AI SOC vendors list 2026
Independent, practitioner-run directory of 154 AI SOC, security automation, detection engineering and adjacent SecOps vendors. Maintained by SecOps Unpacked. Every vendor name links to its full profile.
Last updated 2026-09-06.
How to use this list
This directory records what each vendor does. It does not rank them, and it names no single best platform, because the right one depends on which part of your lifecycle is weak, what telemetry you already have and how much you want the AI deciding on its own. Shortlist here on capability and deployment model, then score the shortlist against your own gap with the AI SOC Evaluation Framework.
Frequently asked questions
What is an AI SOC?
An AI SOC uses AI agents and large language models to perform work that previously required human analysts: alert triage, investigation, response coordination, and case management. The term covers both AI-native platforms and traditional SIEM, SOAR, MDR, or detection engineering tools that have added AI on top. Both show up in this list. What differs is the architecture and how much of the workflow they finish on their own.
What is an AI SOC vendor?
A company that sells AI SOC software. Some vendors were built for this from the start. Others are established SIEM, SOAR, or MDR products that added it later. Both are in this list. The distinction that matters when you buy is not who was first. It is how much of the work the software finishes on its own, and which part of your lifecycle it covers. A tool that drafts an investigation summary and a tool that closes the case are sold with the same words.
What is the difference between an AI SOC vendor, platform, and provider?
In practice these three words are used for the same thing. Vendors pick whichever sounds best. A platform usually means software you run. A provider usually means people running it for you, closer to MDR. A vendor is whoever sells it. Read the deployment model rather than the noun. This list records the deployment archetype for every entry: Build it Yourself, Plug and Play, or Plug and Play & Customizable. Each implies a very different amount of work on your side.
What is the difference between AI SOC and Agentic SOC?
In practice, none. Practitioners use both terms for the same category. This list treats them as one.
The reason both terms exist comes from vendor positioning, not architecture. “AI SOC” was the label when the category emerged, back when AI mostly meant LLM summaries and GenAI-assisted triage. “Agentic SOC” arrived once vendors wanted to signal they had gone further: autonomous agents that reason and act, not just models that summarize. Every AI SOC vendor is now migrating their marketing toward “agentic” because it sounds more current.
What actually matters when you evaluate is not which label the vendor uses. It is how much of the workflow the software finishes on its own. A vendor calling itself “Agentic SOC” may still ask you to write playbooks. A vendor calling itself “AI SOC” may already run autonomously. Read the deployment archetype and the individual profiles, not the marketing.
Is an AI SOC the same as SOAR with AI?
No. SOAR executes predefined workflows faster. An AI SOC reasons over novel signals and drives decisions without predefined logic. You can use SOAR to build AI SOC capabilities, but a pure-play AI SOC vendor is not a SOAR by default. Most tools currently marketed as AI SOC that require you to write playbooks are closer to SOAR 2.0.
Why call this “AI for SecOps” and not “AI SOC”?
AI SOC is a specific category focused on alert triage, investigation, and response. This directory covers the wider SecOps workflow: detection engineering platforms, UBA tools, threat intelligence, MDR providers, SOAR, CIRM, and DFIR. AI for SecOps reflects the broader scope. AI SOC and Agentic SOC are major subsets, not the whole picture.
How are vendors categorized in this directory?
Every vendor is tagged across three editorial dimensions: capability (what the platform does: AI SOC, SIEM, SOAR, MDR, detection engineering, and others), deployment archetype (Plug and Play, Plug and Play & Customizable, Build it Yourself), and Shift Map position (where in the SOC workflow it operates). See full category definitions →
How do I shortlist AI SOC vendors?
Start from the part of your lifecycle that is weak, not from a feature list. Filter the directory to that capability, then to a deployment archetype your team can operate. That leaves five to ten names. Score those against your own gap, not by comparing feature grids.
Two filters do most of the work. Capability tells you whether a vendor works on the problem you have. Deployment archetype tells you whether you can operate it. A product that is excellent at detection engineering is the wrong buy for a team whose alerts never get triaged.
What is the best AI SOC platform?
There is no single best one, and every “top AI SOC vendors” list on the web is published by a vendor with something to sell. The right platform depends on which part of your lifecycle is weak, what telemetry you already have, and how much you want the AI deciding on its own. A platform that is excellent for a twenty-person SOC with a mature detection practice is the wrong buy for a team of three. Use the capability filters and deployment archetype to shortlist against your actual needs.
How should I use this list to evaluate AI SOC vendors?
This resource is designed for evaluation, not endorsement. It does not rank vendors or name a top pick. Every SOC has different telemetry, team size, maturity, and budget, so the right choice is always context-specific. Use the capability filters, deployment archetypes, and SecOps Shift Map to shortlist, then read the individual profiles for capability detail, AI stack, pricing model, and independent reviews. Score a shortlist with the AI SOC Evaluation Framework →
Is this AI SOC vendor list free?
