-

New Microsoft and Rubrik Integration Delivers Complete Identity Attack Response

Microsoft Defender and Rubrik Identity Resilience create a unified detection-to-recovery offering; customers achieve trusted recovery in hours instead of days

SAN FRANCISCO--(BUSINESS WIRE)--Rubrik (NYSE: RBRK), the security and AI operations company, today announced a new integration with Microsoft Defender at RSAC 2026, enabling organizations to move from identity threat detection to rapid remediation and trusted recovery. The integration connects Microsoft’s real-time identity threat detection with Rubrik’s automated identity rollback and recovery capabilities, helping organizations respond faster to identity-based attacks.

Identity has become the primary target for modern cyberattacks. According to Rubrik Zero Labs research, 90% of IT and security leaders say identity-driven cyberattacks are their organization’s top concern. Yet most security tools stop at detection, leaving organizations to manually investigate malicious changes and restore compromised identity systems.

“Detection is only half of the battle,” said Anneka Gupta, Chief Product Officer at Rubrik. “Organizations need the ability to quickly and surgically reverse malicious identity changes and completely restore their infrastructure. By combining Microsoft Defender’s threat detection with Rubrik Identity Resilience, we give security and IAM teams the power to move from a detected compromise to a trusted, recovered state in hours, instead of days.”

With this integration, organizations can extend Microsoft Defender detections directly into Rubrik’s identity recovery workflows, allowing teams to investigate incidents, reverse malicious identity changes, and restore trust across hybrid environments.

Joint Rubrik and Microsoft Defender customers can now:

  • Understand attack impact faster by correlating threat alerts with identity changes.
  • Reverse malicious identity modifications without performing full domain restores.
  • Restore trusted identity states using immutable recovery points.
  • Maintain visibility across hybrid identity environments, including Active Directory and Entra ID.

The integration builds on Rubrik’s continued investment and broader vision for Identity Resilience, focused on ensuring identity systems remain trusted, available, and recoverable in the face of cyberattacks, operational disruptions, and evolving compliance requirements.

Over the past 15 months, Rubrik has rapidly expanded its identity capabilities, introducing recovery for Active Directory and Entra ID, expanding protection to multi-identity provider environments including Okta, and launching Identity Resilience capabilities that help organizations investigate incidents and reverse malicious changes. The company has also expanded ecosystem integrations with leading security platforms including CrowdStrike Falcon Identity Protection and now Microsoft Defender, connecting threat detection with automated remediation and trusted recovery.

For more on how Rubrik is redefining identity security, read more here.

About Rubrik

Rubrik (NYSE: RBRK) is the Security and AI Operations Company. The company's data security platform secures and recovers data from cyber threats and operational disruptions. Rubrik has been recognized as a Leader in the Gartner® Magic Quadrant™ for Enterprise Backup and Recovery Software Solutions for two consecutive years and is trusted by over 6,600+ customers across the globe, including world-renowned enterprises and government organizations. For more information, visit www.rubrik.com and follow @rubrikInc on X (formerly Twitter).

Contacts

Media Contact
Meghan Fintland
Head of Global PR
925.785.9192
press@rubrik.com

Rubrik

NYSE:RBRK

Release Versions

Contacts

Media Contact
Meghan Fintland
Head of Global PR
925.785.9192
press@rubrik.com

More News From Rubrik

Rubrik Launches Community for the Cyber Resilience Front Line

PALO ALTO, Calif.--(BUSINESS WIRE)--Rubrik (NYSE: RBRK), the Security and AI Operations Company, today launched the Rubrik Practitioner Community at rubrik.com/community, a dedicated platform for practitioners working across data protection, identity security, cloud resilience, and AI operations. The community allows members to connect peer experts, exchange best practices, and access practitioner-authored thought leadership, playbooks, and technical resources. The launch comes as new research...

Rubrik Announces Cyber Resilience for Google Cloud SQL

PALO ALTO, Calif.--(BUSINESS WIRE)--Rubrik (NYSE: RBRK), the Security and AI Operations Company, announced today it is now offering cyber resilience capabilities to organizations running Google Cloud SQL. The integration enables Cloud SQL customers to leverage Rubrik Security Cloud to protect their managed PostgreSQL databases with immutable, automated backups that add Rubrik’s enterprise-grade cyber resilience without disrupting their current database operations or recovery strategy. Cloud SQL...

Rubrik Secures and Accelerates AI Agents on Google Cloud

PALO ALTO, Calif.--(BUSINESS WIRE)--Rubrik (NYSE: RBRK), the Security and AI Operations company, today launched Rubrik Agent Cloud (RAC) for Gemini Enterprise Agent Platform. The collaboration will help organizations to accelerate and secure the deployment of AI agents on Google Cloud with a critical layer of semantic governance and operational resilience powered by Rubrik’s real-time, intent-based guardrails. Gartner predicts that 40% of enterprise applications will be integrated with task-spe...
Back to Newsroom