SourceSecurity.com
  • Products
    CCTV
    • CCTV cameras
    • CCTV software
    • IP cameras
    • Digital video recorders (DVRs)
    • Dome cameras
    • Network video recorders (NVRs)
    • IP Dome cameras
    • CCTV camera lenses
    Access Control
    • Access control readers
    • Access control software
    • Access control controllers
    • Access control systems & kits
    • Audio, video or keypad entry
    • Electronic locking devices
    • Access control cards/ tags/ fobs
    • Access control system accessories
    Intruder Alarms
    • Intruder alarm system control panels & accessories
    • Intruder detectors
    • Intruder warning devices
    • Intruder alarm communicators
    • Intruder alarm accessories
    • Intruder alarm lighting systems
    One system, one card
    One system, one card
    Hikvision AOV 4G Solar Camera Series for Off-Grid Video Security

    Hikvision AOV 4G Solar Camera Series for Off-Grid Video Security

    KentixONE – IoT Access and Monitoring For Data Centres

    KentixONE – IoT Access and Monitoring For Data Centres

    Climax Technology HSGW-Gen3 Modular Smart Security Gateway

    Climax Technology HSGW-Gen3 Modular Smart Security Gateway

    Delta Scientific DSC50 ‘S’ Barrier: Portable, Crash-Rated Vehicle Mitigation Solution

    Delta Scientific DSC50 ‘S’ Barrier: Portable, Crash-Rated Vehicle Mitigation Solution

  • Companies
    Companies
    • Manufacturers
    • Distributors
    • Resellers / Dealers / Reps
    • Installers
    • Consultants
    • Systems integrators
    • Events / Training / Services
    • Manned guarding
    Companies by Product area
    • CCTV
    • Access control
    • Intruder alarm
    • IP networking products
    • Biometrics
    • Software
    • Digital video recording
    • Intercom systems
    One system, one card
    One system, one card
  • News
    News
    • Product news
    • Corporate news
    • Case studies
    • Events news
    Latest
    • Alcatraz achieves SOC 2 for biometric security
    • Datalogic AI tech drives retail innovation at NRF 2026
    • Deep Sentinel launches Mobile Monitoring Trailer
    • Eplan and CADENAS partnership enhances data access
    One system, one card
    One system, one card
  • Insights
    Insights
    • Expert commentary
    • Security beat
    • Round table discussions
    • Round Table Expert Panel
    • eMagazines
    • Year in Review 2023
    • Year in Review 2022
    Featured
    • Why open matters in the age of AI
    • What are emerging applications for physical security in transportation?
    • What is the most overlooked factor when installing security systems?
    • Amid rising certificate demands, stricter compliance and quantum threats, PKIaaS is a necessity
    One system, one card
    One system, one card
  • Markets
    Markets
    • Airports & Ports
    • Banking & Finance
    • Education
    • Hotels, Leisure & Entertainment
    • Government & Public Services
    • Healthcare
    • Remote Monitoring
    • Retail
    • Transportation
    • Industrial & Commercial
    One system, one card
    One system, one card
    Alamo enhances security with Alcatel-Lucent solutions

    Alamo enhances security with Alcatel-Lucent solutions

    The University of Dundee implements HID for modern access control

    The University of Dundee implements HID for modern access control

    The Camp: Enhance security with ASSA ABLOY Aperio wireless locks

    The Camp: Enhance security with ASSA ABLOY Aperio wireless locks

    SBB upgrades surveillance with Hanwha Vision cameras

    SBB upgrades surveillance with Hanwha Vision cameras

  • Events
    Events
    • International security
    • Regional security
    • Vertical market
    • Technology areas
    • Conferences / seminars
    • Company sponsored
    Virtual events
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Security Storage
    • Video Management Systems
    • Integrated Systems
    One system, one card
    One system, one card
    Intersec Dubai 2026

    Intersec Dubai 2026

    DIMDEX 2026

    DIMDEX 2026

    DISTRIBUTECH International 2026

    DISTRIBUTECH International 2026

    Munich Security Conference (MSC) 2026

    Munich Security Conference (MSC) 2026

  • White papers
    White papers
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Video Compression
    • Security Storage
    White papers by company
    • HID
    • ASSA ABLOY Opening Solutions
    • Milestone Systems
    • Eagle Eye Networks
    • Hanwha Vision America
    Other Resources
    • eMagazines
    • Videos
    One system, one card

    One system, one card

    Aligning physical and cyber defence for total protection

    Aligning physical and cyber defence for total protection

    Understanding AI-powered video analytics

    Understanding AI-powered video analytics

    Modernizing access control

    Modernizing access control

About us Advertise
  • Wire-free locks
  • AI special report
  • Cyber security special report
  • Casino security & surveillance
  • 6
Artificial intelligence (AI)
  • Home
  • News
  • Expert commentary
  • Security beat
  • Case studies
  • Round table
  • Products
  • White papers
  • Videos

Check out our special report on casino security

Get it now!