Yes. The directory is free for everyone reading it. Vendors can optionally claim and maintain their own profile data.
Who runs this directory and why should I trust it?
SecOps Unpacked is built by working security practitioners. Every other “top AI SOC vendors” list on the web is published by a vendor, by a vendor’s content marketing agency, or by an SEO site recycling vendor marketing. Each of those lists ranks the publishing vendor at or near the top.
This list is different. The editorial layer, categories, deployment archetypes, Shift Map positioning, and practitioner notes are set independently.
About this list
No directory is perfect. This one is honest about what it is.
Vendors are included based on relevance to the AI SOC (also called Agentic SOC) space. Premium profiles are claimed by the vendor and updated through a self-service flow. The rest are based on public information. Either way, the editorial layer, categories, archetypes, Shift Map positioning, practitioner notes, is ours, and not for sale.
Machine readable: full text of every profile · site guide
| Vendor | Leads with | Capabilities | Deployment | Headquarters | Founded |
|---|---|---|---|---|---|
| 7AI | AI SOC Pure Play | MDR, SIEM, AI Agent Builder, Automation | Plug and Play | United States | |
| Above Security | Insider Threat / DLP | Data Analytics / UABA, SecOps Resilience | Plug and Play | Wilmington, United States | 2025 |
| Abstract Security | SIEM | AI SOC Capability, Data Analytics / UABA, Detection Engineering | Plug and Play | Palo Alto, United States | 2023 |
| AirMdr | MDR | AI SOC Pure Play | Plug and Play | United States | |
| Airrived | Automation | AI Agent Builder, AI SOC Pure Play | Build it Yourself | United States | |
| AiStrike | AI SOC Pure Play | Detection Engineering, Automation, Threat Intel, MDR | Plug and Play & Customizable | United States | |
| Alaris Security | AI Agent Builder | Threat Hunting, Detection Engineering, SecOps Resilience, Threat Intel, SOAR, AI SOC Pure Play | Plug and Play & Customizable | San Francisco, United States | 2025 |
| AlphaLevel | Data Analytics / UABA | AI SOC Pure Play | Plug and Play | United States | |
| Andesite | AI Agent Builder | AI SOC Pure Play, Threat Intel, Threat Hunting, Data Analytics / UABA | Plug and Play & Customizable | McLean, United States | 2024 |
| Anomali | AI SOC Capability | Data Analytics / UABA, SIEM, Threat Intel, Threat Hunting | Plug and Play | United States | |
| Anvilogic | SIEM | Detection Engineering, AI SOC Capability | Plug and Play | Palo Alto, CA, USA | 2019 |
| AquilaI | AI SOC Pure Play | Data Analytics / UABA | Plug and Play | India | |
| Arambh Labs | AI Agent Builder | AI SOC Pure Play, Detection Engineering, Threat Hunting, Automation | Plug and Play & Customizable | San Carlos, CA, United States | 2024 |
| Arcanna AI | AI SOC Pure Play | Plug and Play & Customizable | United States | ||
| Arctic Wolf | MDR | SIEM, Data Analytics / UABA, AI SOC Capability | Plug and Play | United States | |
| Artemis | SIEM | Data Analytics / UABA, Threat Hunting, Threat Intel, SOAR, DFIR / Forensics, SecOps Resilience, MDR, Detection Engineering, Data Ingestion & Processing, AI SOC Pure Play | Plug and Play & Customizable | United States | |
| Axoflow | Data Ingestion & Processing | Data Analytics / UABA, Detection Engineering | Plug and Play & Customizable | Stamford, United States | 2023 |
| Beacon Security | SIEM | Automation, AI SOC Pure Play, Data Analytics / UABA, Data Ingestion & Processing, Threat Hunting, AI Agent Builder, Detection Engineering | Plug and Play & Customizable | United States | |
| Binalyze | DFIR / Forensics | Automation, Threat Hunting, CIRM / Case Management, AI SOC Capability, AI Agent Builder | Plug and Play & Customizable | Tallinn, Estonia | 2018 |
| Binary Defense | MDR | Threat Hunting, AI SOC Capability, Data Ingestion & Processing, DFIR / Forensics, SOAR | Plug and Play | Cleveland, United States | 2012 |
| BlinkOps | AI Agent Builder | SOAR, Threat Hunting, Threat Intel, AI SOC Capability | Plug and Play & Customizable | Austin, United States | 2021 |
| Bricklayer AI | Threat Hunting | Threat Intel, AI SOC Pure Play | Plug and Play | Arlington, United States | 2023 |
| Cantina | Automation | AI Agent Builder, AI SOC Pure Play | Plug and Play & Customizable | United States | |
