Home
News
Tech Grid
Interviews
Anecdotes
Think Stack
Press Releases
Articles
  • Threat Intelligence

Pondurance Kanati™: Agentic AI SOC for Next-Gen MDR


Pondurance Kanati™: Agentic AI SOC for Next-Gen MDR
  • by: Source Logo
  • |
  • March 23, 2026

Pondurance, a leading provider of next-generation managed detection and response (MDR) services designed to eliminate breach risk for mid-market organizations, has launched Pondurance Kanati™ — the industry's first Agentic AI-powered Security Operations Center (SOC). This innovation shifts SOC operations to autonomous, machine-speed defense, where AI handles high-confidence threats instantly while human analysts supervise and focus on complex cases, redefining performance and economics in managed security.

Quick Intel

  • Pondurance introduces Kanati™, an Agentic AI that powers its MDR SOC for fully autonomous threat detection and response.
  • Kanati enables machine-speed operations, reducing threat analysis time by 90% and average alert investigation to under 2 minutes.
  • Key outcomes include 80% reduction in false positive tickets, 10X better contextual enrichment, and 95% faster overall response times.
  • The AI autonomously contains high-confidence threats, such as endpoint isolation, while escalating lower-confidence issues to human experts.
  • Kanati processes over 60TB of daily data with real-time telemetry ingestion, multi-step investigations, and confidence-based decision models.
  • Built with strong governance, including tenant-isolated data, Amazon Bedrock integration, audit trails, and opt-out availability for regulated customers.

Traditional SOCs rely heavily on human triage, correlation, and playbook execution, leading to delays, higher costs, and potential errors. Pondurance Kanati replaces these alert-driven workflows with a coordinated network of AI agents that operate continuously across the threat lifecycle, ingesting and normalizing telemetry from endpoints, networks, cloud, operating systems, and identity platforms in real time.

Autonomous Operations at Machine Speed

Kanati adopts an AI-native model where autonomous action on high-confidence threats becomes the default. It conducts cross-system investigations using historical baselines, behavioral analysis, and risk-weighted context, then executes verified containment measures such as endpoint isolation and identity controls. This dramatically cuts dwell time and analyst workload, allowing human experts to shift toward proactive advisory, recommending defensive posture improvements and broader IT enhancements.

Performance and Efficiency Gains

Initial results from Kanati demonstrate significant advancements:

  • 90% faster threat analysis through AI-powered confidence ratings and containment
  • Average investigation time under 2 minutes for all alerts
  • 80% reduction in false positive tickets
  • 10X improvement in threat correlation and contextual enrichment
  • Rapid exposure identification to prevent exploitation
  • 100% alert coverage with full analytical rigor

Governance, Trust, and Transparency in Agentic AI

Kanati incorporates security-by-design principles to ensure accountability in autonomous cybersecurity. It operates in tenant-isolated environments using Amazon Bedrock, keeping all customer data within Pondurance infrastructure without external model training. Every automated decision is logged, policy-enforced, and auditable with explainable AI trails and immutable records. Customers in regulated sectors can opt out of Kanati features at any time.

“Cyber adversaries operate at machine speed, using AI with no rules of use. Security operations must match that pace or fall behind, while protecting and not negatively impacting each customer’s environment,” said Doug Howard, CEO of Pondurance. “With our new Pondurance Kanati Agentic AI SOC, we’ve reimagined from the ground up how the SOC operates in the next-generation MDR, fusing at peak more than 60TM of daily event, alert, and threat intelligence data with contextual AI to achieve containment for high-confidence threats.”

Kanati is included at no additional cost across all Pondurance MDR service configurations and is immediately available to qualified enterprise and mid-market customers in North America.

About Pondurance

Pondurance is the only next-generation managed detection and response service specifically engineered to eliminate breach risk. As a full-service provider of incident response (DFIR), MDR, exposure management, and cybersecurity advisory and compliance services, Pondurance protects mid-sized organizations from data breach risks before, during, and after they occur. Organizations entrusted with consumer PHI and PII rely on Pondurance for a unified platform and outsourced security operations center service designed to eliminate cybersecurity and regulatory risk.

  • CybersecurityAgentic AIThreat DetectionCyber Threats
News Disclaimer
  • Share