged EDR for LinuxManaged ITDRManaged SIEMManaged Security Awareness TrainingManaged ISPMManaged ESPMBook a Demo
PhishingComplianceBusiness Email CompromiseEducationFinanceHealthcareManufacturingState & Local Government
Managed Service ProvidersResellersIT & Security Teams24/7 SOCCase Studies
BlogResource CenterCybersecurity 101Upcoming EventsSupport Documentation
Our CompanyLeadershipNews & PressCareersContact Us
Huntress white logo

Protecting 215k+ customers like you with enterprise-grade protection.

Privacy PolicyCookie PolicyTerms of UseCookie Consent
Linkedin iconTwitter X iconYouTube iconInstagram icon
© 2025 Huntress All Rights Reserved.

Join the Hunt

Get insider access to Huntress tradecraft, killer events, and the freshest blog updates.

By submitting this form, you accept our Terms of Service & Privacy Policy