Sumo Logic’s SOC Analyst Agent automatically triages every insight within the SIEM, replacing the manual work that used to fall to a tier-one analyst.
Using Sumo Logic’s own SOC as customer zero, we found that 100% of tier-one alerts are triaged end-to-end by the agent, resulting in a 89% reduction in median time to triage, from 28 minutes to 3 minutes.
In this demo, you’ll see:
- How the agent triages a high-severity insight and assigns an AI verdict, entities, and a global confidence score
- How to drop into the raw signals behind an insight, including an auto-built graph of the malicious IP and enrichments
- How the AI investigations tab summarizes a ransomware case in plain language, from the initial phishing email to confirmed data exfiltration