Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Deepwatch announced on February 18, 2025, that it had acquired Dassana, a security-intelligence company whose AI-powered risk and threat-exposure technology is intended to expand Deepwatch’s managed security operations with broader visibility and risk-based prioritization. The companies did not disclose financial terms or independent post-acquisition results.

What Deepwatch announced

In its February 18, 2025 announcement, Deepwatch said it had acquired Dassana and would integrate Dassana’s technology into the Deepwatch platform. The release describes Dassana as a provider of security-intelligence solutions using artificial intelligence to process and correlate security data, support agentic workflows, and automate parts of security and compliance activity.

The announcement frames the transaction as a strategic combination: Deepwatch’s managed security operations and human expertise would be paired with Dassana’s broader view of an enterprise’s security exposure. That rationale is Deepwatch’s stated position, not an independently measured result.

Key transaction facts

Item What was disclosed
Announcement date February 18, 2025
Buyer Deepwatch
Acquired company Dassana
Planned integration Dassana technology integrated into the Deepwatch platform
Financial terms Not stated in the announcement or related company article
Financial adviser Oppenheimer & Co. Inc., identified as Dassana’s exclusive financial adviser

Why did Deepwatch acquire Dassana?

Deepwatch says the deal is intended to connect managed detection and response operations with continuous visibility into security exposure. In practical terms, the company is positioning the acquisition around three needs:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
  • More unified security information: AI would correlate data from multiple security systems rather than leave teams to interpret isolated alerts and findings.
  • Risk-oriented prioritization: Exposure and vulnerabilities could be ranked using business and asset context so security teams can focus on the issues most likely to matter.
  • Security-leadership visibility: Dashboards and business-aware reporting are intended to help CISOs explain risk, remediation and residual exposure to executives.

Deepwatch CEO John DiLullo described the intended customer benefit this way: “This acquisition marks an incredible opportunity for our customers to access emerging AI capabilities together with unequaled, human expertise that in the past would have only been available to a privileged few.” That is a statement from the acquiring company, not a performance guarantee.

What does Dassana add to Deepwatch?

A February 18, 2025 article by Deepwatch CISO Chad Cragle and Chief Product Officer Anand Ramanathan provides more detail about the planned capabilities. It says the system could draw on telemetry and findings from categories including:

  • Cloud-native application protection platforms (CNAPP)
  • Vulnerability-management systems
  • Endpoint detection and response (EDR)
  • Application-security tools

The article also describes exposure discovery, risk prioritization, remediation tracking, customizable dashboards and SQL-powered access to security data. Business context is presented as a way for CISOs to connect technical findings with the importance of affected assets and communicate mitigation progress to executives.

Those are company-authored descriptions of intended integration and use cases. The cited materials do not independently verify that every listed integration or workflow was generally available, nor do they publish comparative performance results.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

How does threat exposure management fit with MDR?

Managed detection and response (MDR) primarily focuses on monitoring activity, investigating suspicious behavior and helping organizations respond to threats. Threat exposure management adds a broader, preventive view: it seeks to identify weaknesses, exposed assets and control gaps before or alongside active incidents.

Deepwatch’s stated strategy is to combine those perspectives. Exposure data can give an MDR team context about which assets are most important, while operational detections can add evidence about how risk is being exercised in the environment. A unified workflow could, in principle, help teams move from discovering exposure to assigning remediation and tracking completion. Whether that produces better outcomes depends on the actual integrations, data quality, operating processes and customer environment.

What the companies said

Dassana CEO Ajay Nigam said: “Cyber resilience requires deep visibility into an enterprise’s exposure risk, as well as tools that detect unusual activity and deploy security defenses.” The statement captures the strategic logic of combining exposure management with security operations, but it does not quantify the acquisition’s effect.

The announcement also quotes Matt Sharp, CISO at Xactly: “With Dassana’s platform, we established and operationalized a highly effective TVM framework, enabling data-driven decision-making that strengthened our risk posture and provided clear, board-ready insights I can confidently stand behind.” This is an attributed customer testimonial in Deepwatch’s press release, not an independently audited evaluation.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

What remains unknown about the acquisition?

  • Purchase price: Deepwatch did not disclose how much it paid for Dassana.
  • Financing and closing conditions: The cited materials do not provide financing details or a detailed list of transaction conditions.
  • Post-acquisition results: No independent measurements show changes in detection speed, exposure reduction, remediation rates, customer security outcomes or financial performance.
  • Current packaging: The announcement does not establish how Dassana capabilities are packaged, priced or offered in 2026.

Deepwatch’s press-release index, observed September 30, 2026, lists later company announcements, but that listing alone does not establish specific product availability or acquisition outcomes.

How to evaluate a similar offering

Organizations comparing threat-exposure platforms, MDR providers or combined services should ask vendors for evidence in five areas:

  1. Data coverage and integrations: Confirm support for the organization’s actual CNAPP, vulnerability, EDR, application-security, cloud and business systems.
  2. Risk context: Ask how asset criticality, business ownership and exploitability affect prioritization, and whether teams can adjust the model.
  3. Remediation workflow: Determine what can be automated, how assignments move into existing ticketing systems, and how closure is validated.
  4. Reporting: Review operational dashboards as well as executive views that explain exposure, decisions and residual risk.
  5. Evidence of results: Request independently verifiable customer references, evaluation methods and outcome data rather than relying only on product claims or testimonials.

Bottom line on Deepwatch’s Dassana deal

The February 18, 2025 acquisition gives Deepwatch a stated route to add AI-assisted exposure analysis, cross-tool correlation and risk prioritization to its managed security operations. It is best understood as a strategic product-integration announcement. The available company materials explain the intended capabilities and rationale, but they do not disclose the transaction value or independently demonstrate improved cyber-resilience outcomes.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.