Steve Munford
   HOME

TheInfoList



OR:

Sophos Limited is a British
security software Computer security software or cybersecurity software is any computer program designed to influence information security. This is often taken in the context of defending computer systems or data, yet can incorporate programs designed specifically ...
and hardware company. It develops and markets
managed security services In computing, managed security services (MSS) are network security services that have been outsourced to a service provider. A company providing such a service is a managed security service provider (MSSP) The roots of MSSPs are in the Internet S ...
and
cybersecurity Computer security (also cybersecurity, digital security, or information technology (IT) security) is a subdiscipline within the field of information security. It consists of the protection of computer software, systems and networks from thr ...
software and hardware, such as managed detection and response, incident response and endpoint security software. Sophos was listed on the
London Stock Exchange The London Stock Exchange (LSE) is a stock exchange based in London, England. the total market value of all companies trading on the LSE stood at US$3.42 trillion. Its current premises are situated in Paternoster Square close to St Paul's Cath ...
until it was acquired by
Thoma Bravo Thoma Bravo, LP is an American private equity and growth capital firm based in Chicago, Illinois. It is known for being particularly active in acquiring enterprise software companies and has over $130billion in assets under management . It ...
, an American private equity firm in March 2020.


History

Sophos was founded by Jan Hruska and Peter Lammer and began producing its first antivirus and encryption products in 1985. During the late 1980s and into the 1990s, Sophos primarily developed and sold a range of security technologies in the UK, including encryption tools available for most users (private or business). In the late 1990s, Sophos concentrated its efforts on developing and selling antivirus technology and embarked on a program of international expansion. In 2010, the majority interest of Sophos was sold to
Apax Partners Apax Partners LLP is a British private equity firm, headquartered in London, England. The company also operates out of six other offices in New York, Hong Kong, Mumbai, Tel Aviv, Munich and Shanghai. As of March 2024, the firm had raised and adv ...
. In 2011, Utimaco Safeware AG (acquired by Sophos in 2008) was accused of supplying data monitoring and tracking software to partners that have sold to governments such as Syria. Sophos issued a statement of apology and confirmed that they had suspended their relationship with the partners in question and launched an investigation. In June 2015, Sophos announced plans to raise US$100 million on the London Stock Exchange. Sophos was floated on the FTSE in September 2015. On 14 October 2019, Sophos announced that
Thoma Bravo Thoma Bravo, LP is an American private equity and growth capital firm based in Chicago, Illinois. It is known for being particularly active in acquiring enterprise software companies and has over $130billion in assets under management . It ...
, a US-based private equity firm, made an offer to acquire Sophos for US$7.40 per share, representing an enterprise value of approximately US$3.9 billion. The board of directors of Sophos stated their intention to recommend the offer to the company's shareholders unanimously. On 2 March 2020, Sophos announced the completion of the acquisition. In February 2024, President Joe Levy was appointed acting CEO after Kris Hagerman resigned from the CEO position. Mr. Levy was named the permanent CEO in May 2024. In October 2024, Sophos released a report about their Pacific Rim counter-offensive operation, detailing actions taken against China-based adversaries along with additional information concerning this effort. It was reported by ''
Wired Wired may refer to: Arts, entertainment, and media Music * ''Wired'' (Jeff Beck album), 1976 * ''Wired'' (Hugh Cornwell album), 1993 * ''Wired'' (Mallory Knox album), 2017 * "Wired", a song by Prism from their album '' Beat Street'' * "Wired ...
'' that the company had been targeted for years by hackers affiliated with the
University of Electronic Science and Technology of China A university () is an institution of tertiary education and research which awards academic degrees in several academic disciplines. ''University'' is derived from the Latin phrase , which roughly means "community of teachers and scholars". Uni ...
and Sichuan Silence Information Technology, a company associated with China's
Ministry of Public Security Ministry of Public Security can refer to: * Ministry of Justice and Public Security (Brazil) * Ministry of Public Security of Burundi * Ministry of Public Security (Chile) * Ministry of Public Security (China) * Ministry of Public Security of Co ...
. The attacks were attributed to Chinese advanced persistent threats such as
APT41 Double Dragon is a hacker group with alleged ties to the Chinese Ministry of State Security (MSS). Classified as an advanced persistent threat, the organization was named by the United States Department of Justice in September 2020 in relation to ...
,
APT31 Cyberwarfare is the strategic use of computer technology to disrupt the functions of a state or organization, specifically through the deliberate targeting of information systems for military or tactical purposes. In the People's Republic of Chin ...
, and
Volt Typhoon Volt Typhoon (also known as VANGUARD PANDA, BRONZE SILHOUETTE, Redfly, Insidious Taurus, Dev-0391, Storm-0391, UNC3236, or VOLTZITE) is an advanced persistent threat engaged in cyberespionage reportedly on behalf of the People's Republic of China. ...
. The
Federal Bureau of Investigation The Federal Bureau of Investigation (FBI) is the domestic Intelligence agency, intelligence and Security agency, security service of the United States and Federal law enforcement in the United States, its principal federal law enforcement ag ...
(FBI) asked for the public's help in identifying the attackersA.


