---
description: Discover the best AI SOC Agents in New Zealand. Compare top AI SOC Agents tools with customer reviews, pricing and free demos.
image: https://gdm-localsites-assets-gfprod.imgix.net/images/software_advice/og_logo-55146305bbe7b450bea05c18e9be9c9a.png
title: Best AI SOC Agents in New Zealand - 2026 Reviews, Pricing & Demos
---

Breadcrumb: [Home](/) > [AI SOC Agents](https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software)

# AI SOC Agents

Canonical: https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software

-----

## Products

1. [Splunk Enterprise](https://www.softwareadvice.co.nz/software/234262/splunk-enterprise) — 4.6/5 (267 reviews) — The Splunk Enterprise platform allows users to process and index most forms of data in their native format. It includ...
2. [SentinelOne](https://www.softwareadvice.co.nz/software/363019/sentinelone) — 4.8/5 (117 reviews) — Designed with Fortune 500 and Global 2000 companies in mind, SentinelOne is a leading autonomous cybersecurity platfo...
3. [CrowdStrike](https://www.softwareadvice.co.nz/software/135499/crowdstrike) — 4.7/5 (56 reviews) — CrowdStrike is a cloud-based endpoint protection solution, which assists small to large businesses with anti-virus pr...
4. [COGNNA](https://www.softwareadvice.co.nz/software/531234/COGNNA) — 5.0/5 (4 reviews) — COGNNA is an AI-powered security operations platform designed to detect, investigate, and respond to cybersecurity th...
5. [Panther](https://www.softwareadvice.co.nz/software/192055/panther) — 4.5/5 (2 reviews) — The software has automation tools that support teams in identifying and categorizing incidents to enable experts to a...
6. [Swimlane](https://www.softwareadvice.co.nz/software/221572/swimlane) — 4.0/5 (1 reviews) — What is Swimlane? Swimlane is an AI-driven security automation company that helps enterprise security teams coordinat...
7. [Radiant Security](https://www.softwareadvice.co.nz/software/397854/radiant-security) — 5.0/5 (1 reviews) — Radiant Security is a computer security solution that leverages artificial intelligence (AI) technology to streamline...
8. [Google SecOps](https://www.softwareadvice.co.nz/software/221446/siemplify) (0 reviews) — Siemplify is a cloud-native SOAR platform designed to help security professionals automate various security processes...
9. [Intezer Protect](https://www.softwareadvice.co.nz/software/221587/intezer-protect) (0 reviews) — Intezer Protect is a security orchestration, automation and response (SOAR) platform designed to help businesses dete...
10. [UnderDefense MAXI](https://www.softwareadvice.co.nz/software/419277/underdefense-mdr) (0 reviews) — UnderDefense MAXI is a Security-as-a-Service platform that helps small, mid-size, and enterprise businesses across in...
11. [Simbian](https://www.softwareadvice.co.nz/software/555903/Simbian) (0 reviews) — Simbian is a security operations platform that uses AI-powered agents to automate various cybersecurity tasks. It sup...
12. [Torq](https://www.softwareadvice.co.nz/software/557838/Torq) (0 reviews) — Torq is an AI-powered platform designed to assist security teams in managing cybersecurity threats through automation...
13. [SIRP](https://www.softwareadvice.co.nz/software/224677/sirp) (0 reviews) — SIRP is a no-code Security Orchestration, Automation and Response (SOAR) platform built for enterprise security opera...
14. [Splunk SOAR](https://www.softwareadvice.co.nz/software/559048/Splunk-SOAR) (0 reviews) — Splunk SOAR is a security orchestration, automation, and response platform designed to streamline security workflows ...
15. [Arcanna.AI](https://www.softwareadvice.co.nz/software/559058/Arcanna-AI) (0 reviews) — Arcanna.AI is an artificial intelligence platform designed to support decision-making and investigation processes wit...
16. [Blink](https://www.softwareadvice.co.nz/software/514714/Blink) (0 reviews) — Blink is an agentic security operations platform that helps enterprise security teams in financial services, healthca...
17. [Bricklayer AI](https://www.softwareadvice.co.nz/software/559060/Bricklayer-AI) (0 reviews) — Bricklayer AI is a cybersecurity platform designed to enhance the capabilities of Security Operations Centers. It dep...
18. [Hunto AI](https://www.softwareadvice.co.nz/software/559061/Hunto-AI) (0 reviews) — Hunto AI is a cybersecurity platform that uses artificial intelligence to detect, monitor, and address external threa...
19. [Torq AI SOC Platform](https://www.softwareadvice.co.nz/software/606646/Torq-AI-SOC-Platform) (0 reviews) — Torq AI SOC Platform is a cloud-based agentic security operations solution built for enterprise security teams, manag...
20. [Splunk SOAR (Security Orchestration, Automation and Response)](https://www.softwareadvice.co.nz/software/590172/Splunk-SOAR-Security-Orchestration-Automation-and-Response) (0 reviews) — Splunk SOAR is a security orchestration, automation, and response platform that helps security operations teams acros...
21. [Splunk Enterprise Security](https://www.softwareadvice.co.nz/software/572342/Splunk-Enterprise-Security) (0 reviews) — Splunk Enterprise Security is a unified threat detection, investigation, and response platform that serves enterprise...
22. [Google Security Operations](https://www.softwareadvice.co.nz/software/573027/Google-Security-Operations) (0 reviews) — Google Security Operations is a cloud-based security platform designed for enterprises and large organizations across...

