soc automation

  1. City of Johannesburg Uses Microsoft Security Copilot to Automate SOC and Cut Noise

    Protecting a modern metropolitan government is no longer just about firewalls and endpoint tools. It is about securing a sprawling mesh of cloud services, legacy IT, operational technology, and remote workers while keeping essential public services available every hour of every day. The City of...
  2. Microsoft’s Agentic SOC: Faster Detection to Disruption in Minutes

    Every major swing in cyberattacker behavior tends to arrive after defenders change the game, and Microsoft is now arguing that security operations has reached another one of those inflection points. In a new April 9, 2026 Security blog post, the company lays out its vision for the agentic SOC, a...
  3. SecQube US Launch: Harvey AI Security Portal on Azure Marketplace

    SecQube’s official U.S. launch on February 23, 2026 marks a deliberate push by the Microsoft-aligned security vendor to convert rising demand for cloud-native, AI-assisted security operations into a partner-driven, marketplace-ready business in North America. Background SecQube began life as a...
  4. Agentic Security: How AI Agents Transform Threat Detection and Incident Response

    Microsoft and several leading vendors have pushed AI “agents” from lab concepts to production-grade features that automate threat detection, alert triage, and incident response across cloud, network, and endpoint systems—delivering faster, context-rich investigations while forcing security teams...
  5. Tanium Security Triage Agents with Copilot Cut SOC Alert Overload

    Tanium’s new Security Triage Agents — now available inside Microsoft Security Copilot — are being pitched as a practical remedy for one of the most persistent drag forces on modern SecOps: alert overload. The agents inject Tanium’s real‑time endpoint telemetry and incident context directly into...
  6. BlinkOps + Microsoft Sentinel: Agentic Security Automation in Azure Marketplace

    BlinkOps’ announced integration with Microsoft Sentinel brings a new class of agentic security automation into the Azure ecosystem — available today through the Azure Marketplace and supported by prebuilt content in the Sentinel Content Hub — and that combination has immediate operational...
  7. Mitigating Malvertising and AI-Driven Threats: Windows Security in 2025

    This week’s wave of security headlines delivered a clear, uncomfortable message for Windows admins and security teams: the internet’s trust fabric is fraying in ways that let attackers hide inside legitimate flows — and Microsoft’s own infrastructure, link‑wrapping services, and even patch...
  8. Security Copilot: AI-Driven Incident Response for Security Ops

    Microsoft’s Security Copilot arrives at a time when defenders are drowning in alerts, and the product’s promise is simple but consequential: apply generative AI to compress investigation time, automate routine triage, and translate dense telemetry into actionable decisions for security teams and...
  9. BitLyft AIR: No-Code Automated Incident Response for Windows & Cloud Security

    In an era where cyber threats evolve each day and security teams struggle to stay ahead of ever-morphing attack vectors, BitLyft’s latest release of its AIR® platform signals a fundamental shift in the very nature of incident response for Windows-centric environments. BitLyft AIR, now...