all case studies

How The AME Group Wins with Petra

“From our standpoint, it’s a big competitive advantage. It’s autonomous, it’s really quick, and it gives so much helpful information.”
36 Attacks Stopped
For Clients In 1 Month
1 False Alarm
For Clients In 1 Month
2 mins, 48 secs
Mean time-to-contain (MTTC)
90 Hours/Month
Billable Hours Reclaimed
Larry Brock
The AME Group
Challenge
Technical security reports show value, but need to land for clients.
previous solution
Manually writing and re-writing reports for clients. Arrived hours after incident, not formatted for execs.
solution
Petra's instant client-ready incident reporting. 2 mins to value, available immediately when an incident occurs.

About The AME Group

Since 1985, The AME Group has been assisting clients to maximize their revenue, reduce expenses, and reduce risk using a portfolio of award-winning IT solutions and experienced staff. 

The AME Group is also part of Lyra Technology Group––a family of industry-leading technology service businesses.

The AME Group has more than 25 offices and operates nationwide. Whether it be in a small office of 5 employees or a conglomerate with 10,000+ employees, The AME Group helps you focus on what’s most important: your business.

Petra is MSP-only. To get best-in-class Microsoft 365 account-compromise protection through a world-class MSP with excellent support, visit https://www.theamegroup.com/ or call 1-800-264-8851.

Pre-Petra

Larry Brock, VP of Service at The AME Group, found Petra at an XChange conference in August 2025. 

After a rigorous evaluation, The AME Group decided to augment their security stack with Petra as the standard for all clients.

M365 monitoring was nothing new to The AME Group, they’d been ahead of the curve on stopping BECs for their clients.

“These attacks matter. I mean, they’re the majority of how a client is going to get hit. So, we decided a while back to go ahead and bundle in M365 monitoring to our base stack.”

Larry explains that The AME Group regularly invests time in refreshing their stack and making sure they’re staying up-to-date with today’s threats for their clients.

“We pride ourselves on a great security stack that’s also a great value for our clients. We take a lot of time to make sure all of the components of that stack are right for our clients.”

As part of that regular refreshing and researching, Larry and his team found something unexpected about the account compromises they’d been seeing.

“I was shocked when we did the Petra trial.”
“I had thought our tools were pretty solid to begin with. We’d been using SaaS Alerts and a custom setup with Elastic”
“But, after some deep analysis by our security team, we found that some compromises were being caught 7-8 days late by those tools.”

Larry talks about how The AME Group launched a focused evaluation to find something both faster and clearer for Microsoft 365 compromises—the attacks that most often impact AME’s customers.

“So, we did the hard work, y’know? We did the research and evaluation.” 
“Seeing those 7-8 day delays uncovered by [Petra] Autopsy––and I mean, we hadn’t even known about them, because the previous tools had said 10 or so minutes––it kicked off a big mission on our team––to figure out what we should be using to protect our clients and make whatever new tool we decide to use a competitive advantage [for our MSP]”
“Our clients know that we’re going to be at the top of the game, protecting them better than anybody. We had to put in the work to figure out the right solution.”
“After a whole lot of evaluation, we found our way to Petra.”

Evaluating Petra

As part of that thorough evaluation, The AME Group ran Petra by both the incumbents and other ITDR tools they were considering to help their customers.

Quickly, it was clear they had found the right solution. 

“We did a side-by-side evaluation, and Petra caught some attacks that the other tools missed entirely, and caught all those attacks in under 5 minutes.”
“We’re known by our clients for being reliable, for being there for them. [That side-by-side evaluation] just made it clear––this is what’s going to help us be there for our clients.”
“We also knew that other MSPs aren’t necessarily being as innovative, they’re not spending as much time making sure that they’re on top of today’s attacks. We knew that we could make protection with Petra a competitive advantage and pass that advantage along to our clients.”

With Petra

“Once we decided to go with Petra… I can’t say enough good things about that deployment. All very slick and easy, especially compared to what we’d done before. Minimal effort. Obviously, it takes a little bit of time, but as far as integrating new tools go, that was definitely the easiest we’ve done in a while.”

Petra now pairs with AME’s best-in-class security team to deliver an incredibly fast MTTR, less business disruption than other MSPs, and much quicker remediation for clients.

“From our standpoint, it’s a big competitive advantage. It’s autonomous, it’s really quick, and it gives so much helpful information.”

Larry also talks about how it helped their team on the Operations side:

“Operationally, we think we’re probably saving 3 or more hours a day.”
 “And we’re now training folks on our help desk who can respond quickly to use the product and do what we’d previously need senior engineers to do, which costs us 50-60% less on an hourly wage standpoint. And we can have those senior engineers focus on the work that uses their expertise and really helps clients.”