## Related Categories

- [Threat Intelligence Platforms](https://www.softwareadvice.co.nz/directory/3995/threat-intelligence/software)
- [Endpoint Detection and Response Software](https://www.softwareadvice.co.nz/directory/3977/edr/software)
- [Cloud Security Software](https://www.softwareadvice.co.nz/directory/4329/cloud-security/software)
- [Security Orchestration Automation Response Tools (SOAR)](https://www.softwareadvice.co.nz/directory/4421/soar/software)
- [Computer Security Software](https://www.softwareadvice.co.nz/directory/4528/security/software)

## Links

- [View on SoftwareAdvice](https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software)
- [All Categories](https://www.softwareadvice.co.nz/directory)

## This page is available in the following languages

| Locale | URL |
| de | <https://www.softwareadvice.de/directory/5538/ai-soc-agents/software> |
| en | <https://www.softwareadvice.com/category/5538-ai-soc-agents/> |
| en-AU | <https://www.softwareadvice.com.au/directory/5538/ai-soc-agents/software> |
| en-GB | <https://www.softwareadvice.co.uk/directory/5538/ai-soc-agents/software> |
| en-IE | <https://www.softwareadvice.ie/directory/5538/ai-soc-agents/software> |
| en-NZ | <https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software> |
| fr | <https://www.softwareadvice.fr/directory/5538/ai-soc-agents/software> |

