Freedom report

One barScore 5.4

  • Free tierNo free tier on record
  • Open codeNo open-source code on record
  • Runs widely1 of 6 device platforms
  • DocumentedPlans, terms and facts published

Red Canary MDR is a managed detection and response service covering endpoints, identities, cloud, and other connected security sources. Its experts monitor, investigate, and help respond to threats around the clock. The service uses behavior-based detections, threat intelligence, and threat hunts to identify suspicious activity. Customers can follow investigations in a unified timeline with information about a threat’s root cause, scope, and impact. Response combines automated capabilities with human-led action, including remediation by Red Canary experts. Integrations cover endpoint, network, cloud, identity, SaaS, and other security data sources, with examples including AWS, Microsoft, CrowdStrike, and Palo Alto Networks. Alerts can be sent to SIEM, SOAR, or ITSM platforms. The Security Data Lake can retain MDR or other raw data for a period selected by the customer. Red Canary describes the service as a complement to an existing SOC. Its integration documentation caps cloud integrations at 2,000 accounts or external services in one subdomain. Current product documentation identifies the service as Zscaler MDR. Pricing is available on request.

Who it is for

It suits organizations with an existing SOC seeking round-the-clock monitoring, investigation, and response across connected security sources. Teams should check the documented cloud integration limit against their needs.

What is good

  • Experts monitor and respond around the clock
  • Uses behavior-based detections and threat hunts
  • Unified timeline shows cause, scope, and impact
  • Alerts can flow to SIEM, SOAR, or ITSM
  • Customer-selected retention period for data lake

What to know first

  • Pricing is available only on request
  • Cloud integrations limited to 2,000 accounts or services per subdomain
  • Product documentation identifies it as Zscaler MDR

Verdict

Red Canary MDR pairs round-the-clock threat monitoring with investigation timelines and automated or expert-led response. Its integration cap and current product identity are important details to clarify before choosing it.

Red Canary MDR plans and pricing

All plans
Red Canary MDR Not published Pricing is not listed; request a demo or contact Red Canary for plans. redcanary.com · 3 Oct 2026

Compared on managed detection and response services

Monitoring coverage
24_7
Response model
coordinated
Threat hunting
Yes
Incident response
Yes
Coverage areas
all_three

Best Red Canary MDR alternatives

See all 20