Kaseya Ransomware Protection uses VSA 10 to monitor endpoint files for behavioral signs of crypto-ransomware. When it detects file encryption, it can alert administrators, isolate the endpoint from most network connections, and attempt to terminate suspected malicious processes. Policies can cover all local drives or selected paths, set exclusions, adjust alert priority, and attempt to shut down an infected system. An isolated device can still reach VSA 10, allowing administrators to use VSA management features for remote triage and remediation. Kaseya says detection can work with its BCDR tools to restore infected endpoints to a pre-attack state using backup snapshots. The monitor supports Windows 8.1 and later; network drives, removable drives, and USB mass-storage devices are not monitored. Use requires an active VSA subscription, a Ransomware Detection license, an enabled policy, and an installed VSA 10 Agent that can communicate with the VSA instance. Pricing is by request.
Who it is for
Kaseya describes its ransomware resilience strategy for small and medium-sized businesses and its VSA monitoring for MSPs managing targeted devices at scale. It requires a VSA subscription and Ransomware Detection license.
What is good
- Behavioral analysis can detect file encryption
- Policies can isolate affected endpoints
- Remote triage remains available through VSA 10
- BCDR tools can restore from backup snapshots
- Alerts can integrate with Autotask, BMS, and ConnectWise
What to know first
- Monitoring supports Windows 8.1 and later only
- Network, removable, and USB mass-storage drives are excluded
- Requires an active VSA subscription and separate license
- Pricing is available by request
Verdict
VSA 10 combines endpoint monitoring, alerting, containment, and remote remediation, with a possible recovery path through Kaseya BCDR tools. Check the Windows-only monitoring scope and subscription requirements against the endpoints you manage.
Kaseya Ransomware Protection plans and pricing
All plansCompared on ransomware protection software
- Rollback or recovery
- Yes
- Behavioral detection
- Yes
- Automatic isolation
- Yes
- Immutable recovery copy
- Yes
- EDR included
- Yes