-----

## Structured Data

<script type="application/ld+json">
  {"@context":"https://schema.org","@graph":[{"name":null,"address":{"@type":"PostalAddress","addressLocality":null,"addressRegion":null,"postalCode":null,"streetAddress":null},"description":"Software Advice helps businesses in New Zealand find the best software. Compare software options and learn more from our research and user reviews.","email":"info@softwareadvice.co.nz","url":"https://www.softwareadvice.co.nz/","logo":"https://dm-localsites-assets-prod.imgix.net/images/software_advice/logo-white-d2cfd05bdd863947d19a4d1b9567dde8.svg","@type":"Organization","@id":"https://www.softwareadvice.co.nz/#organization","parentOrganization":"G2.com, Inc.","sameAs":[]},{"name":null,"url":"https://www.softwareadvice.co.nz/","@type":"WebSite","@id":"https://www.softwareadvice.co.nz/#website","publisher":{"@id":"https://www.softwareadvice.co.nz/#organization"},"potentialAction":{"query":"required","target":"https://www.softwareadvice.co.nz/search/?q={search_term_string}","@type":"SearchAction","query-input":"required name=search_term_string"}},{"name":"AI SOC Agents","description":"Discover the best AI SOC Agents in New Zealand. Compare top AI SOC Agents tools with customer reviews, pricing and free demos.","url":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software","about":{"@id":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software#itemlist"},"breadcrumb":{"@id":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software#breadcrumblist"},"@type":["WebPage","CollectionPage"],"@id":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software#webpage","isPartOf":{"@id":"https://www.softwareadvice.co.nz/#website"},"mainEntity":{"@id":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software#itemlist"},"inLanguage":"en-NZ","publisher":{"@id":"https://www.softwareadvice.co.nz/#organization"}},{"@type":"BreadcrumbList","@id":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software#breadcrumblist","itemListElement":[{"name":"Home","position":1,"item":"/","@type":"ListItem"},{"name":"AI SOC Agents","position":2,"item":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software","@type":"ListItem"}]}]}
</script><script type="application/ld+json">
  {"name":"Best AI SOC Agents in New Zealand - 2026 Reviews, Pricing &amp; Demos","@context":"https://schema.org","@type":"ItemList","@id":"https://www.softwareadvice.co.nz/directory/5538/ai-soc-agents/software#itemlist","itemListElement":[{"name":"Splunk Enterprise","position":1,"description":"The Splunk Enterprise platform allows users to process and index most forms of data in their native format. It includes data indexing tools, which enable users to locate specific data across large data sets.\n\n\nThe software is designed to serve users with limited technical expertise. A key selling point is the platform's scalability, which allows it to grow with the amount of data it is needed to process; up to at least 100 terabytes per day. To ensure users always have access to their data, even in the event of a system disruption, this platform features built-in failover and disaster recovery capabilities.\n\n\nDeployment options include both on-premise and SaaS (Software as a Service). Subscription pricing is based on the amount of data indexed per day, and pricing decreases as the amount of data indexed increases. There are perpetual and term license pricing options as well.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/c935ef6d-e80a-4f64-8b46-1864f7d1e6e3.png","url":"https://www.softwareadvice.co.nz/software/234262/splunk-enterprise","@type":"ListItem"},{"name":"SentinelOne","position":2,"description":"Designed with Fortune 500 and Global 2000 companies in mind, SentinelOne is a leading autonomous cybersecurity platform specializing in AI-powered endpoint protection. \n\nThe autonomous agent platform allows users to detect threats across multiple vectors and resolve system attacks. SentinelOne's endpoint detection and response (EDR) module automates mitigation of bugs/issues and ensure immunity against newly discovered threats. Additionally, the artificial intelligence (AI)-based solution performs recurring scans to detect various threats including malware, trojans, worms and more, preserving end-user productivity within the organization.\n\n\nSentinelOne allows integration with various third-party applications such as Tanium, Splunk, Okta, Fortinet and BigFix. The application can also be deployed in an on-premise environment. Pricing is available on annual subscription and support is extended via documentation, phone and other online measures.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/dbe48f25-9e50-4c70-bc05-1f84a811f2df.png","url":"https://www.softwareadvice.co.nz/software/363019/sentinelone","@type":"ListItem"},{"name":"CrowdStrike","position":3,"description":"CrowdStrike is a cloud-based endpoint protection solution, which assists small to large businesses with anti-virus protection and device control. Key features include AI-based testing, data security and threat event detection. \n\n\nThe application helps network administrators monitor malicious activities, apply mitigation techniques and block data tampering across multiple devices. System engineers can use the solution to detect unauthorized access in real-time, review and categorize hackers under blacklist or whitelist. Additionally, it helps users identify and block various malware activities such as polymorphic, obfuscated and more. \n\n\nCrowdStrike comes with a feature which enables managers to provide user-based access to USBs, monitor usage and track security risks. It comes with a mobile application for Android and is available on an annual subscription. The solution offers different support options to customers, including email and phone.