Larry sums it up like this:

“Petra, paired of course with our great security team’s unique expertise, is a big part of how we provide such great security outcomes to our clients. We’re stopping attacks in under 5 minutes and showing clients lots of helpful detail about exactly what happened, and how we can help that client prevent those attacks in the future.”
“Our clients get a great outcome, and it’s also a great venue for us to show off to clients the unique security expertise we’re known for.”

And Larry emphasizes how it strengthens trust with The AME Group’s clients:

“It engenders a certain amount of trust, you know? Some clients just take it for granted now, they know, ‘you guys got my back’. It’s something we’re proud of. That’s how good our security stack is.”

Results (Sept–Oct 2025)

  • 38 alerts from Petra.
  • 37 attacks stopped for clients, 1 false alarm.
  • Mean time-to-contain (MTTC): 167.8 seconds (≈ 2:48 mins)

Put simply: The AME Group is shutting down Microsoft 365 account-compromises for clients in under three minutes, then handing customers a precise incident timeline and concrete prevention steps.

“From our standpoint, it’s a big competitive advantage. It’s autonomous, it’s really quick, and it gives so much helpful information.”

--

The AME Group has more than 25 offices and operates nationwide. Whether it be in a small office of 5 employees or a conglomerate with 10,000+ employees, The AME Group helps you focus on what’s most important: your business.

Petra is MSP-only. To get best-in-class Microsoft 365 account-compromise protection through a world-class MSP with excellent support, visit https://www.theamegroup.com/ or call 1-800-264-8851.

Community Love

The secret weapon of high-growth MSPs

“I have to tell you! You have an amazing product––better than any other ITDR products out in the market.”

Yoel Ungar

"My customers are really impressed at the speed and the visibility of the incident, and the reports are crystal clear. Thank you Petra!"

Pascal Pelletier
Switched from Huntress ITDR

“Petra's advanced machine learning has helped us stop multiple attacks with no false positives. We believe this will make a substantial reduction in the workload of our SOC team and reduce noise and alert fatigue.”

Andrew Hartley
Evaluated Alongside Huntress ITDR

“We've really enjoyed working with Petra, it's helped us open doors with larger enterprises and showcase how our team can deliver value beyond what their current providers offer.”

Gerty Tsinnie
Switched from SaaS Alerts

“Petra detected and quarantined within 2 minutes. What else can I say? Petra made us look like heroes. Thanks for building an amazing product.”

Daniel Byrd

“I think I’ve said it before but I stand by this. Petra is one of the only solutions I've ever seen that reduces work and improves accuracy.”

Jeremy Jethro
Uses alongside P2 Risky Sign-ins

“We did a demo and signed up, amazing product. This is definitely a game changer!”

Mike Burnett
Switched from Huntress ITDR

“+1 for Petra. So far ahead of the other players in the space… they have no competition”

Mat Kordell
Switched from SaaS Alerts

“Seeing the Autopsy results, my first thought was, ‘Duh—we need this in place.’ People see that report and immediately get it.”

Robert Shank
Switched from Hornet Security

“We tested both Blackpoint and Huntress, but Petra is so far the only real solution to the massive increase in BECs we are seeing.”

David Rafsky
Switched from SaaS Alerts

“We've been using Petra for a number of months and have been very happy! Much faster and more accurate than the other solutions we've used”

Leo Bletnitsky
Switched from Blackpoint Cloud Response

“We have been absolutely loving them compared to Blackpoint cloud response. They’ve been blowing it out of the water.”

Matt Graham
Evaluated alongside Blackpoint Cloud Response

“I’ve done head-to-head comparisons — Petra was twice as fast. In a world where speed matters most, that’s the key differentiator.”

Bill Hunt
Evaluated alongside Blackpoint Cloud Response

“If you manage Microsoft environments, you should be using Petra”

Brandon Glidden
Switched from Huntress ITDR

“I have to tell you! You have an amazing product––better than any other ITDR products out in the market.”

Yoel Ungar

"My customers are really impressed at the speed and the visibility of the incident, and the reports are crystal clear. Thank you Petra!"

Pascal Pelletier
Switched from Huntress ITDR

“Petra's advanced machine learning has helped us stop multiple attacks with no false positives. We believe this will make a substantial reduction in the workload of our SOC team and reduce noise and alert fatigue.”

Andrew Hartley
Evaluated Alongside Huntress ITDR

“We've really enjoyed working with Petra, it's helped us open doors with larger enterprises and showcase how our team can deliver value beyond what their current providers offer.”

Gerty Tsinnie
Switched from SaaS Alerts

“Petra detected and quarantined within 2 minutes. What else can I say? Petra made us look like heroes. Thanks for building an amazing product.”

