Blog
Notes from building an agentic SOC.
What we learned building the agents, what we got wrong, and the design decisions we would defend in a room full of skeptical engineers.
All posts
Showing 5 of 5 posts.
- Product
Shadow AI is a visibility problem before it is a policy problem
Blocking a list of known AI domains isn't governance. Here is what actually has to be measured first.
CyForte Engineering · Jul 28, 2026 · 7 min
- Engineering
CVSS is not a priority order
If everything critical is critical, nothing is. Ranking exposures needs exploit signal, reachability, and asset context.
CyForte Engineering · Jul 21, 2026 · 8 min
- Threat research
Identity is the fast attack, and your queue is the slow response
The window between a successful sign-in and the first lateral move is where the whole response lives. It is usually minutes.
CyForte Engineering · Jul 14, 2026 · 6 min
- Engineering
Why we gate destructive actions, and what that costs
Full autonomy demos better. Gated autonomy is what security teams will actually turn on.
CyForte Engineering · Jul 7, 2026 · 5 min
- Compliance
One control, many frameworks: mapping instead of repeating
If you report against three frameworks you're probably gathering the same evidence three times.
CyForte Engineering · Jun 30, 2026 · 6 min
Book a demo
See CyForte on your own alerts.
Thirty minutes with a security engineer, not a slide deck. Tell us the use case when you book and we will open the agent that owns it.