| Caver | AI SOC Capability | SIEM, Data Ingestion & Processing, Data Analytics / UABA, SOAR, Threat Intel, Threat Hunting, DFIR / Forensics, SecOps Resilience, Detection Engineering, AI Agent Builder | Plug and Play & Customizable | Nashville , United States | 2026 |
| CipherData | AI SOC Pure Play | Detection Engineering, Data Ingestion & Processing, Data Analytics / UABA, Threat Hunting, SIEM, SOAR | Plug and Play | Bellevue, WA, United States | 2023 |
| Cognna | MDR | AI SOC Pure Play | Plug and Play | Saudi Arabia | |
| Command Zero | AI SOC Pure Play | Threat Hunting, CIRM / Case Management, Automation, Insider Threat / DLP | Plug and Play & Customizable | Austin, United States | 2022 |
| Conifers | CIRM / Case Management | Detection Engineering, SecOps Resilience, Threat Hunting, Threat Intel, AI SOC Pure Play | Plug and Play | United States | |
| Cotool | AI Agent Builder | AI SOC Pure Play | Build it Yourself | United States | |
| CounterShadow | AI SOC Pure Play | Plug and Play | United States | ||
| Cribl | SIEM | Data Analytics / UABA, Data Ingestion & Processing, Detection Engineering, AI SOC Capability | Build it Yourself | San Francisco, United States | |
| CriticalStart | MDR | AI SOC Capability | Plug and Play | United States | |
| Crogl | AI SOC Pure Play | Plug and Play | United States | ||
| CrowdStrike | SIEM | Data Analytics / UABA, SOAR, Threat Hunting, MDR, DFIR / Forensics, Threat Intel, AI SOC Capability, AI Agent Builder | Plug and Play & Customizable | United States | |
| Culminate | AI SOC Pure Play | Plug and Play | United States | ||
| Cyber Defence | Data Analytics / UABA | DFIR / Forensics, SIEM, Threat Hunting, AI SOC Capability, Automation | Plug and Play & Customizable | United Kingdom | 2009 |
| CyberProof | AI SOC Capability | Data Analytics / UABA | Plug and Play | United States | |
| Cydarm | CIRM / Case Management | AI SOC Capability | Build it Yourself | Australia | |
| Cylerian | SIEM | AI SOC Capability, SOAR, MDR, Data Ingestion & Processing, Detection Engineering, DFIR / Forensics, Insider Threat / DLP, Threat Hunting, ITDR, AI Agent Builder, Data Analytics / UABA, Threat Intel | Build it Yourself | United States | |
| Cymph | SecOps Resilience | Plug and Play & Customizable | Tallinn, Estonia | 2023 | |
| Cyware | CIRM / Case Management | Threat Intel, AI SOC Capability | Build it Yourself | United States | |
| D3 Security | AI SOC Capability | SOAR, SecOps Resilience, Threat Hunting | Build it Yourself | Vancouver, Canada | 2012 |
| DarkTrace | NDR | AI SOC Capability, Data Analytics / UABA, DFIR / Forensics | Plug and Play | United Kingdom | 2013 |
| Databricks | SIEM | Automation, AI Agent Builder | Plug and Play & Customizable | United States | |
| Datadog | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, AI Agent Builder, AI SOC Capability | Plug and Play | United States | |
| Daylight Security | AI SOC Pure Play | MDR, Threat Hunting | Plug and Play | United States | 2024 |
| DeepTempo | Data Analytics / UABA | AI SOC Pure Play, Threat Hunting | Plug and Play | United States | |
| DeepWatch | MDR | AI SOC Capability | Plug and Play | United States | |
| Detections AI | Detection Engineering | SecOps Resilience, AI SOC Capability | Build it Yourself | United States | |
| Digital Hands | MDR | AI SOC Capability, Threat Hunting, ITDR, Data Ingestion & Processing, SOAR, Data Analytics / UABA, Detection Engineering, SIEM, Threat Intel | Plug and Play & Customizable | Tampa, Florida, United States | 2001 |
| dndx AI | Automation | AI SOC Pure Play, MDR | Plug and Play & Customizable | İstanbul, Turkey | 2022 |
| Dropzone AI | AI SOC Pure Play | Threat Hunting, Threat Intel | Plug and Play | Seattle, United States | 2023 |
| Elastic | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, AI Agent Builder, AI SOC Capability, Data Ingestion & Processing, Threat Hunting, Threat Intel | Plug and Play & Customizable | United States | |
| Embed Security | AI SOC Pure Play | Plug and Play | United States | 2024 | |
| Exabeam | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, AI SOC Capability | Build it Yourself | United States | |