WatchGuard excels in MITRE ATT&CK ER7 evaluation

12 Dec 2025

WatchGuard excels in MITRE ATT&CK ER7 evaluation
Contact company
Contact WatchGuard Technologies, Inc.
icon Add as a preferred source Download PDF version
Quick Read
⌵
Summary is AI-generated, newsdesk-reviewed
  • WatchGuard excels in MITRE ATT&CK ER7 with 100% threat prevention, zero operational friction.
  • MSPs benefit from WatchGuard's low-noise detection, improving service delivery and response times.
  • WatchGuard's endpoint security delivers real-world value with minimal alerts and high attack visibility.
Related Links
  • Staying secure in today’s digital landscape
  • WatchGuard's cybersecurity and innovation growth
  • WatchGuard's 2026 cybersecurity predictions unveiled

WatchGuard® Technologies has demonstrated remarkable success in the latest MITRE ATT&CK® Enterprise Round 7 (ER7) Evaluation, highlighting its endpoint security solution's capability to effectively prevent threats while maintaining a low level of detection noise.

This performance offers Managed Service Providers (MSPs) a reliable method for delivering high-quality security services on a large scale.

WatchGuard's version in the Hermes scenario

WatchGuard was able to detect and prevent adversarial techniques thoroughly, with no inadvertent blocking

In the specific context of the "Hermes" Windows scenario, WatchGuard was able to detect and prevent adversarial techniques thoroughly, with no inadvertent blocking of legitimate processes and minimal alert noise. 

The evaluation's independently gathered results underscore WatchGuard's dedication to providing consistent security results, enhancing partner service offerings and delivering significant value in real-world applications.

Endorsement for security teams and MSPs

Andrew Young, chief product officer and senior vice president of product management at WatchGuard Technologies, remarked, "Security teams and MSPs need protection that works without slowing down their business."

He adds, "These results prove that full protection doesn’t require more workload. With WatchGuard, you get fewer alerts, fewer manual interventions, and faster response times, which is exactly what our partners count on to deliver reliable and scalable security services.”

MITRE ATT&CK evaluation insights

MITRE ATT&CK evaluation demonstrated WatchGuard’s ability to detect and obstruct all tested malicious steps

The MITRE ATT&CK evaluation demonstrated WatchGuard’s ability to detect and obstruct all tested malicious steps, focusing only on the most critical insights.

Across two entire attack pathways, WatchGuard generated merely three high-fidelity alerts, facilitating a reduction in noise for MSPs, streamlining investigations, and enhancing service delivery.

Evaluation key outcomes

  • 100% visibility of attack steps throughout the evaluation.
  • 96% detection success rate at the sub-step level (covering 27 out of 28 components).
  • Complete threat prevention for all tested malicious actions.
  • No disruption in legitimate processes and minimal high-fidelity alerts.

Impact on real-world applications

These outcomes illustrate WatchGuard’s aptitude for delivering comprehensive attack-path visibility and reliable protection without the prevalent alert overloads, false positive blocks, or customer-impacting disruptions typical in many security tools.

This balance of effective security and minimal operational hurdles distinguishes WatchGuard in the endpoint security domain.

Unified security platform architecture

Neil Holme, founder and CEO of Impact Business Technology, a WatchGuard MSP, shared, “We’ve relied on WatchGuard’s endpoint security for years. MITRE ER7 simply confirms what we already knew: WatchGuard turns EDR from reactive to proactive. Anything unknown is untrusted. Every alert comes with the confidence that the response has already been initiated. No guesswork. Just better protection.”

WatchGuard’s Unified Security Platform® architecture empowers partners to scale their services while simplifying complexities and enhancing profits, as evidenced by the MITRE ER7 performance.

From facial recognition to LiDAR, explore the innovations redefining gaming surveillance

Show full press release

WatchGuard® Technologies now announced that its endpoint security solution delivered outstanding performance in the latest MITRE ATT&CK® Enterprise Round 7 (ER7) Evaluation.

The results highlight WatchGuard’s ability to combine strong threat prevention with low-noise detection, giving Managed Service Providers (MSPs) a reliable and efficient way to deliver high-quality security services at scale.

WatchGuard’s commitment

In the Windows “Hermes” scenario, WatchGuard achieved comprehensive detection and flawless prevention across the evaluated adversary techniques while maintaining exceptionally low alert volume, no blocked legitimate processes, and minimal operational friction.

These independently validated results reinforce WatchGuard’s commitment to predictable security outcomes that strengthen partner service delivery and drive real-world value.

Security teams and MSPs need protection

“Security teams and MSPs need protection that works without slowing down their business,” said Andrew Young, chief product officer and senior vice president of product management at WatchGuard Technologies.

“These results prove that full protection doesn’t require more workload. With WatchGuard, you get fewer alerts, fewer manual interventions, and faster response times, which is exactly what our partners count on to deliver reliable and scalable security services.”

MITRE ATT&CK evaluation

The MITRE ATT&CK evaluation showed that WatchGuard detected and blocked every malicious step tested, surfacing only the most actionable insights.

Across two full attack paths, WatchGuard generated just three high-fidelity alerts, helping MSPs reduce noise, streamline investigations, and strengthen service delivery.