Daniel Byrd

“I think I’ve said it before but I stand by this. Petra is one of the only solutions I've ever seen that reduces work and improves accuracy.”

Jeremy Jethro
Uses alongside P2 Risky Sign-ins

“We did a demo and signed up, amazing product. This is definitely a game changer!”

Mike Burnett
Switched from Huntress ITDR

“+1 for Petra. So far ahead of the other players in the space… they have no competition”

Mat Kordell
Switched from SaaS Alerts

“Seeing the Autopsy results, my first thought was, ‘Duh—we need this in place.’ People see that report and immediately get it.”

Robert Shank
Switched from Hornet Security

“We tested both Blackpoint and Huntress, but Petra is so far the only real solution to the massive increase in BECs we are seeing.”

David Rafsky
Switched from SaaS Alerts

“We've been using Petra for a number of months and have been very happy! Much faster and more accurate than the other solutions we've used”

Leo Bletnitsky
Switched from Blackpoint Cloud Response

“We have been absolutely loving them compared to Blackpoint cloud response. They’ve been blowing it out of the water.”

Matt Graham
Evaluated alongside Blackpoint Cloud Response

“I’ve done head-to-head comparisons — Petra was twice as fast. In a world where speed matters most, that’s the key differentiator.”

Bill Hunt
Evaluated alongside Blackpoint Cloud Response

“If you manage Microsoft environments, you should be using Petra”

Brandon Glidden
Switched from Huntress ITDR

“We did a demo and signed up, amazing product. This is definitely a game changer!”

Mike Burnett
Switched from Huntress ITDR

“Petra detected and quarantined within 2 minutes. What else can I say? Petra made us look like heroes. Thanks for building an amazing product.”

Daniel Byrd

“We tested both Blackpoint and Huntress, but Petra is so far the only real solution to the massive increase in BECs we are seeing.”

David Rafsky
Switched from SaaS Alerts

"My customers are really impressed at the speed and the visibility of the incident, and the reports are crystal clear. Thank you Petra!"

Pascal Pelletier
Switched from Huntress ITDR

“If you manage Microsoft environments, you should be using Petra”

Brandon Glidden
Switched from Huntress ITDR

“We have been absolutely loving them compared to Blackpoint cloud response. They’ve been blowing it out of the water.”

Matt Graham
Evaluated alongside Blackpoint Cloud Response

“We've been using Petra for a number of months and have been very happy! Much faster and more accurate than the other solutions we've used”

Leo Bletnitsky
Switched from Blackpoint Cloud Response

“If you manage Microsoft environments, you should be using Petra”

Brandon Glidden
Switched from Huntress ITDR

“I’ve done head-to-head comparisons — Petra was twice as fast. In a world where speed matters most, that’s the key differentiator.”

Bill Hunt
Evaluated alongside Blackpoint Cloud Response

“Petra detected and quarantined within 2 minutes. What else can I say? Petra made us look like heroes. Thanks for building an amazing product.”

Daniel Byrd

“Petra's advanced machine learning has helped us stop multiple attacks with no false positives. We believe this will make a substantial reduction in the workload of our SOC team and reduce noise and alert fatigue.”

Andrew Hartley
Evaluated Alongside Huntress ITDR

"My customers are really impressed at the speed and the visibility of the incident, and the reports are crystal clear. Thank you Petra!"

Pascal Pelletier
Switched from Huntress ITDR

“I have to tell you! You have an amazing product––better than any other ITDR products out in the market.”

Yoel Ungar

“I think I’ve said it before but I stand by this. Petra is one of the only solutions I've ever seen that reduces work and improves accuracy.”

Jeremy Jethro
Uses alongside P2 Risky Sign-ins

“We've been using Petra for a number of months and have been very happy! Much faster and more accurate than the other solutions we've used”

Leo Bletnitsky
Switched from Blackpoint Cloud Response

“I have to tell you! You have an amazing product––better than any other ITDR products out in the market.”

Yoel Ungar

"My customers are really impressed at the speed and the visibility of the incident, and the reports are crystal clear. Thank you Petra!"

Pascal Pelletier
Switched from Huntress ITDR

“Petra's advanced machine learning has helped us stop multiple attacks with no false positives. We believe this will make a substantial reduction in the workload of our SOC team and reduce noise and alert fatigue.”

Andrew Hartley
Evaluated Alongside Huntress ITDR

“We've really enjoyed working with Petra, it's helped us open doors with larger enterprises and showcase how our team can deliver value beyond what their current providers offer.”

Gerty Tsinnie
Switched from SaaS Alerts

“Petra detected and quarantined within 2 minutes. What else can I say? Petra made us look like heroes. Thanks for building an amazing product.”

Daniel Byrd