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/e223712f-b823-4608-92e0-14d1f76a5f6e.png","url":"https://www.softwareadvice.co.nz/software/135499/crowdstrike","@type":"ListItem"},{"name":"COGNNA","position":4,"description":"COGNNA is an AI-powered security operations platform designed to detect, investigate, and respond to cybersecurity threats. It is used by organizations in various sectors, including financial technology, managed security providers, startups, mid-sized businesses, and large enterprises. The platform helps security teams manage alert fatigue, address resource limitations, and comply with regulatory requirements such as SOC 2, PCI, HIPAA, NCA, CMA, and SAMA.\n\nThe platform includes a unified data lake that provides visibility across digital environments. It supports asset discovery, vulnerability intelligence, and real-time monitoring. Threat detection is supported by AI-powered triage and automated processes. Additional features include automated threat hunting, remote endpoint containment, response playbooks, and artifact analysis for forensic investigations.\n\nThe platform is available as software and can be deployed in cloud-native environments without requiring changes to existing security infrastructure. It supports local data residency requirements and generates audit-ready reports to assist with compliance and regulatory audits.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/bfe55a1c-023e-453c-bb52-1ccc5486150b.png","url":"https://www.softwareadvice.co.nz/software/531234/COGNNA","@type":"ListItem"},{"name":"Panther","position":5,"description":"The software has automation tools that support teams in identifying and categorizing incidents to enable experts to analyze events effectively, driving informed decision-making. It supports IT experts in processing and retaining comprehensive security data with zero-ops and cloud-first workflow tools. \n\nPanther also provides system analysis tools to help teams identify suspicious activity as soon as it happens across an on-premises environment. Experts can use the platform to build a high-fidelity alerting pipeline with Python, version control, unit tests, and CI/CD.\n\nPanther offers entity managers a secure and centralized database to transform raw logs into a structured data warehouse, enabling users to process CSV files. It allows teams to correlate activity across operation logs data using auditing tools that encourage users to answer critical questions quickly during an investigation. It also has incident reporting tools that send high-signal alerts to operators when attacks occur.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/f5647e78-d0f7-4ebf-b19b-ad4b21e06cb3.png","url":"https://www.softwareadvice.co.nz/software/192055/panther","@type":"ListItem"},{"name":"Swimlane","position":6,"description":"What is Swimlane? \nSwimlane is an AI-driven security automation company that helps enterprise security teams coordinate work across alerts, tools, cases, and response actions. Its Turbine platform combines agentic AI, low-code playbooks, integrations, and case management to reduce manual effort, speed up investigations, and maintain control across complex security operations for SOC teams. \n\nWho uses Swimlane? \nSwimlane is used by enterprise SOCs, MSSPs, security operations leaders, and teams managing high alert volumes, complex tool stacks, audit-ready processes, and distributed response processes. It supports organizations that need faster, more consistent security operations without losing visibility or control. \n\n\nLearn more: swimlane.com","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/105c86f4-336a-4e60-be3d-8407afb02ebb.png","url":"https://www.softwareadvice.co.nz/software/221572/swimlane","@type":"ListItem"},{"name":"Radiant Security","position":7,"description":"Radiant Security is a computer security solution that leverages artificial intelligence (AI) technology to streamline and automate the workflows of security analysts. It provides a gen AI assistant that helps administrators detect security incidents and initiate remediation. Radiant Security also helps automate alert triage and investigation, providing incident summaries, root cause analysis and response plans for each incident. Additionally, the response plans can also be executed manually by analysts or through response actions.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/5669b782-4aa6-4a91-9b5e-e0117e6668d9.png","url":"https://www.softwareadvice.co.nz/software/397854/radiant-security","@type":"ListItem"},{"name":"Google SecOps","position":8,"description":"Siemplify is a cloud-native SOAR platform designed to help security professionals automate various security processes by building playbooks using a drag-and-drop interface. Key features include playbook automation, case management, visual mapping, interactive investigation and collaboration.