
15 Sep 2026
eSentire buys stealth AI security startup, ships Atlas AIDR
eSentire announced it acquired a stealth-mode AI security startup and fully incorporated the product into its Atlas Platform as Atlas AIDR. The module is meant to give security teams a real-time record of AI activity — conversations, tool calls, tokens/cost, and security events — with inline controls for PII redaction, prompt-injection screening, and agent/MCP tool governance.
SAFETY desk — same-day primary acquisition shipping into a live MDR platform shows enterprise demand for audit trails and inline guardrails as employees and agents use AI at work.
What AIDR is meant to do, still company: give security teams a complete real-time record of AI activity across their estate — the full conversation timeline, every tool call with its inputs and outputs, token and cost accounting, latency, and any security events — all attributed to a user, team, and workstation. File that record as eSentire’s. This desk did not watch a session.
Platform, as the same page has it: Atlas is vendor-agnostic, and AIDR continues that — it captures and governs AI activity and complements the endpoint, SIEM, and other security tools customers already have. SIEM here means security information and event management — the log-and-alert system a security team already runs. File that complement-not-replace frame as eSentire’s. This desk did not install Atlas.
Capabilities listed inside Atlas Detect, still company: complete AI visibility — users, teams, and workstations tied to sessions, plus a live inventory of agents, models, providers, MCP servers, and tools; real-time security and inline control — redact personally identifiable information (PII) before it reaches the model, screen for prompt injections, and enforce custom business-logic rules inline; agent supply-chain governance for the external MCP servers and tools autonomous agents call; and granular financial and operational tracking with custom budgets, automated alerts, and daily anomaly digests. File those four buckets as eSentire’s. This desk did not run a redaction or a budget alert.
Browser vs desktop, company: for browser-based AI use — an employee using a web-based assistant — Atlas can inventory that activity through existing telemetry, so shadow-AI use is seen. Granular inline control is applied at the desktop layer through Atlas AIDR. File that split as eSentire’s. This desk did not watch a browser session.
Context the company cites, not a desk survey: 76% of employees now use AI at work, up from 30% two years ago, according to McKinsey as eSentire quotes it. The company says most organizations still cannot answer who is using AI, what data it is accessing, where that data is going, and what it costs, and that they lack audit-ready documentation. File the 76% / 30% lines as McKinsey via eSentire, and the gap as eSentire’s. This desk did not rerun the McKinsey survey.
Named voice on the release: James C. Foster, chief executive officer, eSentire. He talks about an accountability and security gap — enterprises racing to put AI to work without being able to say what their AI agents are doing with proprietary data, or what those agents cost. File the name, title, and that gap as his, via eSentire. His quotes are color only and stay in Sources.
Partner quote, company-attributed: Nim Nadarajah, CISO and managing partner at CriticalMatrix, an eSentire partner. He says you can delegate work to AI but not accountability, and that clients need a record of what agents access plus the ability to enforce boundaries. File the name, title, and that line as his, via eSentire. The full quotes stay in Sources. This desk did not interview him.
Platform context, still company: this acquisition builds on June 2026 Atlas Preempt — continuous, AI-led autonomous penetration testing and attack-path validation — and July Atlas Response, email security, and patch management. eSentire says it was named a Leader in the 2026 IDC MarketScape for Worldwide MDR Services for the midmarket, and that it protects more than 2,000 organizations across more than 80 countries and over two million endpoints. MDR is managed detection and response — outsourced security monitoring. File those product dates, the IDC MarketScape line, and those counts as eSentire’s. This desk did not audit the IDC report or count endpoints.
Availability, company: Atlas AIDR is generally available to eSentire customers and partners within the Atlas Platform. File GA as eSentire’s. This desk did not provision a tenant.
Plain English for the rest of the card: MDR = managed detection and response, meaning outsourced security monitoring. PII = personally identifiable information. MCP = Model Context Protocol-style tool servers that agents call. prompt injection = tricking an AI with crafted text to bypass its rules. SIEM = security information and event management, the log-and-alert system a security team already runs. shadow AI = staff using AI tools the security team has not approved.
PRIMARY here: eSentire’s 15 Sep 2026 company newsroom — Tier A PRIMARY company source, the original record. The company site is product-home context, not a second originating newsroom. The stealth-mode acquisition, Atlas AIDR inside Atlas Detect, the real-time session / tool-call / token-cost / security-event record, the vendor-agnostic complement to endpoint and SIEM tools, the visibility / inline-control / MCP-governance / budget-tracking buckets, the browser-telemetry vs desktop-inline split, the McKinsey 76% / 30% lines via eSentire, the Foster accountability-gap line, the Nadarajah partner quote, the June Atlas Preempt and July Atlas Response / email / patch sequence, the 2026 IDC MarketScape Leader line, the more-than-2,000-organizations / 80-plus-countries / two-million-endpoints counts, and general availability are company-attributed. The acquired company’s name and the purchase price were not disclosed. NOT claimed: a deal value, a startup name, independently verified employee-AI or endpoint counts, customer logos, that this desk tested Atlas AIDR or sat in eSentire’s SOC, a stock tip, or investment advice. Distinct from the already-filed delos-data-100m-nonstop-ai, cockroach-continuum, aiuc-40m-series-a, rockwell-anthropic-glasswing, exein-270m-physical-ai, and wso2-agent-manager-ga.
RELATED
- AIUC raises $40M Series A to underwrite AI agents and frontier models
- Rockwell joins Anthropic’s Project Glasswing for industrial cyber defense
- Exein raises $270M at $1.7B to secure Physical AI machines
- WSO2 ships Agent Manager GA to govern enterprise AI agents without locking to one stack
- Delos Data raises over $100M for Nonstop AI inference networking
- Cockroach Labs launches Continuum, an Agentic Database Cloud
On 15 Sep 2026 eSentire announced it acquired a stealth-mode AI security startup and fully incorporated the product and technology into the eSentire Atlas Platform as Atlas AIDR. The company PRIMARY is eSentire’s newsroom post “eSentire Acquires Stealth-Mode AI Security Startup, Bringing New AI Observability and Control to the Atlas Platform,” dated September 15, 2026, and datelined Waterloo, Ontario. Atlas AIDR sits inside Atlas Detect. The acquired company’s name and the purchase price were not disclosed — this desk is not inventing either. That company page is the filing event. These are company claims. This desk did not sit inside eSentire’s security operations center.



















