Simbian®, a leader in Superintelligence for Accelerated Security, has launched its AI Threat Hunt Agent, now integrated with the Microsoft Sentinel data lake. This integration empowers Microsoft 365 E5 customers to accelerate and scale enterprise threat hunting capabilities, leveraging the vast security data stored in the Sentinel data lake.

The AI Threat Hunt Agent automates validation of threat hunt hypotheses using AI. Threat hunters can use natural language to identify potential techniques and tools employed by threat actors, as well as estimate their location within the organization. The agent queries security data across multiple tools, investigates evidence, and confirms chains of malicious activity, providing timely feedback to analysts. Simbian is the first solution to automate hypothesis validation at scale across an enterprise environment.

By integrating with the Microsoft Sentinel data lake, Simbian addresses key threat hunting challenges. The data lake allows reasoning across months of diverse logs to uncover long-running threats and execute discreet investigations. The AI SOC Agent is enhanced to investigate and respond to security alerts from all major alert sources, including SIEMs and EDRs, extending the capabilities of Simbian’s existing Microsoft Sentinel integration.

“Sentinel data lake delivers on Microsoft’s vision of being the best security platform for the AI era,” said Krishna Kumar Parthasarathy, Corporate Vice President, Microsoft Sentinel Platform. “Partners like Simbian showcase the platform’s power and demonstrate a path toward more autonomous security capabilities.”

“We are honored to work with Microsoft to leverage the breadth of data in Sentinel data lake and provide autonomous threat hunting solutions for our customers,” said Ambuj Kumar, Co-founder and CEO of Simbian. “By automating the mechanical and reasoning aspects of threat hunting, customers can uncover meaningful threats and focus on the creative side of security analysis.”

The Simbian AI Threat Hunt Agent, combined with the previously released AI SOC Agent, completes the lifecycle of threat hunting. Analysts can formulate hypotheses informed by Simbian’s context, validate them with the AI Threat Hunt Agent, and then investigate and respond using the AI SOC Agent, providing the foundation for Superintelligence for Accelerated Security.

For more updates on AI, IoT, cybersecurity, and industry insights, explore Itech360hub.com.