Acquisitions and partnerships

In 2003, Sophos acquired
ActiveState ActiveState Software Inc is a Canadian software company headquartered in Vancouver, British Columbia. It develops, sells, and supports cross-platform development tools and secure software supply chain solutions for dynamic languages such as ...
, a
Canadian Canadians () are people identified with the country of Canada. This connection may be residential, legal, historical or cultural. For most Canadians, many (or all) of these connections exist and are collectively the source of their being ''C ...
software company that developed anti-spam software. From September 2003 to February 2006, Sophos served as the parent company of
ActiveState ActiveState Software Inc is a Canadian software company headquartered in Vancouver, British Columbia. It develops, sells, and supports cross-platform development tools and secure software supply chain solutions for dynamic languages such as ...
, a developer of programming tools for
dynamic programming language A dynamic programming language is a type of programming language that allows various operations to be determined and executed at runtime. This is different from the compilation phase. Key decisions about variables, method calls, or data types are ...
s: in February 2006, ActiveState became an independent company when it was sold to
Vancouver Vancouver is a major city in Western Canada, located in the Lower Mainland region of British Columbia. As the List of cities in British Columbia, most populous city in the province, the 2021 Canadian census recorded 662,248 people in the cit ...
-based
venture capitalist Venture capital (VC) is a form of private equity financing provided by firms or funds to startup, early-stage, and emerging companies, that have been deemed to have high growth potential or that have demonstrated high growth in terms of number ...
firm Pender Financial. In 2007, Sophos acquired ENDFORCE, a company based in
Ohio Ohio ( ) is a U.S. state, state in the Midwestern United States, Midwestern region of the United States. It borders Lake Erie to the north, Pennsylvania to the east, West Virginia to the southeast, Kentucky to the southwest, Indiana to the ...
, United States, which developed and sold security policy compliance and
network access control Network access control (NAC) is an approach to computer security that attempts to unify endpoint security technology (such as antivirus, host intrusion prevention, and vulnerability assessment), user or system authentication and network security ...
(NAC) software. In July 2008, Sophos agreed to acquire Utimaco, a publicly-held company focused on
encryption In Cryptography law, cryptography, encryption (more specifically, Code, encoding) is the process of transforming information in a way that, ideally, only authorized parties can decode. This process converts the original representation of the inf ...
and other
data security Data security or data protection means protecting digital data, such as those in a database, from destructive forces and from the unwanted actions of unauthorized users, such as a cyberattack or a data breach. Technologies Disk encryption ...
products, for over $340 million; the acquisition closed for $314 million in September 2008. In October 2013, Utimaco was divested via a management buyout involving investors PINOVA Capital and
BIP Investment Partners BIP Investment Partners S.A. is an investment company based in Luxembourg City, in southern Luxembourg. Its activities are divided between providing private equity to businesses, particularly venture capital to startups, and investing in large, w ...
. In May 2011, Sophos announced the acquisition of Astaro, a privately held provider of network security products, headquartered in Wilmington, Massachusetts, USA and Karlsruhe, Germany. At the time Astaro was the 4th largest UTM (
Unified Threat Management A next-generation firewall (NGFW) is a part of the third generation of Firewall (computing), firewall technology, combining a conventional firewall with other network device filtering functions, such as an application firewall using in-line deep p ...
) vendor and while the deal made sense at the time Forbes questioned its viability. Sophos subsequently renamed the Astaro UTM to Sophos UTM. In February 2014, Sophos announced that it had acquired Cyberoam Technologies, a provider of network security products. In December 2015, Sophos merged with Surfright, the company behind the malware scanner HitmanPro. They would later integrate HitmanPro Alert, an anti malicious program designed to detect malicious behavior and stop it into Sophos. In November 2016, Sophos acquired Barricade, a start-up with a behavior-based analytics engine. In February 2017, Sophos acquired Invincea, a software company that provides malware threat detection, prevention, and pre-breach forensic intelligence. In October 2024, Sophos agreed to acquire
SecureWorks Secureworks Inc. is an American cybersecurity company. The company has approximately 4,000 customers in more than 50 countries, ranging from Fortune 100 companies to mid-sized businesses in a variety of industries. It became part of Dell, Dell ...
, a publicly-held company majority owned by
Dell Dell Inc. is an American technology company that develops, sells, repairs, and supports personal computers (PCs), Server (computing), servers, data storage devices, network switches, software, computer peripherals including printers and webcam ...
focused on Extended Detection and Response (XDR), for $859 million. The acquisition was completed in February 2025, and was closely followed by a
layoff A layoff or downsizing is the temporary suspension or permanent termination of employment of an employee or, more commonly, a group of employees (collective layoff) for business reasons, such as personnel management or downsizing an organization ...
of 6% (or an estimated 400 people) from the combined workforce.


See also

*
Antivirus software Antivirus software (abbreviated to AV software), also known as anti-malware, is a computer program used to prevent, detect, and remove malware. Antivirus software was originally developed to detect and remove computer viruses, hence the name ...
*
Comparison of antivirus software Legend The term "on-demand scan" refers to the possibility of performing a manual scan (by the user) on the entire computer/device, while "on-access scan" refers to the ability of a product to automatically scan every file at its creation or sub ...
*
Comparison of computer viruses Creating a unified list of computer viruses is challenging due to inconsistent naming conventions. To combat computer viruses and other malicious software, many security advisory organizations and anti-virus software developers compile and publis ...


References


External links

*
Sophos
{{Authority control 1985 establishments in England 2015 initial public offerings 2020 mergers and acquisitions Abingdon-on-Thames Antivirus software British companies established in 1985 Companies based in Oxfordshire Companies formerly listed on the London Stock Exchange Computer security companies Computer security software companies English brands Private equity portfolio companies Security software Software companies established in 1985 Software companies of England Windows security software Apax Partners companies Thoma Bravo companies