Skip to main content

August 3rd, 2026 - Application Update

SOC Analyst Agent

We're excited to announce that Sumo Logic's SOC Analyst Agent, a powerful agentic AI tool designed to improve the speed and accuracy of your Security Operations Center (SOC) team's threat investigations, is now generally available. The agent investigates Cloud SIEM insights with evidence-backed verdicts, helping your team cut through false-positive noise and speed up threat resolution. Learn more.

The agent requires a Cloud SIEM subscription and is opt-in.

The SOC Analyst Agent provides the following new functionality:

  • AI Investigation tab in Cloud SIEM
  • Insight investigation in Mobot
  • SOC Analyst Settings tab for auto-investigation controls

AI Investigation tab

A new AI Investigation tab in Cloud SIEM provides an AI-generated analysis of insights that accelerates investigation and troubleshooting by your SOC team.

Insight AI Investigation tab

Insight investigation in Mobot

When you select the Ask Mobot button on the new AI Investigation tab in Cloud SIEM, the insight's AI-generated information is launched in Sumo Logic Mobot. There you can use Mobot's focused query capabilities to drill down into the insight for greater detail.

Mobot Investigation Agent

SOC Analyst Settings

The new SOC Analyst Settings tab on the Cloud SIEM Workflow Configuration page lets administrators control how the agent consumes your committed monthly investigation volume. Define an Auto-Investigation Filter to exclude low-priority insights from automatic investigation, and use Volume & Overage Settings to choose whether investigation continues past your committed volume. Learn more.

Auto-Investigation Filter on the SOC Analyst Settings tab
Status
Legal
Privacy Statement
Terms of Use
CA Privacy Notice

Copyright © 2026 by Sumo Logic, Inc.