Commvault expands Cloud Rewind Azure coverage for cyber recovery
Commvault has announced an expansion of its Cloud Rewind product, broadening Microsoft Azure resource coverage to address what the company describes as accelerating cyber-recovery requirements for enterprise customers, with an initial focus on the UAE market. The NASDAQ-listed data-protection vendor says the update increases Azure protection by threefold, bringing coverage to 62% of enterprise-relevant Azure resource types available in the market.
Cloud Rewind continuously discovers cloud resources, maps application dependencies, and orchestrates the rebuild of cloud environments, including underlying infrastructure, configurations, and service interdependencies, through a single platform. The expansion also adds application recovery simulations within isolated, air-gapped environments, allowing organisations to validate recovery readiness before an incident occurs. General availability of the expanded Azure protection is targeted for the coming months; the broader Cloud Rewind product is available today as an add-on workload within Commvault Cloud, priced on a metered basis per protected cloud resource.
The case for speed
The release cites a deteriorating threat environment to frame the urgency. According to figures cited from the UAE Cyber Security Council, the country is absorbing close to 800,000 cyberattacks per day. Separately, PwC data quoted in the release indicates the median window between a vulnerability becoming public and active exploitation has collapsed from around 23 days in 2025 to approximately one day in 2026. Ransomware is increasingly AI-assisted: Proofpoint's 2026 AI-Era Ransomware Report found 83% of UAE organisations hit by ransomware said AI made the attack more effective.
Recovery timelines remain a weak point. Absolute Security's 2026 State of Enterprise Cyber Resilience report, also cited in the release, found 57% of enterprises said recovery from a cyberattack took more than four and a half days on average. Commvault positions Cloud Rewind's dependency mapping and orchestrated rebuild as a direct response to that gap.
Fady Richmany, Corporate Vice President and General Manager for Emerging Markets at Commvault, said the product expansion supports a national resilience agenda the company is advancing alongside the UAE Cyber Security Council through an Innovation Centre of Excellence in Abu Dhabi. Pranay Ahlawat, Chief Technology and AI Officer, described the rationale more plainly: "Modern applications depend on interconnected cloud services, infrastructure, and configurations that must be recovered together."
Market context
Cloud-native backup and recovery has become one of the more competitive areas within the broader cybersecurity and data-protection market. Commvault competes with a range of vendors offering cloud-application resilience capabilities, including Zerto (a Hewlett Packard Enterprise subsidiary), Druva, Cohesity, and Rubrik, the latter of which went public in 2024 and has positioned itself aggressively in the cyber-recovery space. Hyperscalers also offer native backup tooling for their own resources, though dependency-aware, cross-service recovery remains a meaningful differentiator for third-party vendors.
The 62% Azure resource-type coverage figure is notable, but leaves room for competitors to contest the remaining 38%, and the release does not specify a timeline for closing that gap fully. The metered pricing model aligns with how cloud-native buyers prefer to consume infrastructure products, though enterprise procurement teams will want to model costs carefully as protected resource counts scale.
On the regulatory side, organisations operating in the UAE are subject to the National Cybersecurity Strategy and sector-specific mandates, including those from the UAE Central Bank for financial services firms. The Abu Dhabi Global Market and Dubai International Financial Centre each maintain their own data and operational resilience frameworks that place recovery-time obligations on regulated entities. Commvault's positioning alongside the UAE Cyber Security Council suggests the company is seeking to embed itself in that compliance conversation, which could accelerate procurement in government-adjacent sectors.
The next milestones to watch are the general availability date for expanded Azure coverage, any named enterprise customer wins in the region, and whether the Innovation Centre of Excellence in Abu Dhabi produces co-developed guidance that gets formally adopted into UAE regulatory frameworks.