\n\nSecurity operations teams using Siemplify can access incident response data in a unified interface, which helps reduce the amount of time spent on collecting data and facilitate high-quality investigations. It creates a visual storyline of various threats encountered by the system, allowing analysts to display various relationships and components involved in a security event. Additionally, the application can identify false positives across alerts and address known bad activities. \n\nSiemplify automatically gathers and cross-references all details from email attachments and recipients with existing threat data to determine the nature of alerts, allowing analysts to display data grouped into related events gathered from different systems. The platform offers an API, which facilitates integration with various third-party applications, such as Microsoft Active Directory, Alexa Web Information Service (AWIS), Amazon Macie, Any.Run, Asana, Cisco IronPort, DeepSight and more.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/c5c5e696-1941-4250-b4f9-57e55b84d958.jpeg","url":"https://www.softwareadvice.co.nz/software/221446/siemplify","@type":"ListItem"},{"name":"Intezer Protect","position":9,"description":"Intezer Protect is a security orchestration, automation and response (SOAR) platform designed to help businesses determine potential vulnerabilities across public/private cloud environments. Supervisors can perform root cause analysis of incidents, identify unauthorized codes and receive contextual alerts about threats. \n\nIntezer Protect comes with a dashboard, which allows organizations to analyze and gain an overview of asset performance or system status on a centralized platform. Developers can track memory deviations across native cloud stacks, identify high-risk applications, misconfigurations or shell commands and terminate them according to requirements. Additionally, users can secure cloud infrastructures in compliance with the National Institute of Standards and Technology (NIST) and the Center for Internet Security (CIS).\n\nIntezer Protect facilitates integration with several third-party applications, such as Splunk, Puppet, Slack and more. The product is available for free as well as on annual subscriptions and support is extended via live chat and an inquiry form.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/9016d827-a571-4998-8437-bc2c27ee4376.jpeg","url":"https://www.softwareadvice.co.nz/software/221587/intezer-protect","@type":"ListItem"},{"name":"UnderDefense MAXI","position":10,"description":"UnderDefense MAXI is a Security-as-a-Service platform that helps small, mid-size, and enterprise businesses across industries manage cybersecurity threats. The software is deployed via the cloud, making it accessible without on-premises infrastructure. Core features include managed detection and response, a security operations center, incident response, threat intelligence, and compliance monitoring. These features help organizations identify, investigate, and respond to security threats in real time. UnderDefense MAXI is well suited for businesses that need continuous security coverage but lack in-house expertise to manage it. The platform consolidates security data from multiple sources into a single dashboard, giving teams clear visibility into their security posture. Compliance tools assist businesses in meeting industry regulations and standards. Support is available around the clock through live chat, email, and a knowledge base, so users can get help whenever issues arise.","image":"https://images.g2crowd.com/uploads/product/image/f1b242fab5675c47f75515b14f068885/underdefense-maxi.png","url":"https://www.softwareadvice.co.nz/software/419277/underdefense-mdr","@type":"ListItem"},{"name":"Simbian","position":11,"description":"Simbian is a security operations platform that uses AI-powered agents to automate various cybersecurity tasks. It supports functions such as security operations center activities, threat hunting, penetration testing, and network security operations. The platform is designed to address challenges such as alert fatigue, incident response inefficiencies, and the need for continuous security validation.\n\nThe platform includes four AI agents that work together within a unified system. The AI SOC Agent investigates and responds to alerts using reasoning-based analysis. The AI Threat Hunt Agent validates hypotheses and searches historical data for threats. The AI Pentest Agent performs continuous penetration testing to identify exploit paths based on organizational context. The AI NetSecOps Agent handles firewall operations and other network security tasks. These agents operate on the Context Lake, an intelligence layer that captures operational knowledge, procedures, and insights from investigations and analyst feedback. The Reasoning Engine provides threat detection without relying on predefined playbooks, rules, or templates, leveraging extensive training in simulated environments.\n\nSimbian uses TrustedLLM technology to defend against adversarial attacks such as prompt injection and data poisoning. The platform is designed to augment security analysts rather than replace them, maintaining a human-in-control approach. Its multi-agent architecture enables intelligence sharing, where findings from one agent inform the operations of others. The system continuously improves through a closed-loop learning process, using interactions as training signals. The platform is protected by multiple patents and is designed for rapid deployment.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/5971de97-6ace-4f3b-ab59-fc233bb608c4.jpeg","url":"https://www.softwareadvice.co.nz/software/555903/Simbian","@type":"ListItem"},{"name":"Torq","position":12,"description":"Torq is an AI-powered platform designed to assist security teams in managing cybersecurity threats through automation and artificial intelligence. It supports security operations centers, managed security service providers, and detection and response teams in addressing challenges such as alert fatigue, false positives, and staff workload. The platform is used to handle tasks such as incident response, phishing threats, cloud misconfigurations, and multi-cloud alert triage.