SaaS Alerts is a cloud detection and response platform from Kaseya that monitors Microsoft 365, Google Workspace, and other SaaS applications for security threats. It automates detection and response to suspicious user activity, with pricing available by quote.
Listing updated . Checked by MSP Software .
SaaS Alerts is a cloud detection and response platform from Kaseya for MSPs managing multiple client tenants across cloud applications including Microsoft 365, Google Workspace, Salesforce, and Slack. The platform uses AI-powered machine learning to analyze user behavior patterns and identify anomalies such as unusual login patterns, suspicious data transfers, and unauthorized access attempts across cloud applications. By detecting these behavioral deviations from established baselines, SaaS Alerts provides visibility into potential security threats that traditional rule-based systems might miss.
The platform delivers real-time alerts with customizable thresholds to reduce alert fatigue, allowing MSPs to prioritize threats by severity. When threats are detected, SaaS Alerts automates response actions without manual intervention, including terminating compromised user sessions, blocking repeated login attempts, and containing threats before they spread. The platform also tracks user permissions, data activity, and application usage patterns across cloud environments to prevent privilege creep and identify unauthorized access. This automated response capability significantly reduces the time between threat detection and containment, limiting damage in security incidents.
SaaS Alerts integrates with existing RMM solutions to verify user identity and device trust, creating conditional access controls that ensure only authorized users on trusted devices can access critical cloud applications. The platform generates comprehensive audit logs and forensic documentation to support compliance requirements and accelerate incident response and remediation processes. This combination of detection automation and RMM integration suits MSPs who need to monitor multiple client cloud environments without dedicating staff to manual threat monitoring. Pricing is available by quote and is not published on the vendor website; MSPs should contact Kaseya directly for pricing details based on their deployment size and requirements (checked September 2026).
SaaS Alerts addresses a specific gap in cloud application security for MSPs managing multiple client Microsoft 365 and Google Workspace tenants. It automates threat detection and response across cloud applications without requiring manual SOC staffing or overhead. Because pricing is quote-only with no published rates, confirm the pricing model (per tenant, per user, or flat rate) and trial availability before scheduling a formal evaluation. Verify integration depth with your existing RMM platform and whether your PSA or ticket management workflow can consume and act on alerts. Confirm support options and SLAs for your deployment size.
| Feature | Supported | Note |
|---|---|---|
| Tenant and user provisioning | unknown | Not explicitly documented in available sources. |
| Licence assignment | unknown | Not explicitly documented in available sources. |
| Security baseline templates | yes | Machine learning detects anomalies and enforces security baselines for Microsoft 365 tenant usage. |
| Conditional access management | yes | Identity verification and device trust integration with RMM solutions for conditional access control. |
| Multi-tenant console | yes | Designed to manage and monitor multiple client tenants from a single platform. |
| Shadow SaaS discovery | yes | Monitors user permissions and data activity across cloud applications to discover unauthorized access patterns. |
| Automated offboarding | unknown | Not explicitly documented in available sources. |
| Reporting and QBR exports | yes | Comprehensive audit logs and forensic documentation support compliance reporting and incident remediation. |
| Microsoft Graph API integration | unknown | Product monitors Microsoft 365 but specific Graph API integration not documented. |
| PSA integration | unknown | Integration with PSA systems not explicitly documented in available sources. |
| Backup integration | unknown | Not explicitly documented in available sources. |
| Delegated admin (GDAP) support | unknown | Delegated admin support not explicitly documented in available sources. |
| Feature | Supported | Note |
|---|---|---|
| Usage and licence reconciliation | unknown | Product monitors usage but billing reconciliation not explicitly documented. |
| Distributor billing import | unknown | |
| PSA integration | unknown | Not explicitly documented in available sources. |
| Automated invoicing | no | This is a security monitoring tool, not a billing platform. |
| Multi-currency support | unknown | |
| Seat and licence utilisation alerts | unknown | |
| Margin reporting | unknown | |
| Recurring billing automation | unknown | |
| Microsoft partner billing import | unknown | |
| Client-facing invoices | unknown | |
| Payment collection | unknown | |
| Audit trail | unknown |
| Feature | Supported | Note |
|---|---|---|
| 24-hour human-staffed SOC | no | SaaS Alerts is an automated detection and response tool, not a managed SOC service. |
| Managed threat response and isolation | yes | Automated response to threats including session termination and login blocking. |
| Own endpoint telemetry agent | unknown | Focuses on SaaS and cloud application telemetry rather than endpoint telemetry. |
| Identity threat detection | yes | Detects suspicious user activity, unusual logins, and unauthorized access patterns. |
| Network monitoring | unknown | |
| Microsoft 365 monitoring | yes | Core feature; monitors Microsoft 365 tenant activity for security threats. |
| Monthly threat reporting | unknown | |
| PSA integration for ticketing | unknown | |
| Multi-tenant console | unknown | |
| Works with third-party EDR | unknown | |
| Dedicated incident response | unknown |
SaaS Alerts monitors security across multiple cloud applications including Microsoft 365, Google Workspace, Salesforce, and Slack. The platform uses AI-powered machine learning to detect anomalies across these applications and deliver real-time alerts for suspicious activity such as unusual logins or unauthorized data transfers.
SaaS Alerts automates threat response without manual intervention. When suspicious activity is detected, the platform can end compromised user sessions, block repeated login attempts, and contain threats. SaaS Alerts integrates with existing RMM solutions to verify user identity and device trust before allowing access to critical applications.
SaaS Alerts pricing is available by quote only and is not published on the vendor website. MSPs need to contact Kaseya directly to discuss pricing models and units specific to their deployment size and requirements. Different MSPs may have different pricing structures depending on factors such as the number of client tenants monitored and the deployment scope across cloud applications.
SaaS Alerts integrates with existing RMM solutions for identity verification and device trust capabilities to verify authorized users on trusted devices. Specific integration with PSA and billing platforms is not documented in publicly available sources, so MSPs should confirm compatibility with their existing tools during evaluation.
Reviews are moderated. How reviews work.
Share what it is like to use this product day to day. Your experience helps other MSPs choose with confidence.
Write the first review