Innovation Matrix Assessment
Adds MDR and offensive-security capability primarily through acquisition (Stripe OLT, Storm Technology) rather than in-house product development.
Over two decades of operating history, award recognition, and several hundred employees reflect solid, well-regarded operational maturity.
Sequential security-focused acquisitions demonstrate a deliberate, ongoing strategy of building out managed security services.
A conventional MSP-plus-security-boutique acquisition strategy, not a disruptive technology move.
Two consecutive years winning CRN MSP of the Year is meaningful independent industry validation of delivery quality.
Managed security operations (MDR, pentesting) are now an explicit, dedicated focus alongside its broader managed IT services.
Why CISOs Should Care
Littlefish's acquisition of Stripe OLT adds CREST-accredited MDR, pentesting, and offensive security to its existing managed IT services, giving UK CISOs a broader, award-winning MSP partner spanning both IT operations and dedicated security operations.
What Makes It Different
A two-time CRN MSP of the Year (2022, 2023), Littlefish combines strong industry recognition for people-centric managed IT with newly acquired CREST-certified offensive-security and SOC capability from Stripe OLT, differentiating it from MSPs that treat security as a bolt-on afterthought.
The Matrix Verdict
43/100 — EMERGING / UNRANKED
An award-winning, established UK MSP with roughly 500-900 employees that has deliberately built out dedicated security operations capability through sequential acquisitions (Storm Technology, then Stripe OLT); a credible, well-regarded mid-market MSSP option in the UK.
Editorial Note: Claims vs. Verified Findings
The Stripe OLT and earlier Storm Technology acquisitions are corroborated via Littlefish's own site and industry sources; employee counts vary by source (201-500 to ~900), reflecting different measurement points, and this profile uses a conservative mid-range estimate.
Sources
Alternatives to Littlefish
Abnormal AI
AI-native behavioral security platform that analyzes sender identity and communication patterns, rather than message content alone, to stop…
Palo Alto Networks Cortex XSIAM
Palo Alto Networks' AI-driven 'autonomous SOC' platform that unifies SIEM, EDR, SOAR, and attack-surface data into a single…
Fenix24
Chattanooga-based ransomware recovery specialist that has restored operations after 500+ real-world incidents, including 30 Fortune 500 companies.
Torq
AI-native hyperautomation platform positioning itself as an 'agentic SOC,' using a multi-agent system to autonomously execute large volumes…
Anvilogic
Palo Alto-based AI security operations platform that automates SOC detection engineering across existing SIEMs and data lakes without…
Tines
No-code security automation platform letting SOC teams build and share automated workflows ('Stories') without proprietary scripting or vendor…