\n\nThe platform includes AI capabilities that automatically de-duplicate events and filter false positives to focus on genuine threats. It provides transparent audit logs and allows manual overrides when needed. Specialized AI agents, called HyperAgents, manage repetitive investigation tasks while documenting evidence, timelines, and suggested actions. A natural language-driven AI, Socrates, can remediate critical threats either autonomously or with human oversight. Additional features include case management tools for creating and managing security cases and threat hunting tools that use runbooks to analyze historical cases and identify threat patterns.\n\nThe platform uses a Context Graph and Memory system to maintain an updated model of the security environment. This system records decisions, exceptions, and overrides along with their context to reflect the current state of security operations. It supports automation across security workflows, addressing needs in security operations, cloud and application security, and IT operations.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/c09b9cf5-d9df-4e4b-9c4a-986175a04ee9.jpeg","url":"https://www.softwareadvice.co.nz/software/557838/Torq","@type":"ListItem"},{"name":"SIRP","position":13,"description":"SIRP is a no-code Security Orchestration, Automation and Response (SOAR) platform built for enterprise security operations teams across industries such as finance, healthcare, and technology. The software is deployed cloud-based, making it accessible without on-premises infrastructure. SIRP centralizes incident response by connecting security tools, automating repetitive tasks, and providing a unified dashboard for tracking threats and cases. Teams can build automated workflows without writing code, reducing manual effort and response times. The platform includes risk-based prioritization, helping analysts focus on the most critical threats first. It also offers case management, threat intelligence integration, and detailed reporting to support compliance and audits. Small to large enterprises benefit from SIRP's ability to coordinate across multiple security tools from a single interface. Support is available through email, phone, live chat, and an online knowledge base, giving teams multiple ways to get help when needed.","image":"https://images.g2crowd.com/uploads/product/image/59e4a50ebe18e8f066604344326bd8df/sirp.jpg","url":"https://www.softwareadvice.co.nz/software/224677/sirp","@type":"ListItem"},{"name":"Splunk SOAR","position":14,"description":"Splunk SOAR is a security orchestration, automation, and response platform designed to streamline security workflows and automate repetitive tasks. It supports security operations centers and IT security teams in managing complex security operations. The platform coordinates activities across existing security infrastructure to improve incident response efficiency.\n\nIt integrates with hundreds of third-party security and IT tools, enabling thousands of automated actions across the security stack. Pre-built playbooks aligned with frameworks such as MITRE ATT&CK and D3FEND are included, along with a Visual Playbook Editor for creating custom workflows using drag-and-drop code blocks. Case management features allow for task segmentation, assignment, and documentation. Threat intelligence from the Splunk Threat Research Team is accessible through an investigation panel that helps prioritize threats in one location. Deployment options include cloud, on-premises, and hybrid configurations. It also functions as a native capability within Splunk Enterprise Security, enabling unified workflows with SIEM, UEBA, and AI features.\n\nThe platform consolidates alerts and data from multiple tools to enable prioritized responses and execute actions across security tools efficiently. Automation capabilities help reduce detection and resolution times for security incidents. Workflows can be customized to align with specific organizational needs while maintaining compatibility with existing security infrastructure.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/01864cd1-da62-4c31-a34e-715eb858c93e.jpeg","url":"https://www.softwareadvice.co.nz/software/559048/Splunk-SOAR","@type":"ListItem"},{"name":"Arcanna.AI","position":15,"description":"Arcanna.AI is an artificial intelligence platform designed to support decision-making and investigation processes within Security Operations Centers. It is used by SOC managers, security analysts, MSSPs, and enterprise security leaders to scale security operations while maintaining accuracy and control. The platform addresses challenges such as high alert volumes and manual triage workloads that can overwhelm security teams.\n\nThe platform consists of two main components: the Decision Layer and the Investigation Layer. The Decision Layer integrates with existing workflows in systems such as SIEM, SOAR, NDR, EDR, and XDR to provide governed security decisions with rapid response times and high accuracy. The Investigation Layer streamlines security investigations through structured automation, incorporating guardrails and verification steps. It adapts to analyst expertise, improving over time as decisions are made, while helping organizations retain institutional knowledge and reduce alert volumes.