Securonix, Inc., today introduced Securonix Advanced Behavioral Analytics (ABA), a new capability that helps security teams identify at machine speed, activity that is technically permitted but operationally abnormal. ABA features Agent and Entity Behavior Analytics (AEBA), which identifies when an enterprise AI agent uses an unexpected tool, accesses data outside its purpose or changes its operating pattern. Securonix introduces Advanced Behavioral Analytics to detect human and AI-driven threats.
Compromised accounts, insider activity and AI agents can resemble legitimate behavior when events are reviewed in isolation. Advanced Behavioral Analytics combines AEBA with User and Entity Behavior Analytics (UEBA), which connects unusual login times, rising data access and contact with sensitive assets across systems and time. Together, AEBA and UEBA help analysts investigate developing risk instead of isolated alerts and carry context through detection, investigation, case management and governed response. Policies, approvals and audit records remain visible and enforceable throughout the process.
"AI is compressing the time between initial access and business impact, while security leaders remain accountable for the decisions made under that pressure," said Toby Weiss, Chief Executive Officer of Securonix. "Securonix Advanced Behavioral Analytics helps analysts identify meaningful behavioral change earlier and gives them clear control over how AI supports the response. Consequential response actions remain subject to human approval."
Traditional SIEM platforms were built to collect and correlate human and machine activity before enterprise AI agents became part of the attack surface. Securonix extends behavioral baselines and risk detection across users, identities, assets, applications, cloud environments and AI agents. It correlates signals across systems and time to surface compromised identities, unusual access, privilege misuse, sensitive data exposure and abnormal agent activity. An expanding catalog of AI-threat policies helps teams detect established attack techniques such as AI compresses reconnaissance, exploit development, privilege escalation and data movement.
Sam, the AI SOC Analyst, executes repeatable Tier 1 and Tier 2 work across triage, investigation, evidence collection and case creation. The Agentic Mesh coordinates AI-supported workflows, while Agentic Guardrails keep actions policy-bound, visible and auditable. Analysts review and approve consequential response actions. By completing repeatable work, Sam helps security teams absorb growing alert volumes and expand SOC capacity without requiring linear growth in headcount.
For authorized insider-risk investigations, the Securonix Insider Intent Agent adds contextual and corroborating evidence while preserving competing explanations. Analysts review each signal as part of the broader evidence rather than treating a message, search or behavioral deviation as proof of intent.
"In a managed SOC, the hardest part isn't writing detection rules. It's understanding each customer's environment well enough to separate real threats from normal activity. That becomes even harder in cloud and Infrastructure-as-Code environments, where workloads appear and disappear and identities constantly change," said Darren Humphries, Group CISO, Acora. "Securonix Threat Analytics builds that behavioral baseline automatically, then uses risk scoring and evidence boards to show our analysts what matters and why. For Acora's customers, that means fewer false positives, faster investigations and quicker containment, without losing the customer context that makes detection effective."
Independent Assurance for Governed AI Securonix has also achieved ISO/IEC 42001:2023 certification, the world's first AI management system standard. The certification covers the management system used to govern AI across the Securonix product portfolio, including ThreatQ, and follows an external audit with no major findings. It provides independent validation of accountability, AI risk management and human oversight and can support customer due diligence across security, procurement and AI governance reviews. The certificate is available through the Securonix Trust Center.
About Securonix
Securonix is transforming security operations with industry's first Unified Defense SIEM with Agentic AI built to decide and act across threat lifecycle human-in-the-loop philosophy cloud-native platform unifies detection investigation response enabling Sam AI SOC Analyst productivity-based AI operating model SOC.