TechnologySep 24, 20269 min read

MSPs: Get Higher-Value Services Without a Dedicated Cluster Per Customer

 

Within the past year, our team has been hard at work building infrastructure designed for Managed Services Providers (MSPs). 

First we established our commitment to MSP-operated cyber resilience as a complete system: governance through RTPP for MSPs, consumption economics through MSP PayGo, platform execution, incident-ready support, and earned trust through Rubrik Verified. 

We then sharpened the operational layer that most affects your margin: usage visibility, centralized operations, and change readiness across customer environments.

Now, we’re extending the platform-execution layer itself with the introduction of shared-cluster multitenancy built around the RSC Tenant Account, allowing shared clusters to support a broader set of services. 

This launch (and the ones we continue to build), are about giving you more ways to grow the services you deliver from the shared infrastructure you already operate: more customers you can move from backup into higher-value cyber recovery, more networks you can onboard cleanly, and more disaster recovery and isolated recovery services you can offer without new dedicated infrastructure for every customer.

 

Move Customers Up-Market Without a Cluster Each

If you run a shared Rubrik cluster today, tenants get backup and restore, with premium capabilities like threat monitoring and data security posture management activating cluster-wide. This is one commitment that covers every tenant on that cluster. 

That approach has worked well for consistent, backup-focused fleets. It also means that when one tenant is ready for more services, you have had to choose between a cluster-wide upgrade or a dedicated cluster built just for them.

With this launch, one shared cluster can serve multiple tenant accounts, and each tenant gets its own Rubrik Security Cloud experience across eligible workloads. This provides each tenant with self-service visibility into its own data, credentials, and recovery resources, isolated from every other tenant.

That structure is what makes per-tenant activation possible. Where premium capabilities on a shared cluster once meant a single cluster-wide decision, per-tenant activation lets that decision belong to each tenant. Now, a cluster running twenty backup-only customers can add cyber recovery for the three who are ready to buy it, without a cluster-wide commitment and without touching the other seventeen.

For MSPs, that is a clearer upgrade path built into the infrastructure: more customers per cluster and an upsell conversation you can have tenant by tenant. If customers have asked about cyber recovery and the cluster-wide economics have not worked for a single tenant before, that is your pipeline on day one of general availability.

 

Tenant Isolation and Self-Service Customers Can Trust

Growing services on shared infrastructure only works if customers trust it, and that has been a design priority from the start. Each tenant gets a tenant-scoped operating experience for its own workloads, with self-service visibility into its own protection and recovery activity. You retain management of the shared-cluster infrastructure, while Rubrik enforces separation across tenant data and credentials, and encrypts data at rest.

That combination is what lets a shared cluster stand up to a customer's security review. Rubrik continues to invest here: isolation today is enforced at the access layer, with cluster-level encryption, and per-tenant cryptographic isolation and customer-managed encryption keys are on our roadmap for future releases.

 

Disaster and Isolated Recovery Services at Scale

Disaster recovery and isolated recovery are premium services and Rubrik is extending them further onto shared infrastructure. Replication now works across shared and dedicated clusters, so you can replicate a tenant's workloads from a dedicated cluster to a shared one, or between shared clusters, without standing up new dedicated infrastructure for every customer who wants DR.

Threat scanning and clean-recovery-point identification run on the replica itself, so a recovery point is checked for compromise before you hand it to a customer during an incident. That gives you a concrete, provable answer the next time a customer's insurer or board asks how fast, and how cleanly, they can recover.

 

Network Connectors for Real-World Networks

Real customer networks are rarely clean. Overlapping IP ranges, NAT, and segmented VLANs are the default in mid-market and enterprise environments, and many customers prefer not to open inbound firewall rules for backup infrastructure.

Network Connectors are Rubrik's answer: tenant-scoped connectivity built for segmented networks, NAT, and overlapping IP ranges. Connectivity is outbound-only, so no inbound firewall rules are required

Network Connectors add a faster, cleaner path to onboarding networks that used to require a workaround. Now you get a bigger addressable base on the infrastructure you already run.

 

Continued Investment in Your MSP Business

Shared-cluster multitenancy, Network Connectors, and core replication across shared clusters are entering early access starting today, with general availability later in the year. The architecture behind this launch is the same one we will keep extending: the same shared clusters, carrying more capability, so that you can deliver services to more customers with industry-leading cyber resilience technology.

To join the early access program, contact your Rubrik account representative. To learn more about this and other updates to our MSP program, join our webinar on October 27. 

Any unreleased services or features referenced in this document are not currently available and may not be made generally available on time or at all, as may be determined in our sole discretion. Any such referenced services or features do not represent promises to deliver, commitments, or obligations of Rubrik, Inc. and may not be incorporated into any contract. Customers should make their purchase decisions based upon services and features that are currently generally available.  

 

Related Articles

Blogs by This Author