Vade is an AI-powered email security platform for Microsoft 365, protecting against phishing, malware and business email compromise through native API integration, with Threat Coach security awareness training bundled at no extra cost.
Listing updated . Checked by MSP Software .
Vade is an email security platform from Vade (now part of Hornetsecurity and Proofpoint) for Microsoft 365, targeting MSPs and small to mid-market businesses who want advanced phishing and malware detection without deploying an external email gateway. The platform uses machine learning and behavioral analysis, processing 2.5 billion messages daily, to block phishing, spear phishing, business email compromise and ransomware that bypasses Exchange Online Protection and Microsoft Defender for Office 365. Vade integrates natively with Microsoft 365 via API, requiring no MX record changes and activating in minutes. The core product includes post-delivery threat remediation, automatically moving or deleting detected threats from user inboxes, and remediation reporting across multiple client tenants from a central MSP console. Threat Coach is bundled at no extra cost, delivering automated, contextual security awareness training whenever a user encounters a malicious email, with a gamified quiz that measures and reinforces phishing awareness. Vade also offers standalone archiving, DMARC monitoring, encryption and data loss prevention products for broader security coverage. Pricing is not published and requires contacting sales for a quote (checked September 2026). The platform offers a free trial to evaluate before committing. Vade is based in France and integrates with SIEM, EDR and XDR platforms through log export, Microsoft 365 native features including Outlook report buttons, and third-party services such as Splunk. MSPs should confirm whether Vade's post-delivery threat remediation and single-tenant reporting model fits their client support workflow compared to products like Mimecast or Proofpoint Essentials, and verify API rate limits match their environment scale.
Vade stands out for bundling Threat Coach security awareness training at no additional cost, which suits MSPs looking to add user training value without a separate awareness platform subscription. It has no published pricing and requires a sales conversation, which may frustrate shops evaluating quickly. Check whether Threat Coach's reactive, contextual training approach meets your needs if your clients want traditional phishing simulation campaigns. Confirm the API post-delivery scanning model works for your ticketing and remediation workflow. Test the multi-tenant console with a realistic number of client tenants during the trial.
| Feature | Supported | Note |
|---|---|---|
| Phishing and malware filtering | yes | AI-based behavioral analysis detects phishing and spear phishing in real time |
| Spoofing and impersonation protection | yes | DMARC, DKIM and SPF monitoring; separate DMARC Manager product |
| Email continuity | unknown | |
| Archiving | yes | Separate email archiving product available |
| Security awareness training bundle | yes | Threat Coach bundled at no extra cost |
| API-based post-delivery scanning | yes | Native Microsoft 365 API integration with post-delivery threat scanning and auto-remediation |
| DMARC monitoring | yes | DMARC Manager product with instant notifications |
| Attachment sandboxing | yes | Sandbox Engine analyzes attachment behavior in isolated virtual environment |
| Data loss prevention | yes | Data loss prevention scanning for outgoing messages |
| Email encryption | yes | TLS encryption in transit; secure email with encryption policy customization |
| Microsoft 365 integration | yes | Native API-based integration without MX record changes |
| Self-service quarantine | unknown |
| Feature | Supported | Note |
|---|---|---|
| Phishing simulation campaigns | no | Threat Coach is reactive training on actual threats, not simulation campaigns |
| Training content library | yes | Threat Coach includes gamified training content |
| Automated remediation training | yes | Threat Coach delivers training automatically when user encounters phishing |
| Phish-reporting button | yes | Native Outlook phishing report button integration |
| Multi-language content | unknown | |
| Compliance training modules | unknown | |
| Client-facing reporting | unknown | |
| Microsoft 365 and Google user sync | yes | Microsoft 365 user synchronization |
| Smishing and vishing simulation | unknown | |
| Gamification | yes | Threat Coach uses gamified quiz format |
| Campaign scheduling automation | unknown | |
| PSA integration for billing | unknown |
Vade was acquired by Hornetsecurity Group in March 2024. On 21 February 2025, Hornetsecurity and Vade merged their brands and operations into a single Hornetsecurity identity. Proofpoint completed its acquisition of Hornetsecurity Group in December 2025 for 1.8 billion dollars. Vade continues to be sold as a product under the Vade brand name and vadesecure.com domain as of September 2026, now part of Proofpoint's security portfolio.
Yes, Vade for Microsoft 365 includes Threat Coach at no additional cost. Threat Coach is an automated, contextual security awareness training feature that delivers a gamified quiz whenever a user encounters a malicious email. Unlike traditional phishing simulation platforms, Threat Coach trains users on real threats they receive rather than scheduled campaigns, and requires no manual setup or ongoing administration for MSPs.
Vade for Microsoft 365 is a native, API-based solution that integrates directly with Microsoft 365 without requiring MX record changes. It connects through the Microsoft Graph API and can be deployed in minutes. Vade continuously scans emails post-delivery using AI, and has permission to automatically remediate detected threats (move to junk or delete) across multiple user inboxes. MSP admins manage all client tenants from a single console.
Vade does not publish pricing; cost requires contacting Vade directly for a quote (checked September 2026). Pricing is typically quoted per mailbox or per user and depends on deployment scale and contract terms. Vade offers a free trial that allows hands-on evaluation without changing your email configuration, since the API-based deployment requires no MX record changes.
Vade uses AI-powered behavioral analysis to detect zero-day phishing, spear phishing variants, business email compromise, and malware by analyzing email content, sender behavior, URLs and visual elements like brand logos in phishing pages, rather than relying on signature matching alone. It catches threats that bypass Microsoft Defender for Office 365 and Exchange Online Protection through machine learning trained on large message databases, providing stronger detection than signature-based approaches.
Reviews are moderated. How reviews work.
Share what it is like to use this product day to day. Your experience helps other MSPs choose with confidence.
Write the first review