The BloodHound Enterprise Difference

Attackers evade detection by assuming human and non- human identities, accessing valid credentials and sessions on those identities, and blending in with expected behavior as they reach their objectives. BloodHound Enterprise eliminates the attack paths that enable cross- environment attacks on your critical applications and assets.

See how BloodHound Enterprise uncovers and eliminates hidden threats to your vital systems

BloodHound Enterprise Protects the Critical Assets of Leading Global Enterprises

BloodHound Enterprise is used by customers to monitor and manage…

500k

Critical assets

110M

Identities

>5B

Relationships

650B

Attack Paths

Extended Attack Path Management Coverage

Enterprise identity risk is a cross-platform problem. Users authenticate through cloud and on-premises identity. BloodHound Enterprise is built for the reality of cross platform attack paths.

BloodHound OpenGraph
  • Continuous attack path management across Active Directory, Microsoft Entra ID, Okta, GitHub, and Jamf-managed macOS environments
  • Create Privilege Zones to protect critical assets throughout your enterprise
  • Adversarial perspective of cross-environment risk
  • More Enterprise OpenGraph extensions available soon

Privilege Zones built to protect critical assets

BloodHound Enterprise Privilege Zones allow organizations to define any asset, group, or environment as a protected zone with continuously monitored attack paths.

This extends protection beyond Tier Zero to every critical asset the business depends on:

A grouping of hexagons with icons in them are connected by a red line

Enterprise-grade security controls

BloodHound Enterprise has enhanced security controls built for Attack Path Management in complex environments.

Dedicated technical account management

BloodHound Enterprise customers work with a named Technical Account Manager. Your TAM guides deployment, optimizes data collection across all environments, and runs regular monthly sessions to build internal capability and keep your program advancing. When complex issues arise, you have a direct line to someone who knows your environment.

BloodHound Enterprise vs. BloodHound Essentials

Capability

Bloodhound Enterprise

BloodHound Essentials

Privilege Zones

Unlimited

Attack Path Protection: AD & Entra ID

Included

OpenGraph Extensions (Okta, GitHub, Jamf)

3 included

Environment-Targeted Access Controls (ETAC)

Bring Your Own Key (BYOK)

On-Premises Deployment

Available

FedRAMP-High

Available

BloodHound Scentry

Available

Available

Technical Account Management

Named TAM

Pooled TAM

Which BloodHound is right for you?

BloodHound Enterprise is the complete attack path management program for protecting critical assets across the hybrid enterprise.

For organizations limited to Active Directory and Entra ID today and focused on Tier0 only, BloodHound Essentials offers targeted value and identity risk reduction.

For everyone operating across a modern hybrid environment, BloodHound Enterprise is where the program belongs.