Expel expands MDR service to offer proactive defense for email threats

April 22, 2025
Expel's approach allows customers to shift left in identifying email threats earlier in the attack lifecycle.

Expel, a managed detection and response (MDR) provider, today announced a major expansion of its MDR service to proactively defend one of the most persistent and dangerous threat vectors: email. Aided by new integrations with Proofpoint, Abnormal AI, and Sublime Security, this approach allows customers to shift left in identifying email threats earlier in the attack lifecycle, reducing risk and improving their security posture. 

“Identity-based incidents, largely originating from emails, made up 68% of all incidents among Expel customers last year,” said Yonni Shelmerdine, Chief Product Officer, Expel. “Incorporating email threat data enables us to identify and block attacks as soon as they hit the inbox and gives customers insight into the threat actors working to gain access to their organization. We’re delivering the most comprehensive MDR solution in the market, and these capabilities further solidify that commitment while providing our customers with unparalleled visibility and protection across critical attack vectors.” 

The surge of sophisticated email threats—aided by the rise of emerging technologies, like generative AI—is rapidly increasing alert volumes and overwhelming security teams as a result. With unique, Expel-written detections designed specifically for email security tools and technologies, this new innovation helps minimize unnecessary alerts and email-based threats.

Early detection and response is a critical component for modern organizations looking to bolster their risk reduction strategy against pervasive threats. Expel seamlessly integrates with and injects additional context from industry-leading email security tools, correlating across endpoint, user, and network activity to uncover the full scope of email-based attacks, and then takes action to mitigate those threats. 

Expel continues to expand its MDR coverage to fortify the most targeted attack vectors while helping customers maximize value from their existing investments with the company's tech-agnostic approach. Expel has 130+ integrations spanning endpoint, cloud, Kubernetes, SaaS, network, SIEM, email, identity, and more. 

To learn more about Expel's AI- and automation-driven approach to proactive defense against email attacks, visit our webpage or reach out any time.