Cisco launched two AI-driven SecOps solutions Splunk Enterprise Security Essentials Edition and Splunk Enterprise Security Premier Edition offering customers agentic AI capabilities that unify security workflows across threat detection, investigation, and response (TDIR). Delivered through Splunk Enterprise Security 8.2, a leading SIEM platform, these offerings simplify security operations and accelerate threat response. Additionally, Cisco announced a suite of AI features designed to power the next-generation agentic Security Operations Center (SOC), enabling analysts to focus on strategic tasks while AI handles repetitive operations.

With many Cisco security products already integrated with Splunk Enterprise Security, the new features embed agentic AI at the heart of the SOC. AI agents now not only orchestrate and automate complex workflows but also convert manual tasks into autonomous security operations. This transformation enables security teams to respond faster, reduce operational friction, and proactively manage threats.

AI Authority TrendCisco Secure AI Factory with NVIDIA Unlocks Enterprise Data for Agentic AI

“Adversaries are already using AI, so defenders need to seize every possible advantage,” said Mike Horn, SVP and GM for Splunk Security. “Our security offerings unify detection, investigation, and response into a single, intuitive workspace, eliminating tool fragmentation and significantly boosting efficiency. Built-in AI can help cut alert noise and reduce investigation time from hours to minutes. Now every SOC can better position to stay ahead of advanced threats and empower analysts at every level.”

Empowering the Agentic SOC

Organizations often face data overload, struggling to identify actionable insights. This creates operational blind spots across SecOps, ITOps, and engineering teams, delaying detection and response, and exposing businesses to preventable risks. Cisco addresses this challenge by offering two flexible solutions:

  • Splunk Enterprise Security Premier Edition: Combines Splunk Enterprise Security 8.2, Splunk SOAR, Splunk UEBA, and Splunk AI Assistant for a fully integrated experience.
  • Splunk Enterprise Security Essentials Edition: Integrates Splunk Enterprise Security 8.2 and Splunk AI Assistant, providing a unified and streamlined environment.

“With today’s increasingly sophisticated threats and sprawling attack surfaces, security teams can’t afford to waste time switching between fragmented tools and operating with siloed visibility,” said Michelle Abraham, Research Director, Security and Trust at IDC. “By integrating multiple security capabilities into a single, cohesive environment, security platforms empower organizations to move from reactive to proactive security, streamlining workflows, improving detection and response, and ultimately reducing risk.”

AI Authority TrendGrid Dynamics Launches Temporal Agentic AI Platform for Enterprise AI Transformation

Next-Level AI for Security

Cisco continues to enhance security operations with advanced AI capabilities, including:

  • Triage Agent: Evaluates and prioritizes alerts, reducing analyst workload.
  • Malware Reversal Agent: Examines harmful scripts, spots attempts to evade detection, and highlights threats that keep coming back.
  • AI Playbook Authoring: Turns everyday language instructions into ready-to-use SOAR playbooks.
  • Response Importer: Incorporates SOC SOPs into response plans using multi-modal AI.
  • AI-Enhanced Detection Library & Personalized Detection SPL Generator: Accelerates production-ready detections tailored to each SOC.

Cisco Integrations Accelerate Security Operations

By connecting with Cisco solutions, Splunk enables faster detection, investigation, and response. Key integrations include Isovalent Runtime Security (eBPF) for granular visibility and federated Cisco firewall data in Splunk Cloud Platform, allowing analysts to run security analytics directly without data ingestion.

Together, these innovations mark a pivotal shift in security operations, empowering organizations to transition from reactive to proactive defense while maximizing AI-driven efficiency across the SOC.

AI Authority TrendRigh Partners with Synaptics for Smart Home Agentic AI Applications 

To share your insights, please write to us at sudipto@intentamplify.com