- Agentic operations
- Agentic operations are a framework where AI agents don’t just suggest actions, but execute multi-step operational tasks — such as updating firewall rules or isolating hosts — with varying degrees of autonomy.
- Agentic SOC
- An agentic SOC is a security operations center architecture where autonomous agents handle the "L1/L2" workload, allowing human analysts to focus exclusively on high-level strategy and complex hunting.
- AI analyst
- An AI analyst is a specialized generative model or agent trained on security datasets to perform correlation, summarization, and hypothesis testing on behalf of a human user.
- AI Search Assistant
- The ExtraHop AI Search Assistant is a generative AI-powered search tool within the ExtraHop RevealX NDR platform that enables security analysts to use natural language queries to investigate threats, discover devices, and search network records. It accelerates threat hunts and reduces the skill gap for new analysts.
- Automated Retrospective Detection
- Automated Retrospective Detection is a feature within the ExtraHop RevealX platform that automatically analyzes historical network data for evidence of previously unknown threats as soon as new indicators of compromise (IoCs) emerge, allowing security teams to identify past compromises and minimize attacker dwell time.
- Claude Mythos
- Claude Mythos is an advanced frontier AI model developed by Anthropic that possesses expert-level autonomous capabilities for discovering, chaining, and exploiting high-severity software vulnerabilities at scale, leading to its restricted release under the Project Glasswing defensive initiative.
- Agentic context
- Agentic context is the high-fidelity ground truth, encompassing real-time network traffic, identity behavior, and device, user, and application telemetry, that provides the deterministic foundation for AI agents to reason accurately, execute complex autonomous workflows, and achieve mission-critical outcomes with human-level precision.
- Investigation agents
- Investigation agents are purpose-built AI entities designed to follow an investigative lead, pivot through data sources across the enterprise, and autonomously reconstruct the full timeline and scope of a compromise.
- Mean time to augment (MTTA)
- Mean time to augment (MTTA) is a metric measuring how quickly AI delivers the comprehensive context and situational awareness a human analyst needs to move an investigation forward and make a confident decision.
- Security agent
- A security agent is a goal-oriented AI entity that helps enforce security controls, protect critical assets, and mitigate active risks.
- Smart Investigations
- ExtraHop's Smart Investigations are AI-driven, automated workflows that map an attack’s progression by correlating related detections and forensic evidence into a unified timeline, allowing analysts to move from an alert to its root cause in three clicks or fewer.
- Smart Triage
- Smart Triage is an AI-powered capability within the ExtraHop RevealX platform that automatically prioritizes and categorizes security alerts based on their risk level and blast radius, enabling analysts to instantly focus on the most critical threats while filtering out noise.
- Threat hunting agents
- A threat hunting agent is a proactive AI entity that continuously searches for subtle, stealthy attacker behaviors that traditional detection tools would miss.