Ontinue operates in the MXDR (Managed Extended Detection and Response) space, running what it calls an Agentic SecOps platform - a system that pairs AI agents with human analysts to deliver continuous detection and response. The platform is built exclusively around Microsoft's security stack: Microsoft Defender and Sentinel. That's a deliberate architectural choice, not a limitation; it means the team goes deep on one ecosystem rather than spreading thin across many. The numbers are concrete: 99.5% of alerts resolve automatically without customer intervention, and the average incident isolation time sits at three minutes. Those aren't aspirational - they're operational metrics the team ships against daily.
The company's geographic footprint spans Zurich, Redwood City, London, Düsseldorf, Vienna, Toronto, and India, supporting verticals including financial services, healthcare, manufacturing, legal, retail, and NGOs. That breadth of industry coverage means defenders here are exposed to a wide attack surface - ransomware targeting healthcare, business email compromise in financial services, supply-chain risk in manufacturing - and the platform has to handle all of it at scale. The core technical work lives at the intersection of AI agent design, security operations automation, and Microsoft Sentinel/Defender integration.
Ontinue holds multiple Microsoft partner recognitions, including Microsoft Partner of the Year for Switzerland and a Security Services Innovator award. The company has also been certified as a Great Place to Work. For security engineers and operators, the draw is specific: you're not building detection rules in a vacuum - you're deploying and tuning AI-driven response pipelines that have to work in production, against real alert volumes, across regulated industries.






