Multi-model AI transforms threat detection, triage, investigation, threat hunting, and response, enabling organizations to realize an AI-powered SOC without the traditional operational overhead; available as SaaS or MDR service.
SAN FRANCISCO, Aug. 26, 2025 — Exaforce today introduced its agentic security operations (SOC) platform, combining AI-native capabilities for the entire SOC lifecycle alongside a fully managed MDR service. While much of the industry focuses on applying AI to assist security analysts with alert triage and investigations alone, Exaforce activates agentic AI across the entire security operations lifecycle, spanning threat detection, alert triage, investigation, threat hunting, and response. This significantly broader application of AI enables organizations of all sizes to operate with unmatched precision, speed, and confidence.
“Exaforce goes far beyond the current implementations of AI analysts to build a truly next generation SOC platform,” said James Berthoty, founder of the cybersecurity analyst firm, Latio. “Unlike most existing players who are solving only small pieces of SOC optimization, Exaforce optimizes just about every area of the SOC with a massive data platform built for agentic optimizations.”
Earlier this year, Exaforce was also named the Leader in Latio’s AI Security Report, recognizing its end-to-end approach and proven results in enterprise environments.
Challenges in the SOC
Today’s security operations centers contend with a relentless flood of telemetry from IaaS, SaaS, identity providers, endpoints, and email providers. Taking these voluminous, fragmented signals, identifying an attack, and building a meaningful insight into the full story of the attack requires time, expertise, and resources that many organizations simply don’t have. Even small companies need to deal with terabytes to petabytes of security data, from a myriad of cloud services, quickly overwhelming traditional processes and teams.
Agentic AI holds a lot of promise for enhancing security operations. However, existing solutions continue to fall short because they focus only on a small portion of SOC challenges. Traditional security technologies with AI add-ons were built for a different era and struggle to keep pace with modern attack surfaces like AI workloads, SaaS applications, source code repositories, and cloud infrastructure. Newer AI SOC tools are typically limited to Tier-1 analyst tasks such as alert triage or investigations, relying on LLM-only architectures. This leaves security teams managing a patchwork of tools and workflows that depend heavily on institutional knowledge and human effort.
Exaforce’s approach: Bringing AI to the entire SOC lifecycle
Exaforce expands the concept of an AI SOC into a unified, agentic AI platform that supports all functions in the SOC, including analysts, detection engineers, DevOps, and threat hunters, providing AI-native capabilities to the entire SOC.
Its breakthrough multi-model AI blends semantic understanding of security logs, third-party alerts, cloud configurations, identity data, source code, files & folders, and AI tool usage data with behavioral analytics and LLM-based reasoning, to provide human grade reasoning that operates at the skill level of a Tier-3 expert.
SOC teams interact with Exaforce through task-specific AI agents called “Exabots,” as well as AI-augmented data exploration. The platform delivers key capabilities across four critical areas, all within a single interface that eliminates the need for constant context switching:
- Threat Detection – Delivers AI and machine learning-driven threat detection for critical IaaS and SaaS services, enabling detection engineering to plug gaps without continually writing rules. Exaforce’s multi-model AI overcomes poor precision and recall of traditional UEBA and SIEMs, delivering better alerts that are fully triaged.
- Alert Triage – Automates analysis and triage of alerts from external SIEMs and cloud-native threat detection services, dramatically reducing false positives and allowing analysts to focus on threats that matter. Triaged alerts come fully enriched with fine grained data that allows a human to validate or even perform manual investigation.
- Threat Hunting/ Investigation – Accelerates hypothesis-based hunting and investigation with intelligently contextualized data and AI copilots that help analysts trace attack paths and cut mean time to investigate (MTTI) from hours to minutes.
- Threat Response – Orchestrates agentic workflows for rapid response, such as resetting MFA, terminating user sessions, disabling devices, confirming user and manager actions, or historical ticket analysis, offloading routine tasks from the SOC team.
“At Exaforce, we believe the real promise of AI is to democratize security operations, so every organization, no matter its size or resources, can defend itself with the same confidence as the world’s largest enterprises,” said Ankur Singla, co-founder and CEO of Exaforce. “Our AI, purpose-built for the SOC, unlocks security teams from managing fragmented data and low-value alerts and gives them the headroom to focus on strategic work, such as proactive threat protection and response, with clarity and confidence.”
Customer’s choice: SaaS or MDR
Exaforce is the industry’s only AI SOC solution that is built from the ground up to offer customers flexibility in deployment options, available as both a SaaS platform and a fully managed MDR service. Organizations looking to AI-augment their existing SOC can implement Exaforce as a SaaS platform that is fully contained in the region of the customer’s choice to maintain data sovereignty. This enables direct control over detection, investigations, and response while benefiting from Exaforce’s AI at every step. Alternatively, organizations can opt for Exaforce MDR. By integrating human expertise with the speed, scale, and precision of AI agents, Exaforce MDR elevates the quality and performance of SOC outcomes considerably when compared to traditional MDR services, while offering unmatched cost benefits.
No matter the deployment model, Exaforce can be operationalized within hours and delivers value instantly.
Industry validation
Since emerging from stealth, Exaforce has been adopted by organizations across multiple industries, including technology, financial services, energy, and manufacturing, helping solve complex cloud security challenges from insider threats to account takeovers, faster, with higher quality and more cost effectively. Innovative security teams using Exaforce include Accton, Automation Anywhere, Commonwealth Fusion Systems, Lottie Files, NTT Data, Invisible Technologies, and others.
“Exaforce has transformed our SOC operations by strengthening every stage of the lifecycle—from detection and triage to investigation and response,” said Raghuraman Sethuraman, VP of Engineering at Automation Anywhere. “It closed critical gaps in SaaS detection and response where native capabilities fall short, and its agentic workflows have cut investigation effort by approximately 50%, freeing our team to focus on the strategic threats that matter the most.”
About Exaforce
At Exaforce, we are on a mission to increase the productivity and efficacy of SOC teams by tenfold with our transformative multi-model AI for security operations. Backed by Khosla Ventures, Mayfield, Thomvest Ventures, and others, Exaforce helps SOC teams respond to threats and breaches faster, with higher precision, greater consistency, and at lower total costs, rewriting the rules for how modern SOCs operate. For more information, visit https://exaforce.com.




