Zscaler, Inc. the cybersecurity platform for AI era, today announced Zscaler Agentic SOC, a new approach to security operations built to proactively reduce exposures, scale human expertise and stop AI-driven attacks at machine speed. In today threat landscape, simply layering in AI capabilities onto existing security stack will not provide protection needed. Zscaler delivering new solution to security operations center SOC, purpose-built from ground up with AI-first approach to detect, investigate, and stop threats at machine speed. Announcement was made from San Jose, California, on September 9, 2026.
Today threat landscape defined by speed and stealth as AI-driven attacks move faster than SOC teams can manually correlate, analyze, remediate. Threatlabz, Zscaler global research team, seeing rise in evasive tactics, including use of trusted sites to host attacks, abuse of legitimate remote management tools, and browser-based attacks. Zscaler Agentic SOC built to meet challenge by combining unique Zscaler telemetry, world largest decoy mesh network, expert-validated agents, integrated Zscaler Zero Trust controls, and customers third-party controls to detect threats earlier and automate containment.
To power Agentic SOC, Zscaler partnered with leading frontier AI labs, including Anthropic and OpenAI. By integrating their frontier models alongside proprietary threat intelligence and zero trust telemetry, Zscaler able to deliver AI agents that reason with greater depth, accuracy, and explainability than any single model or approach could achieve alone. Extends beyond threat detection, with open platform approach enabling direct integration with frontier models, allowing security teams to ingest vulnerability findings and operationalize them within SOC workflows.
"AI-driven attacks moving faster than traditional SOC models ever designed to handle," said Deepen Desai, Executive Vice President of Cybersecurity at Zscaler. "Agentic SOC fundamental rethinking of security operations, built with agentic capabilities at its core to reduce exposures proactively, extend human expertise with AI agents and contain threats at machine speed. With unmatched inline telemetry, specialized AI agents and closed-loop remediation, Zscaler giving security teams visibility and control they need to outpace modern attackers."
"The past year has made one thing clear: AI attacks are fundamentally changing threat landscape, operating at speed, scale, and level of adaptability that looks very different from traditional human-led activity," said Allie Mellen, principal analyst and author of Code War.
Reimagining SecOps Zscaler differentiation: Unified exposure and threat management connects proactive attack surface reduction with reactive threat defense in single platform. Unmatched zero trust telemetry sits inline capturing network, identity, endpoint, cloud and AI insights. Specialized AI agents built on frontline experience. Closed-loop inline remediation automatically contains threats at machine speed with native inline controls.
"Our team was drowning in alert noise, forcing top analysts into triage instead of proactive threat hunting," said Andrea Liccardi, Sr. Cybersecurity Manager, Maire Tecnimont. "Zscaler Agentic SOC gives us full attack-path context using telemetry we already had in place, helping our team move from fragmented signals to faster, more informed decisions."
Key Features of Zscaler Agentic SOC: Data-rich context graph correlates real-time zero trust telemetry with third-party data to map, prioritize and investigate complex incident chains. Specialized AI agents autonomous agents perform dedicated roles across triage, root-cause investigation, assigning verdicts, and triggering response workflows. Advanced detections informed by threat intelligence. Continuous threat hunting and expert support combines AI speed with seasoned human judgment from Zscaler and Red Canary security experts.
About Zscaler
Zscaler accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. Zscaler Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across over 200 public data centers globally and thousands of private sites at edge, SASE-based Zero Trust Exchange is world largest in-line cloud security platform.