The highlights: Barracuda has acquired Evo Security, combining Evo's MSP-first identity and access management (IAM) capabilities with the intelligent BarracudaONE® platform spanning identity, email, network, data, and applications and strengthened by managed XDR. The result is a more complete, unified security stack that lets MSPs secure identities and infrastructure with fewer vendors - reducing complexity while opening new recurring revenue opportunities.
For Managed Service Providers (MSPs), juggling too many security tools is a familiar headache. Every additional vendor adds another console and login, another integration, another set of policies to maintain, and another invoice. Barracuda's acquisition of Evo Security directly addresses that challenge head-on by consolidating critical identity layers into a single, MSP-native platform.
This post breaks down what the acquisition means and how the combined capabilities create a stronger, more cohesive security stack for the channel.
What does the Barracuda acquisition of Evo Security mean for MSPs?
According to the acquisition announcement, Barracuda is folding Evo Security's purpose-built IAM platform into the BarracudaONE platform. Evo was built from the ground up for MSPs, with a multi-tenant design that lets partners manage identity security across every client from a single dashboard.
That MSP-first DNA matters. Attacks involving stolen credentials are surging, as evidenced in the IBM X‑Force Intelligence Index, which reports a 71% year‑over‑year increase., because it's easier for attackers to log in than to hack in. Pairing Evo's identity controls with Barracuda's zero trust network access (ZTNA), Entra ID identity protection and managed extended detection and response (XDR) closes a critical gap many MSPs face today.
What identity tools does Evo Security bring to Barracuda?
Evo Security consolidates several identity and access functions into one platform. These tools strengthen the front door of any client environment: the login.
Technician Elevation: Just-in-time (JIT) admin rights with automatic password rotation for MSP and co-managed techs.
End User Elevation: Least-privilege controls that let standard users work without permanent admin rights.
MFA: Multi-factor authentication for Windows, Mac, and Linux endpoints, stopping credential-based attacks before they start.
SSO: Single sign-on for SAML web applications, cutting password sprawl.
RADIUS: Secure authentication for VPNs and firewalls.
Help Desk Verification: Identity checks for users calling the help desk, reducing social engineering risk.
Together, these capabilities address a real operational pain point: Evo reports that roughly 50% of MSP tickets are access-related. Streamlining identity directly reduces support workload.
What does Barracuda contribute to the combined stack?
Barracuda brings the rest of the security foundation MSPs need to protect identities, users, data, and infrastructure — all delivered through the BarracudaONE platform. Together with Evo Security’s IAM capabilities, these offerings create a unified, identity‑centric security model built for MSP operations.
Barracuda’s core capabilities include:
Email Protection: Advanced defenses against phishing, business email compromise, ransomware delivery, and social engineering. As the primary entry point for identity‑based attacks, email security is essential to protecting credentials and stopping compromise before it starts.
Application Protection: Security for web applications and APIs, blocking exploits, bot attacks, and automated reconnaissance that often precede identity misuse and lateral movement.
Network Security: Firewalls, secure connectivity, and zero trust access that enforce identity‑driven controls across remote access and perimeter environments — reducing blast radius and strengthening access governance.
Data Protection: Backup and recovery for Microsoft 365, endpoints, and critical workloads, ensuring MSPs can restore identity systems, user data, and configurations quickly after ransomware, accidental deletion, or malicious tampering.
Managed XDR: 24/7 threat detection and response across email, endpoints, network, and cloud, correlating signals to stop credential compromise, privilege escalation and lateral movement before they spread.
Together, these capabilities — now combined with Evo Security’s MSP‑first IAM — give partners a modern, unified way to secure identities across every layer of the attack chain.
How do Evo and Barracuda capabilities complement each other?
Together, Evo Security and Barracuda create the industry’s most comprehensive channel-native platform unifying privileged access management (PAM), access control, identity protection, and identity threat detection and response.
Consider a phishing attack. Barracuda Email Protection blocks the malicious message before it reaches the user. If an attacker still obtains credentials, Evo's MFA blocks the login. Should they get further, Privileged Access Management (PAM) and least-privilege controls limit the damage. And if ransomware slips through, Barracuda restores the affected systems. Each layer reinforces the next - creating a unified, identity‑driven defense that strengthens overall resilience.
For MSPs, this means fewer vendors, tighter integration, and a single security narrative to sell. It also supports cleaner audit logging and centralized access management, both of which help clients meet compliance requirements with less effort.
A stronger, simpler security stack for the channel
Barracuda's acquisition of Evo Security gives MSPs a path to consolidate identity and infrastructure protection without sacrificing depth. The combined platform reduces tool sprawl, strengthens defenses at both the login and the endpoint, and turns security into a scalable, high-margin managed service.
If you're an MSP weighing your next move, the takeaway is simple: a unified stack means less complexity to manage and more value to deliver. Explore how the combined Barracuda and Evo Security offerings can fit your portfolio—and start building a more cohesive security practice today.
Frequently Asked Questions