Key results from the evaluation

  • 100% Attack Visibility
    • 100% step detection across the entire evaluation1
    • 96% sub-step detection2 (27/28 covered)
  • 100% Threat Prevention
    • 100% prevention of all malicious actions3
  • Zero Operational Friction
    • Zero legitimate activity blocked
    • Only three high-fidelity alerts

Real-world benefits

These outcomes demonstrate that WatchGuard delivers full attack-path visibility and dependable protection without generating alert storms, blocked false positives, or customer-impacting disruptions common with many security tools. This combination of proven security efficacy and low operational burden strongly differentiates WatchGuard in the endpoint security market.

For MSPs, the real-world benefits include stronger customer outcomes, fewer unnecessary escalations, faster response cycles, and more efficient use of analyst resources.

WatchGuard’s Unified Security Platform® architecture

"We’ve relied on WatchGuard’s endpoint security for years," said Neil Holme, founder and CEO of Impact Business Technology, a WatchGuard MSP. "MITRE ER7 simply confirms what we already knew: WatchGuard turns EDR from reactive to proactive. Anything unknown is untrusted. Every alert comes with the confidence that the response has already been initiated. No guesswork. Just better protection.” 

Empowered with WatchGuard’s Unified Security Platform® architecture, the MITRE ER7 performance underscores how WatchGuard enables partners to scale services while reducing complexity and increasing profitability.

MITRE ATT&CK® ER7 Evaluation

For more information on WatchGuard’s performance in the MITRE ATT&CK® ER7 Evaluation, visit WatchGuard’s MITRE ER7 results page.

  • Result from MITRE Detections Evaluation for both the initial and configuration change runs in the Windows scenario
  • Result from MITRE Detections Evaluation for the run with configuration changes in the Windows scenario
  • Result from the MITRE Protection Evaluation
Download PDF version Download PDF version
Google logo Add as a preferred source on Google
  • Network / IP
  • Biometrics
  • Electronic access control
  • Security service
  • Physical Security Information Management (PSIM)
  • Cyber security
  • Data Security
  • Cloud security
  • Artificial intelligence (AI)
  • Related links
  • Biometric Access control systems & kits
  • Dual Technology Detectors Intruder detectors
  • Quad Technology Detectors Intruder detectors
  • Intelligent motion detection Video motion detectors
  • Proximity Access control systems & kits
  • Standalone / Networked Access control systems & kits
  • Related categories
  • Access control systems & kits
  • Intruder detectors
  • Video motion detectors
Related white papers
Elevating security through multi-sensing solutions and large-scale AI

Elevating security through multi-sensing solutions and large-scale AI

Download
The 4 pillars of AI in managing high-stakes critical events

The 4 pillars of AI in managing high-stakes critical events

Download
How biometrics are reshaping security in a connected world

How biometrics are reshaping security in a connected world

Download
Related articles
Datalogic AI tech drives retail innovation at NRF 2026

Datalogic AI tech drives retail innovation at NRF 2026

Thales AI security fabric: Protecting AI ecosystems

Thales AI security fabric: Protecting AI ecosystems

WatchGuard excels in MITRE ATT&CK ER7 evaluation

WatchGuard excels in MITRE ATT&CK ER7 evaluation

Follow us

Sections Products CCTV Access Control Intruder Alarms Companies News Insights Case studies Markets Events White papers Videos AI special report Cyber security special report Casino security & surveillance RSS
Topics Artificial intelligence (AI) Mobile access Healthcare security Counter terror Cyber security Robotics Thermal imaging Intrusion detection Body worn video cameras
About us Advertise About us 10 guiding principles of editorial content FAQs eNewsletters Sitemap Terms & conditions Privacy policy and cookie policy
  1. Home
  2. Topics
  3. Artificial intelligence (AI)
  4. News
  5. Corporate news
About this page

WatchGuard delivers exceptional endpoint security, excelling in MITRE ATT&CK ER7 evaluation with 100% attack visibility and prevention, minimal alerts, and seamless MSP integration for efficient security service delivery.

See this on SecurityInformed.com

Subscribe to our Newsletter

Stay updated with the latest trends and technologies in the security industry
Sign Up

DMA

SourceSecurity.com - Making the world a safer place
Copyright © Notting Hill Media Limited 2000 - 2025, all rights reserved

Our other sites:
SecurityInformed.com | TheBigRedGuide.com | HVACinformed.com | MaritimeInformed.com | ElectricalsInformed.com

Subscribe to our Newsletter


You might also like
One system, one card
One system, one card
Understanding AI-powered video analytics
Understanding AI-powered video analytics
Security and surveillance technologies for the casino market
Security and surveillance technologies for the casino market
Modernizing access control
Modernizing access control
SourceSecurity.com
SecurityInformed.com

Browsing from the Americas? Looking for our US Edition?

View this content on SecurityInformed.com, our dedicated portal for our Americas audience.

US Edition International Edition
Sign up now for full access to SourceSecurity.com content
Download Datasheet
Download PDF Version
Download SourceSecurity.com product tech spec