Cisco Elevates SOC with Agentic AICisco Elevates the SOC with Agentic AI for Faster Threat Response and Reduced ComplexitySplunk Enterprise Security Premier Edition and Essentials Edition advance unified threat detection and responseCisco announced Splunk Enterprise Security Essentials Edition and Splunk Enterprise Security Premier Edition, providing customers two agentic AI-powered SecOps options that unify security workflows across threat detection, investigation, and response. Delivered within Splunk Enterprise Security 8.2 – a market-leading SIEM solution – these advancements streamline offerings and empower customers with faster threat response and simplified security solutions. Cisco also unveiled a series of AI features that it intends to release to power the agentic Security Operations Center (SOC) of the future, enabling analysts to focus on strategic decision-making while AI handles routine tasks. With many Cisco security products already integrated with Splunk Enterprise Security, the latest features will place agentic AI at the core of the SOC and extend security intelligence seamlessly across the network. With Splunk, AI agents do more than actively orchestrate and automate complex workflows; they transform manual tasks into proactive, autonomous security operations. This transformation streamlines comprehensive threat management, empowering security teams to act faster and more efficiently. “Adversaries are already using AI, so defenders need to seize every possible advantage,” said Mike Horn, SVP and GM for Splunk Security. “Our security offerings unify detection, investigation, and response into a single, intuitive workspace, eliminating tool fragmentation and significantly boosting efficiency. Built-in AI can help cut alert noise and reduce investigation time from hours to minutes. Now every SOC can better position to stay ahead of advanced threats and empower analysts at every level.” Powering the Agentic SOC Many organizations drown in data but struggle to know what matters and when to act. This leads to operational blind spots and inefficiencies across SecOps, ITOps, and engineering teams. It delays timely detection and response exposing the business to avoidable threats. To help prevent these issues and build an agentic SOC with greater visibility and context, customers can select between two flexible solutions:
“With today’s increasingly sophisticated threats and sprawling attack surfaces, security teams can’t afford to waste time switching between fragmented tools and operating with siloed visibility,” said Michelle Abraham, Research Director, Security and Trust at IDC. “By integrating multiple security capabilities into a single, cohesive environment, security platforms empower organizations to move from reactive to proactive security, streamlining workflows, improving detection and response, and ultimately reducing risk.” Agentic AI for Security As security challenges become more complex, organizations need integrated solutions that enhance visibility, accelerate detection, and streamline response. Additional AI-powered advancements are being released to strengthen security operations through the following:
Cisco Integrations Accelerate the SOC with Agentic AI
Availability By integrating with Cisco’s security solutions, Splunk helps security teams detect, investigate, and respond to threats with greater speed and precision. Expanded offerings will include:
Source: Cisco media announcement |