Pricing Login Free trial Support
All an engineer has to do is click a link, and they have everything they need in one place. That level of integration and simplicity helps us respond faster and more effectively.
Sajeeb Lohani
Global Technical Information Security Officer (TISO), Bugcrowd
Read case study

The agentic generation of security and cloud operations starts in the Dojo

main banner bg blur

Mobot AI interface

SOC Analyst Agent

Log Analysis Agent

Platform Optimization Agent

MCP Server

Why Dojo AI?

FAQ

Impact of Dojo AI

What Dojo AI is already doing for SOC teams

End-to-end

100%

of tier-1 alerts triaged by Dojo AI

Time to verdict

89%

reduction in median time-to-triage

Faster MTTR

64%

reduction in MTTR on incidents

Time savings

25 hrs/week

returned to each analyst

Mobot lets you talk to your data in plain language, turning complex workflows into quick, natural conversations. Whether you’re investigating an alert, building a dashboard, tuning a monitor, or troubleshooting the platform, Mobot connects you to the right agent and the full context of Sumo Logic, so teams get from question to insight faster than ever.

sl mobot opt

Summary Agent: Providing clear alert context

The Summary Agent automatically explains what triggered an Insight, highlighting key signals and context so analysts can quickly assess scope and prioritize response.

Spend less time sifting through raw logs with clear, actionable summaries ready to share across teams.

summary agent cropped web
sl soc agent opt

Investigates alerts automatically and delivers evidence-backed verdicts. It cuts manual triage and reduces MTTR so analysts can focus on real threats instead of repetitive work.

Guides analysts of every skill level from question to a defensible answer — interpreting intent, translating natural language into accurate queries, and surfacing clear, citable context along the way. Analysis becomes faster, more intuitive, and far less manual.

dashboard Log analysis agent
dashboard Platform Optimization agent 1

Helps troubleshoot, optimize, and configure Sumo Logic, surfacing what matters, flagging what’s broken, and closing gaps you didn’t know existed.

Brings context into the AI clients and agentic workflows your team already works in. Sumo Logic MCP Server connects external AI clients to Log Analytics and SIEM so you get grounded answers wherever you work, without custom integrations and with the same Sumo Logic governance you rely on.

sumo logic mcp server cropped web

Why Dojo AI?

Built on years of expertise in log analytics and SIEM, and trusted by thousands of enterprises, Sumo Logic helps teams detect, investigate, and respond faster. Dojo AI takes that further, combining specialized agents with the scale, security, and intelligence of our platform, and a human in the loop at every step, to drive intelligent DevSecOps.

icon parsing data 2 color

See exactly what’s coming in, and why across your environment so you control what’s collected, how it’s structured, and what it costs.

icon collect and centralize 2 color 4

Spend less time sifting, more time deciding. Agents handle the time-intensive log analysis and platform management, surfacing what matters, flagging what’s broken, and closing gaps you didn’t know existed.

icon performance 1

Act with confidence, not guesswork. Agents take on repetitive investigation work within the guardrails you set, improving your posture and accelerating MTTR, automatically or on demand.

icon detect insider threats 1

Keep context with you when you switch tools. Bring the same governed access you rely on directly into the AI clients your team already uses.

icon value proposition 2 color icon

Know exactly what you’re getting back. See the business impact of your Sumo Logic investment across every team and tenant.

Yes. Dojo AI leverages foundation models securely hosted through Amazon Bedrock.

Yes. Capabilities like Mobot and the SOC Analyst Agent process customer telemetry to perform investigations, run queries, and generate findings. All processing occurs securely within your platform context, and customer data is never used to train generalized AI models. Administrators can turn off Dojo AI capabilities at any time through Feature Management or by submitting a support ticket.

Customers that previously opted out of Sumo Logic AI capabilities will not get access to these or future AI capabilities until they explicitly opt back in.

Sumo Logic AI capabilities follow strict legal, compliance, and security standards to ensure data minimization and fit-for-purpose processing.

  • Customer data is never used to train AI models, shared externally, or used to improve global models.
  • Data remains within the customer’s environment and is processed only to deliver results back to that customer.
  • Sumo Logic applies strong safeguards and filtering to ensure sensitive data is handled securely and appropriately at all times.

Customers can opt out of capabilities that process customer data, including the SOC Analyst Agent and Mobot, at any time from Feature Management or by submitting a support ticket.

No. Customer data is never used to train AI models.

All Sumo Logic AI capabilities are designed to serve customer-specific outcomes within their own environment. Mobot uses a large language model (LLM) via Amazon Bedrock, which processes data securely and does not retain or use customer information for training or other external purposes.

Traditional ML features, such as AI-driven alerts, generate models specific to each customer’s environment and are never shared or made public.

For more information, see trust.sumologic.com.

No additional third parties have any access. Dojo AI leverages foundation models securely hosted through Amazon Bedrock. When customer data is processed using Amazon Bedrock:

  • Customer inputs and outputs are treated as Customer Content under AWS terms.
  • AWS does not use Customer Content to train models or improve Amazon Bedrock.
  • AWS may access Customer Content only as necessary to provide the service or comply with law.
  • Third-party model providers do not have access to customer inputs or outputs.
  • Customer inputs and outputs are not shared with model providers and are not used to train external models.

Customer data processed through Dojo AI remains within Sumo Logic’s secure environment and is used only to deliver results for that customer. It is not used shared with model providers.

Dojo AI and classical ML features store data only temporarily to optimize performance:

  • AI-driven alerts use a rolling 60-day data window, retraining weekly and expiring the oldest data automatically.
  • Mobot may temporarily retain conversation history in a rolling window to improve conversational context and response accuracy.

All stored data follows Sumo Logic’s data retention and deletion policies, ensuring customer information is never retained longer than necessary.

Sumo Logic is currently reviewing AI compliance within a rapidly evolving framework, in particular ISO 42001, designed to help organizations implement AI responsibly.

Sumo Logic AI capabilities operate within our existing industry-recognized security and compliance framework, including FedRAMP Moderate, SOC 2 Type 2, HIPAA, PCI DSS 4.0.1, and ISO 27001:2022. These attestations govern the confidentiality, integrity, and protection of customer data.

Availability of specific AI capabilities may vary by deployment region (including FED) based on compliance boundary requirements.

The current GA versions of Mobot (including Query Agent and Knowledge Agent) and Summary Agent are available in the FED deployment.

The SOC Analyst Agent and certain newer Dojo AI capabilities are not currently available in FED. These capabilities depend on underlying model configurations that do not yet meet the requirements of our FED compliance boundary.

We are actively evaluating future availability of these capabilities in FED as underlying model support and compliance requirements evolve.

The generative AI model is licensed and securely hosted via Amazon Bedrock, meaning it is not directly accessible by Sumo Logic, customers, or third parties.

All new AI capabilities and features undergo comprehensive legal, compliance, and application security reviews before release to ensure data protection, privacy, and regulatory alignment.

Recurring reviews are also conducted with every major update, particularly when a capability introduces new analytics or processes previously unused data types, to maintain ongoing trust and compliance.

AI features are on by default. We offer two methods for opting out.

In-product self opt-out: Beginning August 2026, platform administrators can opt out of all AI features directly within the product settings under Feature Management. Disabling AI at the admin level automatically exempts your tenant from any future AI feature rollouts.

Via your account team or support: You can opt out of specific AI features or all AI features by contacting your Sumo Logic account team or opening a support ticket. If you choose to opt out of all AI features, your tenant will automatically be exempted from future AI feature releases.

For a complete overview of everything included in Sumo Logic’s AI portfolio, click here.

Frame 1073715737