\n\nArcanna.AI includes trust and governance features throughout its design. Each decision generated by the platform is accompanied by explainability tools that display inputs, matched patterns, and confidence levels. Comprehensive logging captures decisions, outcomes, timestamps, and reviewer actions to create audit-ready records. Privacy controls ensure that decision models use only the necessary data for each task, with strict access controls in place. Human oversight is maintained for decisions where AI confidence is low, with decision history and review points recorded to support compliance and governance requirements.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/d34ebcf3-3484-458b-b9d7-2df9cd5dbf8d.jpeg","url":"https://www.softwareadvice.co.nz/software/559058/Arcanna-AI","@type":"ListItem"},{"name":"Blink","position":16,"description":"Blink is an agentic security operations platform that helps enterprise security teams in financial services, healthcare, retail, insurance, telecom, and airlines automate alert triage, investigation, and response across nine security domains. It also supports MSSPs and MDR providers through multi-tenant architecture.\n\nThe platform is cloud-based, with on-premises runners available for organizations that require local execution.\n\nCore features include AI-driven alert triage and investigation, no-code workflow automation via natural language prompts, a drag-and-drop editor, and a library of over 10,000 pre-built workflow templates. Teams can build custom AI agents loaded with internal playbooks and SOPs. A self-service portal lets non-security staff resolve requests without submitting tickets. Case management, interactive dashboards, role-based access controls, approval gates, and full audit trails support compliance and oversight. Over 30,000 integrations connect Blink to tools such as AWS, CrowdStrike, Splunk, Okta, and ServiceNow.\n\nBoth technical and non-technical practitioners can build and run automations without coding experience. Support is available through a knowledge base, and customers have access to pre-built agent templates to get started quickly.","image":"https://images.g2crowd.com/uploads/product/image/8debd6cec736db29d1ffe9921488faec/blink-ops-blink.png","url":"https://www.softwareadvice.co.nz/software/514714/Blink","@type":"ListItem"},{"name":"Bricklayer AI","position":17,"description":"Bricklayer AI is a cybersecurity platform designed to enhance the capabilities of Security Operations Centers. It deploys AI agents to help organizations manage increasing alert volumes and expanding threat landscapes. The platform supports security teams, managed security service providers, and enterprise security departments by scaling operations beyond human capacity.\n\nThe platform's AI agents operate with environmental awareness, using data from tools, threat intelligence, historical records, and organizational context to make informed decisions. These agents collaborate within a shared workspace alongside human analysts, performing tasks across various domains such as endpoint, identity, network, and cloud security. The system enforces policies, role-based access control, and audit trails to ensure visibility and compliance with organizational standards. It supports workflows such as alert triage, incident investigation, case management, vulnerability management, threat intelligence operations, and threat hunting.\n\nThe platform automates tasks by enabling AI agents to triage alerts, collect evidence, test hypotheses, and build cases while maintaining human oversight. Agents execute real-time actions such as host isolation, indicator enrichment, and patch planning, with response times typically within minutes. Analysts receive summarized findings and contextual information, reducing the need to manually gather data from multiple tools. This allows security teams to focus on more complex challenges that require human expertise.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/f47f2ff9-7436-49dd-91fd-67975219363e.png","url":"https://www.softwareadvice.co.nz/software/559060/Bricklayer-AI","@type":"ListItem"},{"name":"Hunto AI","position":18,"description":"Hunto AI is a cybersecurity platform that uses artificial intelligence to detect, monitor, and address external threats across digital environments. It is designed for organizations in industries such as banking, fintech, e-commerce, healthcare, legal services, and technology. The platform focuses on protecting digital assets and brand presence while reducing manual security tasks and supporting compliance with regulatory frameworks.\n\nThe platform includes attack surface management to identify domains, subdomains, cloud assets, and exposed services before they can be exploited. AI agents simulate phishing scenarios to assess employee risk behavior, detect brand misuse such as phishing sites and fake social accounts, and manage security operations such as alert triage and incident investigation. It monitors the public web, dark web, and brand channels to identify leaked credentials and exposed data. Automated takedown features allow it to detect impersonation attempts and submit removal requests with supporting evidence.\n\nThe platform provides compliance evidence aligned with frameworks such as ISO 27001, SOC 2, GDPR, RBI, PCI DSS, HIPAA, and DPDP. AI agents perform forensic analysis of threats by examining elements such as headers, IP reputation, and asset ownership, delivering findings with visual evidence and incident timelines. It maintains historical threat baselines and records security outcomes for measurement. Deployment involves connecting security tools, mapping external assets, and setting monitoring parameters without lengthy implementation processes.