For Incident Response Firms
Insurance-grade forensics for every M365 engagement, in 48 hours.
Petra reconstructs the full story of every M365 compromise: root-cause phishing email, full attacker timeline, IP and infrastructure behind the attack. The forensic work that used to take days happens automatically, in the background.
Why this matters for IR firms
Every M365 engagement currently means manual reconstruction across Purview, Defender, Sentinel, and the rest. The work eats your most expensive hours and stretches your turnaround. Insurance carriers are demanding faster reports. Petra automates the reconstruction so your engagement starts with the story already told.
What you get
Behavioral detection
Surface every past attacker, including the ones lurking for weeks. M Cubed found seven their first night.
End-to-end remediation
Contain the compromise while you investigate, instead of waiting on the client's MSP to do the cleanup.
Comprehensive forensics
Hand your client a complete, client-ready report in 48 hours, with the IP, ISP, timeline, and impact already documented.
A lot of people are in the same position we were. They just don't know what's really happening until all the forensic analysis is done.
David Xiong, CTO, M Cubed Technologies
M Cubed surfaced 7 live attackers in the first night with Petra.
How IR firms use Petra
Drop Petra into an active investigation. Five-minute setup via Microsoft Partner Center. Insurance-grade report delivered in 24 hours, ready for your client. Use the report as a deliverable in your engagement.
Common questions
- How is Petra priced for IR engagements?
- Per-engagement and ongoing-license options are available. Talk to our IR team for details.
- What does Petra see during an engagement?
- Microsoft 365 metadata across logins, mail, files, and Teams. Email contents are not processed.
- How quickly can Petra deploy?
- Five minutes via Microsoft Partner Center.
- Does Petra integrate with existing IR tooling?
- A public API is available. Talk to our IR team about specific integrations.
How MSPs win with Petra.
View all case studies →M-Cubed
“I think a lot of people are in the same position that we were——they just don't know what's really happening until all the forensic analysis is done.”
Compu-SOLVE Technologies
“Not only did it catch those 4 attacks our prior ITDR whiffed on, it's also really fast and intuitive for getting logs and reporting on incidents.”
Impact Business Technology
“What I like about Petra is you do one thing, and you do it extraordinarily well.”