Bởi ITCuli

Nhìn nhanh Cybersecurity Roundup Deals Announced: lợi ích, rủi ro và lưu ý triển khai

Nhìn nhanh Cybersecurity Roundup Deals Announced: lợi ích, rủi ro và lưu ý triển khai

Bản viết lại dựa trên nguồn: https://www.securityweek.com/cybersecurity-ma-roundup-39-deals-announced-in-september-2026/

Cybersecurity M&A Roundup: 39 Deals Announced in September 2026 – SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webcasts Virtual Events Podcast ICS: ICS Cybersecurity Conference Malware & Threats Cyberwarfare Cybercrime Data Breaches Fraud & Identity Theft Nation-State Ransomware Vulnerabilities Security Operations Threat Intelligence Incident Response Tracking & Law Enforcement Security Architecture Application Security Cloud Security Endpoint Security Identity & Access IoT Security Mobile & Wireless Network Security Risk Management Cyber Insurance Data Protection Privacy & Compliance Supply Chain Security CISO Strategy Cyber Insurance CISO Conversations CISO Forum ICS/OT Industrial Cybersecurity ICS Cybersecurity Conference Funding/M&A Cybersecurity Funding M&A Tracker Cyber AI Cybersecurity News Webcasts Virtual Events Podcast ICS Cybersecurity Conference Connect with us Hi, what are you looking for? SecurityWeek Malware & Threats Cyberwarfare Cybercrime Data Breaches Fraud & Identity Theft Nation-State Ransomware Vulnerabilities Security Operations Threat Intelligence Incident Response Tracking & Law Enforcement Security Architecture Application Security Cloud Security Endpoint Security Identity & Access IoT Security Mobile & Wireless Network Security Risk Management Cyber Insurance Data Protection Privacy & Compliance Supply Chain Security CISO Strategy Cyber Insurance CISO Conversations CISO Forum ICS/OT Industrial Cybersecurity ICS Cybersecurity Conference Funding/M&A Cybersecurity Funding M&A Tracker Cyber AI M&A Tracker Cybersecurity M&A Roundup: 39 Deals Announced in September 2026 Significant cybersecurity M&A deals announced by Dragos, IBM, Palo Alto Networks, Kiteworks, and Upwind. By Eduard Kovacs | October 6, 2026 (7:01 AM ET) Flipboard Reddit Whatsapp Whatsapp Email Thirty-nine cybersecurity-related merger and acquisition (M&A) deals were announced in September 2026. For a detailed view of the more than 420 acquisitions announced in 2025, check out SecurityWeek’s annual M&A report. Here are some of the most important cybersecurity M&A deals announced in September 2026:    A-LIGN acquires AssurePoint and Pathfynder Cybersecurity compliance firm A-LIGN has acquired Sydney-based AssurePoint, a cloud security assessment company. The deal adds IRAP assessments to A-LIGN’s portfolio and marks its entry into Australia. A-LIGN also acquired Pathfynder, a firm providing penetration testing, red teaming, and incident response services. Pathfynder will operate as Pathfynder by A-LIGN. Advertisement. Scroll to continue reading. Aiuken Cybersecurity acquires 4Elitech Spanish managed security provider Aiuken Cybersecurity, part of the Allurity group, has acquired 4Elitech, a Spanish specialist in industrial and critical infrastructure cybersecurity. The deal adds OT threat detection and industrial incident response capabilities to Aiuken’s offering. Dragos acquires NetRise and runZero  Dragos has completed its acquisitions of NetRise and runZero as part of Accenture’s $4.1 billion OT cybersecurity push announced in June. NetRise contributes firmware-level insight into device exposure and software supply chain visibility, while runZero adds asset discovery, exposure assessment and attack surface intelligence. Dragos said the acquisitions add exposure management and software supply chain security to its platform alongside existing OT asset visibility and threat detection. IBM acquires Logiq IBM has acquired UK-based Logiq Consulting, a cybersecurity consultancy serving the UK defense, government, and critical infrastructure sectors. The deal expands IBM’s secure digital transformation and sovereign technology capabilities in the UK. Kiteworks acquires Bonfy.AI Kiteworks has announced the acquisition of AI data security company Bonfy.AI, a move aimed at extending real-time policy enforcement over sensitive data exchanged by both human users and AI agents. Bonfy technology will extend Kiteworks’ policy enforcement across agent and human data exchange and usage. NetSPI to merge with Synack NetSPI and Synack have agreed to merge, creating an offensive security company with more than $200 million in revenue. The KKR-backed combined company will pair expert penetration testers with agentic AI for continuous security testing. Palo Alto Networks acquires Console Palo Alto Networks has acquired Console, an AI-native platform for building agentic workflows using natural language, reportedly for $500 million in cash and stock. Console’s technology will deepen agentic capabilities in the Cortex platform, letting security teams automate investigation and remediation. Pistachio acquires Hugin.io Oslo-based human risk management company Pistachio has acquired the intellectual property of Norwegian cyber-risk management platform Hugin.io. Pistachio plans to use the technology to launch a compliance management product in 2027. Quantum eMotion to acquire Plurilock Quantum security firm Quantum eMotion (QeM) has agreed to acquire Plurilock Security for roughly C$33.8 million ($23.6 million) in cash and stock. Both companies are based in Canada. The deal gives QeM an established cybersecurity revenue base, customer relationships, and public-sector procurement channels. Quorum Cyber to acquire Ontinue