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/b1cee3fe-699d-4bb3-86fb-55fdd64e1b19.jpeg","url":"https://www.softwareadvice.co.nz/software/559061/Hunto-AI","@type":"ListItem"},{"name":"Torq AI SOC Platform","position":19,"description":"Torq AI SOC Platform is a cloud-based agentic security operations solution built for enterprise security teams, managed security service providers, and large organizations across industries. It automates threat detection, investigation, and response workflows using AI-driven agents that handle high volumes of security alerts without manual intervention, significantly reducing analyst workload.\n\nTorq AI SOC Platform integrates with existing security tools and data sources, centralizing alert triage and case management in one place. Core features include automated alert investigation, AI-powered case summarization, workflow orchestration, and real-time threat response. These capabilities help security teams prioritize critical incidents and reduce the time spent on repetitive tasks.\n\nThe platform is deployed via the cloud, requiring no on-premises infrastructure. Support is available through email, a knowledge base, and dedicated customer success resources for enterprise accounts.","image":"https://images.g2crowd.com/uploads/product/image/4d6e227627b1f74e3f9bfbfbd7c6b046/torq-ai-soc-platform.png","url":"https://www.softwareadvice.co.nz/software/606646/Torq-AI-SOC-Platform","@type":"ListItem"},{"name":"Splunk SOAR (Security Orchestration, Automation and Response)","position":20,"description":"Splunk SOAR is a security orchestration, automation, and response platform that helps security operations teams across businesses of all sizes manage and respond to threats faster. Splunk SOAR can be deployed cloud-based or on-premises, giving organizations flexibility based on their infrastructure needs. Core features include automated playbooks that run repetitive response tasks without manual effort, case management for tracking and organizing security incidents, and integrations with hundreds of third-party security tools to centralize workflows. Security teams can use the playbook editor to build custom automation sequences without writing code, reducing the time spent on routine alert triage. Reporting and analytics features give teams visibility into response times and operational performance. Splunk SOAR serves small, mid-size, and enterprise organizations across industries such as finance, healthcare, and technology. Support is available through an online knowledge base, community forums, and direct support plans that include email and phone assistance depending on the subscription tier.","image":"https://images.g2crowd.com/uploads/product/image/91bcb2c063fcfb0a82dfedcf1a6463d1/splunk-soar-security-orchestration-automation-and-response.jpg","url":"https://www.softwareadvice.co.nz/software/590172/Splunk-SOAR-Security-Orchestration-Automation-and-Response","@type":"ListItem"},{"name":"Splunk Enterprise Security","position":21,"description":"Splunk Enterprise Security is a unified threat detection, investigation, and response platform that serves enterprise and mid-sized organizations across industries such as finance, healthcare, and government. The software is deployed on-premises or via cloud, giving security teams flexibility based on their infrastructure needs. Splunk Enterprise Security centralizes security data from across an organization, helping teams detect threats, investigate incidents, and coordinate responses from a single interface. Core features include real-time alerting, risk-based prioritization, automated investigation workflows, and pre-built dashboards that surface potential threats quickly. Teams can correlate data from multiple sources to identify patterns that may indicate a security incident. Compliance reporting tools help organizations meet regulatory requirements without manual effort. Support is available through a knowledge base, community forums, documentation, phone, and email, with additional options for enterprise support plans.","image":"https://images.g2crowd.com/uploads/product/image/91bcb2c063fcfb0a82dfedcf1a6463d1/splunk-enterprise-security.jpg","url":"https://www.softwareadvice.co.nz/software/572342/Splunk-Enterprise-Security","@type":"ListItem"},{"name":"Google Security Operations","position":22,"description":"Google Security Operations is a cloud-based security platform designed for enterprises and large organizations across industries such as finance, healthcare, and government. It helps security teams detect, investigate, and respond to threats by collecting and analyzing large volumes of security data in one place. Google Security Operations offers core features including threat detection, security event correlation, automated investigation workflows, and case management tools. These features help security teams identify risks faster and manage incidents more efficiently. The platform integrates with existing security tools and data sources, giving analysts a unified view of their environment. Large organizations can benefit from the automated investigation capabilities, which reduce the manual effort required to triage alerts. Support is available through Google's knowledge base, documentation, and enterprise support plans that include access to technical specialists.","image":"https://images.g2crowd.com/uploads/product/image/aeae116c52945fdecd7ed16d621cb315/google-security-operations.png","url":"https://www.softwareadvice.co.nz/software/573027/Google-Security-Operations","@type":"ListItem"}],"numberOfItems":22}
</script>
