Sangfor Technologies has been listed as a Representative Vendor of Managed Detection and Response (MDR) Services in China in the 2022 Market Guide for Managed Detection and Response Services, China[1] by Gartner®.

According to Gartner, Representative Vendors listed in the report “are those that are visible to Gartner clients based on inquiries and represent variety in both distribution and size.”

Sangfor Named as a Representative Vendor of MDR Services 

What is Managed Detection and Response?

For readers unfamiliar with Managed Detection and Response, let us back up and provide a brief introduction.

Gartner defines MDR as “the services providing customers with remotely delivered modern security operations center (MSOC) functions. These functions allow organizations to rapidly detect, analyze, investigate and actively respond to threat mitigation and containment.”

Core MDR services include 24/7 security monitoring, incident detection and response, threat hunting, and threat intelligence. MDR vendors may also package adjacent security services along with core MDR services. These may include asset discovery and management, vulnerability assessments, forensics, incident root cause analysis, penetration testing, and on-site emergency response.

MDR services can be deployed in various service models. In a Full Technology Stack service model, the majority of the security tools used to render the service is owned by the MDR vendor. This is the opposite in a Bring-Your-Own-Technology stack model, in which customers mainly use their own security tools for the service. A Hybrid Technology Stack, on the other hand, involves a more even proportion of security tools from the MDR vendor and the customer.

Readers who wish to gain a deeper understanding of MDR the following article by our MDR experts. Learn why MDR is the answer to today’s cyber security talent shortage and discover the many benefits organizations can reap from MDR.

Insights into the MDR Services Market in China

The Gartner Market Guide observes that “MDR services in China are different from those of the global market through their hybrid delivery model of combining remote and on-site service teams and the various options of adjacent services that are available.” However, the report notes that the Chinese MDR market is “moving forward to the international model”.

The transition to the international model we believe is fueled by a number of factors, including:

  • Lockdown and Quarantine Measures
    • Pandemic-related lockdown and quarantine measures mean that on-site delivery of MDR services is not always possible and reliable. This has pushed many organizations to “seek automated, remote and fast-to-deploy security operations solutions.”
  • Global Security Talent Shortage
    • In line with the global situation, China is also suffering from the shortage in cyber security personnel and skills. The report notes that “small and midsize businesses without sufficient security foundations (headcount, technology deployment, etc.) want MDR services to quickly deliver basic monitoring and response functions, to meet security baselines from regulations and standards such as multilevel protection scheme (MLPS) 2.0, and to respond to security incidents that are not expected to occur frequently or with huge impacts.”

In terms of market direction, the Gartner Market Guide notes that “the MDR services market is still in a stage of expansion in China, so it has huge potential for growth.” Specifically, the report predicts that “by 2026, 60% of organizations in China that currently have an internal security operations center (SOC) will use MDR services to augment their internal security capabilities and resources.”

Sangfor Cyber Guardian MDR

Sangfor Cyber Guardian is Sangfor’s Managed Detection and Response (MDR) service. Sangfor Cyber Guardian seamlessly integrates human and machine intelligence to help organizations detect and respond quickly and accurately to security threats. It is powered by Sangfor’s state-of-the-art AI-based threat detection and response engines, which pull in global threat intelligence to enhance detection accuracy. Sangfor Cyber Guardian's global team of security experts work 24/7. They continuously analyze threats and provide customers meaningful guidance on how to respond to these threats. With over 1,000 customers, 1.2 billion logs analyzed daily, and an expanding library of over 1,500 detection use cases, Cyber Guardian is proven to boost cyber threat detection.

Visit the Cyber Guardian webpage to learn about its advantages, benefits, use cases, videos, and more!


[1] Gartner, Inc., Market Guide for Managed Detection and Response Services, China, Angela Zhao, Published 17 October 2022

Disclaimer: Gartner does not endorse any vendor, product or service depicted in its research publications, and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner research publications consist of the opinions of Gartner's research organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. Gartner is a registered trademark and service mark of Gartner, Inc. and/or its affiliates in the U.S. and internationally and is used herein with permission. All rights reserved.

Listen To This Post


Get in Touch

Get in Touch with Sangfor Team for Business Inquiry

Related Articles


Sangfor Recognized by Gartner® as a Sample Vendor in Emerging Tech Impact Radar: Security

Date : 29 Nov 2022
Read Now


Sangfor Partners With NGXess to Deliver Cyber Solutions in Sri Lanka

Date : 02 Nov 2022
Read Now


FUJIFILM Business Innovation Hong Kong Collaborates with Sangfor Technologies to Launch First "Cybersecurity Experience Lab" in Hong Kong

Date : 25 Oct 2022
Read Now

See Other Product

Cyber Command - NDR Platform
Endpoint Secure
Internet Access Gateway (IAG)
NGAF - Next Generation Firewall (NGFW)
SASE Access
icon notification