Edinburgh-based Quorum Cyber has agreed to acquire Ontinue, a managed extended detection and response (MXDR) provider headquartered in Redwood City, California, and Zurich. The deal will combine AI-powered MXDR, cyber resilience and human expertise to create a Microsoft-first agentic SOC. Upwind acquires Aegis Cloud security firm Upwind has acquired Israeli AI security startup Aegis in an all-equity deal reportedly valued at $30 million. Aegis’ co-founders will lead the newly launched Upwind AI Security Labs, which will research and build defenses against AI-driven attacks. Other cybersecurity M&A deals announced in September 2026:     Act Security acquires Cloud Copilot AXAITRA acquires Innovate CBTS acquires Recovery Point Systems CloudFirst acquires Forvis Mazars’ IT and cyber managed services practice Concentrix acquires CastleHill Managed Risk Solutions CyberMaxx acquires Avertium Epiq acquires Canopy Fime acquires Red Alert Labs Harvey acquires Guardrails AI InfraVia acquires a majority stake in Nexis ISMG acquires INE IT Solutions acquires STACK Cybersecurity ITC Federal acquires Apriva ISS Malam Team acquires Foretech Software Nomios acquires Orbcom Omada acquires EmpowerID Project Eleven acquires Riva Labs Risk X Group acquires Wolfpack Information Risk S&P Global to acquire OpenZeppelin SecureSky acquires Soveren SGS acquires majority stake in NetSentries Socure acquires Fravity Spin.AI acquires DoControl Surfshark acquires majority stake in Optery ThreatBook acquires CyberStrikeAI TRG acquires Fentron Tusker acquires Fortress SRM Related: Cybersecurity M&A Roundup: 33 Deals Announced in August 2026 Related: Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 Written By Eduard Kovacs Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering. Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights. More from Eduard Kovacs Google Narrows Open Source Bug Bounty Amid Wave of Invalid Automated ReportsExploitation of Citrix NetScaler Zero-Day Hits Appliances Patched Days EarlierCrypto Scammers Hijack Microsoft’s Official X AccountAI Agents Aimed SQL Injection at US and Canadian Government SitesPolice Shut Down KillSec Ransomware, Identify Alleged Teen LeaderTreasury Blacklists Most-Wanted ATM Malware Developer and His NetworkGoogle Launches Gemini 4 Argon With Guardrail-Free Access for Vetted DefendersGoogle: AI Is Changing the Pace and Profile of Vulnerability Discovery Latest News Android’s October 2026 Updates Patch 25 VulnerabilitiesAtlassian Patches Critical Vulnerability Affecting 8 ProductsPersonal Information for Over 1 Million People Stolen in a Cyberattack on Arizona’s Court SystemFBI Blames Contractor’s Missed Patch for ShinyHunters BreachFBI Arrests ‘Most Wanted’ Developer of Ploutus ATM MalwareApple to Tighten Full Disk Access Controls in macOS Amid AI RisksLong-Running NPM Malware Campaign Accumulates 40,000 Downloads8.8 Million Impacted by Data Breach at Denmark’s Central Person Register Trending Daily Briefing NewsletterSubscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Webinar: Securing AI Agents, MCPs, and AI Automations October 7, 2026 Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice. Register Virtual Event: Zero Trust & Identity Strategies Summit 2026 October 14, 2026 Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction. Register People on the MoveChip Wentz has been appointed as SVP & CISO at Keurig Dr Pepper Inc.Lumen Technologies has named Kim Keever as CSO.Quantum Secure Encryption Corp. has appointed Joseph Hall as CIO.More People On The MoveExpert Insights AI Has Changed Attack Speed, Not Security Fundamentals As AI accelerates vulnerability discovery and exploitation, so-called virtual patching still comes down to defense-in-depth and strong application security fundamentals. (Joshua Goldfarb) Four Cyber Threats Harboring Big Plans for the Future – AI, supply-chain exposure, quantum computing and geopolitical conflict are testing security programs. Preparing for disruption must become part of day-to-day operations. (Steve Durbin) Begin at the End: How to Enable Agentic Remediation Agentic remediation is not an act of faith. We are talking about fixing known problems, not judgment calls about unfamiliar risk. (Nadir Izrael) “We Think the Security Control Is Working” Is No Longer Good Enough Point-in-time audits and sampled assessments offer only snapshots; continuous control monitoring provides evidence that security controls are working today. (Sravish Sridhar) This Key Will Self-Destruct: An Open Standard for Revocable API Keys Every leaked credential should be dead, or dying, within sixty seconds of being found. Here's a proposal to make that the default. (Matt Honea) Flipboard Reddit Whatsapp Whatsapp Email Popular Topics Cybersecurity News Industrial Cybersecurity Security Community Virtual Cybersecurity Events Webcast Library CISO Forum AI Risk Summit ICS Cybersecurity Conference Cybersecurity Newsletters Stay Intouch Cyber Weapon Discussion Group RSS Feed Security Intelligence Group Follow SecurityWeek on LinkedIn About SecurityWeek Advertising Event Sponsorships Writing Opportunities Feedback/Contact Us Privacy Policy News Tips Got a confidential news tip? We want to hear from you. Submit Tip Advertising Reach a large audience of enterprise cybersecurity professionals Contact Us Daily Briefing Newsletter Subscribe to the SecurityWeek Daily Briefing and get the latest content delivered to your inbox. Privacy Policy Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved. Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time. Close