Ai solutions for real-world challenges
Pricing Login Free trial Support
All an engineer has to do is click a link, and they have everything they need in one place. That level of integration and simplicity helps us respond faster and more effectively.
Sajeeb Lohani
Global Technical Information Security Officer (TISO), Bugcrowd
Read case study

Endless alerts, Focused answers.

Security narratives

Simple investigations

Autonomy

Why Sumo Logic?

FAQ

With the Dojo AI Summary Agent, fragmented alerts are condensed into coherent storylines. Instead of wading through endless signals, SOC analysts receive clear, prioritized narratives they can act on immediately. This accelerates investigations, reduces fatigue, and ensures attention is focused where risk is highest.

cloud siem demo animate slower
sumo logic query agent anim lg

The Query Agent translates natural language into precise, executable queries. SOC analysts and SREs can move from a question to investigation in seconds, without wrestling with unfamiliar syntax. From tracing suspicious access to diagnosing reliability issues, queries become conversations, not roadblocks.

Logs remain the foundation of visibility, but with Dojo AI, they become more than raw data. Agents reason over patterns, propose next steps, and guide teams through investigations and responses. For SOC analysts, this means faster detection and sharper defenses, for SREs, stronger system resilience with less manual effort.

dashboard SOC and SRE machine learning powered analytics 1
logo samsung royal

“In particular, Sumo Logic’s powerful query functions serve as a competitive advantage, providing insightful results, like identifying similar errors or software versions with frequent issues.”

Youngjip Kim
EVP, Head of AI Team, Samsung

Verified reviews.

Proven results.

gartner 1
trust radius 1
g2 1
icon
icon
icon
icon
icon
icon

Transform your enterprise with AI

Sumo Logic Dojo AI is a multi-agent AI platform built to power intelligent security operations and incident response. It is designed to act autonomously while continuously adapting to evolving threats.

The Query Agent helps users rapidly translate natural language requests submitted via Mobot into precise Sumo Logic queries, simplifying the exploration, analysis, and extraction of insights from complex datasets. By understanding context and user intent, it lowers the learning curve for new users while boosting efficiency for experienced analysts.

The Summary Agent creates AI-generated summaries of signals within an Insight, reducing noise and highlighting key context. Analysts get a clear explanation of how an Insight was triggered, making it easier to assess scope, prioritize response, and share a consistent narrative without reviewing raw logs or events.

Mobot is the unified conversational interface of Sumo Logic Dojo AI that connects users to specialized agents, turning natural language requests into actionable insights quickly and intuitively.

Yes. Mobot can leverage the Query Agent to search across and extract key information from unstructured logs, helping ensure critical insights aren’t missed during investigations.

Yes. Mobot retains conversation and search history so users can resume investigations with full context and continuity.

Copilot uses AI to interpret natural language queries and recommend relevant search results and query refinements, making it easier for users to find key insights quickly.

All of Sumo Logic’s machine learning (ML) features undergo legal, compliance and security reviews to ensure they serve customer outcomes, data minimization, fit-for-purpose data and anonymization.

In Sumo Logic Mo Copilot, the schema of logs and sampling of field values are provided as context to an AI. Field values can contain PII or confidential data. For example, email or IP addresses are PII and often, confidential data as well. However, to be useful, Copilot has to enable insights about such data.

No. No customer data or PII is used for training or other purposes. All our capabilities serve customer outcomes. Our classic ML capabilities (e.g. AI-driven alerts and its anomaly detection features) create customer-specific models. Sumo Logic Mo Copilot uses a Large Language Model (LLM) served via Amazon Bedrock. As explained in our documentation and included links, no customer data is used for training or other purposes in the case of Sumo Logic Copilot.

Some of our classical ML models store customer data in our ML pipelines to optimize performance. For example, our AI-driven alerts feature log anomaly detection and build ML models from 60 days of logs. To accomplish this, we retrain the model once a week. In this example, each week, we add one week of new data while expiring the oldest week of data. Rolling data windows are done to avoid fetching 60 days of data for every training run.

Sumo Logic Copilot also stores customer data in the ML backend to optimize performance. For example, certain Copilot features rely on the history of a customer’s queries. We will expire such data on a rolling window basis.

Yes. To opt out of Sumo Logic Copilot, a support ticket is required.

Yes. For Generative AI, Mobot leverages a foundation model provided via Amazon Bedrock, as detailed in our documentation. Additionally, our classical machine learning capabilities utilize select open-source Python libraries that have been reviewed and approved by Sumo Logic for security and compliance.

Sumo Logic Copilot is an ensemble of Generative AI (GenAI) and classical ML techniques. Other ML capabilities, such as AI-driven alerts, typically use an ensemble of classical ML approaches.

Yes. Dojo AI assists analysts with routine tasks and recommendations, but humans review, validate, and guide actions to ensure accuracy, compliance, and trust.

The on-call developer or security engineer troubleshooting an incident is the expected user. They interact with Copilot using Natural Language questions or through contextual suggestions.

No. The foundation model provider used by Amazon Bedrock has no access to customer data.

No.

All new AI capabilities undergo legal, compliance, and application security reviews prior to release. Reviews occur with every major update that introduces new analytics or processes previously unused data.

No. The GenAI foundation model (Amazon Bedrock) used in Mobot is not accessible to Sumo Logic, so a traditional UAR isn’t applicable. For all components under our control, we follow industry best practices, including code reviews and change management. Ongoing monitoring and troubleshooting of AI/ML features rely on logs and telemetry analyzed through Sumo Logic’s Log Analytics Platform.

Frame 1073715737