August 3rd, 2026 - Application Update
SOC Analyst Agent
We're excited to announce that Sumo Logic's SOC Analyst Agent, a powerful agentic AI tool designed to improve the speed and accuracy of your Security Operations Center (SOC) team's threat investigations, is now generally available. The agent investigates Cloud SIEM insights with evidence-backed verdicts, helping your team cut through false-positive noise and speed up threat resolution. Learn more.
The agent requires a Cloud SIEM subscription and is opt-in.
The SOC Analyst Agent provides the following new functionality:
- AI Investigation tab in Cloud SIEM
- Insight investigation in Mobot
- SOC Analyst Settings tab for auto-investigation controls
AI Investigation tab
A new AI Investigation tab in Cloud SIEM provides an AI-generated analysis of insights that accelerates investigation and troubleshooting by your SOC team.
Insight investigation in Mobot
When you select the Ask Mobot button on the new AI Investigation tab in Cloud SIEM, the insight's AI-generated information is launched in Sumo Logic Mobot. There you can use Mobot's focused query capabilities to drill down into the insight for greater detail.
SOC Analyst Settings
The new SOC Analyst Settings tab on the Cloud SIEM Workflow Configuration page lets administrators control how the agent consumes your committed monthly investigation volume. Define an Auto-Investigation Filter to exclude low-priority insights from automatic investigation, and use Volume & Overage Settings to choose whether investigation continues past your committed volume. Learn more.
