Huntress Managed ITDR has officially begun using per-identity escalations for new Unexpected Country and Unexpected VPN activity.
With this change, each identity that generates new escalatable activity will receive its own Huntress escalation and notification—making it easier to see exactly which identity needs your attention.
What this means for you:
- You may see more email or PSA notifications when multiple identities are involved in the same type of activity.
- If your PSA integration receives Huntress Escalation notifications, each per-identity escalation can generate its own PSA ticket.
- This does not mean one notification per login. Repeated activity for the same identity may continue to update an existing escalation until it’s resolved.
- Existing grouped escalations will remain unchanged; the new model applies to new escalation records created on or after August 19.
No action is required
to receive per-identity escalations. However, we recommend reviewing your account-level notification and PSA settings
today to make sure the right categories and recipients are configured for your team.You can review your options in Huntress Platform and Alert Notifications and learn more in ITDR: Unwanted Access Overview.