Simbian launched AI Threat Hunt Agent with Microsoft Sentinel integration
Simbian launched its Artificial Intelligence (AI) Threat Hunt Agent, integrating it with the Microsoft Sentinel data lake. This integration enables Microsoft 365 E5 customers to enhance their threat hunting capabilities. The AI Threat Hunt Agent automates the validation of threat hunt hypotheses using Natural Language Processing (NLP), allowing threat hunters to identify potential threats and confirm malicious activities.
The AI Threat Hunt Agent queries security data across various tools within organizations to gather evidence, providing analysts with timely feedback. It is the first solution to automate the validation process at scale across an enterprise. Alongside this, Simbian extended its AI Security Operations (SecOps) Center (SOC) Agent to leverage the Microsoft Sentinel data lake, facilitating deeper investigations and responses to security alerts.
The collaboration between Simbian and Microsoft addresses key challenges in threat hunting, enabling organizations to sift through extensive logs to identify persistent threats. Krishna Kumar Parthasarathy, Corporate Vice President at Microsoft, acknowledged the partnership, noting its contribution to advancing security capabilities in an AI-centric environment. Ambuj Kumar, Co-founder and CEO of Simbian, highlighted how this collaboration aims to alleviate customer challenges in threat hunting while allowing teams to focus on more complex tasks.