| Exaforce | AI SOC Pure Play | SIEM, Data Analytics / UABA, Detection Engineering, SOAR, Threat Hunting, Threat Intel, MDR, Data Ingestion & Processing | Plug and Play | San Jose, CA | 2023 |
| Expel | MDR | AI SOC Capability, Threat Hunting, CIRM / Case Management | Plug and Play | Herndon, United States | 2016 |
| EXTRAHOP | NDR | Threat Hunting, Data Ingestion & Processing, Data Analytics / UABA, AI SOC Capability | Plug and Play & Customizable | seattle, N/A, United States | 2007 |
| Fig | SecOps Resilience | AI SOC Capability, Detection Engineering | Plug and Play | New York, United States | 2025 |
| Fortinet | AI SOC Capability | SOAR, SIEM, MDR, Data Analytics / UABA, Detection Engineering, Data Ingestion & Processing | Plug and Play & Customizable | United States | |
| Ghost Security | AI Agent Builder | AI SOC Capability | Plug and Play & Customizable | United States | 2022 |
| Google SecOps | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, Threat Intel, AI SOC Capability, Data Ingestion & Processing | Plug and Play & Customizable | United States | |
| GuarDDoG AI | Data Analytics / UABA | AI SOC Pure Play | Plug and Play | United States | |
| Gurucul | SIEM | Data Analytics / UABA, SOAR, AI SOC Capability | Plug and Play | United States | |
| HarkX | AI SOC Pure Play | Plug and Play | India | ||
| Hawkeye AI | AI SOC Capability | Data Analytics / UABA, SOAR, Threat Hunting, Threat Intel, Detection Engineering, Data Ingestion & Processing | Plug and Play & Customizable | United Arab Emirates | |
| Huntbase | Threat Hunting | AI SOC Pure Play | United States | ||
| Hunters | AI SOC Capability | SIEM, Data Analytics / UABA | Plug and Play | Israel | |
| HydraNexus | Threat Intel | AI SOC Capability | Plug and Play | Naperville, Illinois, United States | 2016 |
| Imperum | SOAR | DFIR / Forensics, AI SOC Pure Play, AI Agent Builder | Plug and Play & Customizable | Netherlands | 2023 |
| Intezer | AI SOC Capability | Threat Hunting, DFIR / Forensics, Threat Intel, AI Agent Builder, Automation | Plug and Play & Customizable | New York, United States | 2015 |
| Jazz | Insider Threat / DLP | AI SOC Capability | Plug and Play | New York, United States | 2024 |
| Joon | AI Agent Builder | AI SOC Pure Play | Plug and Play | United States | |
| Kai Security | Automation | AI Agent Builder, AI SOC Pure Play | Plug and Play | United States | |
| Kenzo Security | AI SOC Pure Play | Plug and Play | United States | ||
| Kindo | Automation | AI Agent Builder | Build it Yourself | United States | |
| Kyberis | Threat Intel | Plug and Play & Customizable | San Francisco, CA, United States | 2026 | |
| Legion Security | AI SOC Pure Play | Insider Threat / DLP, MDR, Threat Hunting, Threat Intel, SOAR | Plug and Play & Customizable | United States | |
| LimaCharlie | SIEM | AI Agent Builder, AI SOC Capability, DFIR / Forensics, Threat Hunting, Detection Engineering, SOAR, Data Ingestion & Processing | Build it Yourself | Covina, United States | 2018 |
| Louie AI | Data Analytics / UABA | OSS, AI Agent Builder, AI SOC Pure Play | Build it Yourself | United States | |
| Mars Security | Detection Engineering | AI SOC Pure Play, Threat Hunting | Plug and Play & Customizable | Tel Aviv, Israel | 2025 |
| Mate Security | AI SOC Pure Play | Automation, AI Agent Builder | Plug and Play | Israel | |
| Mave | AI SOC Pure Play | Plug and Play | Israel | ||
| Method Security | AI SOC Pure Play | Plug and Play | United States | ||
| Microsoft Sentinel | AI SOC Capability | Data Analytics / UABA, SOAR, SIEM, Data Ingestion & Processing | Build it Yourself | United States | |
| Mindflow | Automation | AI Agent Builder, AI SOC Capability, Threat Intel | Plug and Play & Customizable | France | |
| Mitiga | AI SOC Capability | Data Analytics / UABA | Plug and Play | New York, US | 2020 |
| Nebulock | Threat Hunting | AI SOC Capability, Detection Engineering | Plug and Play & Customizable | Boston, MA, United States | 2024 |
| Orryx AI | AI SOC Pure Play | Automation, Threat Hunting, Threat Intel, CIRM / Case Management, MDR, Detection Engineering | Plug and Play | Hamala, Bahrain | 2022 |
| PaloAlto | AI Agent Builder | AI SOC Capability, Data Analytics / UABA, Detection Engineering, SIEM, SOAR, Threat Intel, MDR | Build it Yourself | United States | |
| Panther | SIEM | Detection Engineering, Data Analytics / UABA, AI SOC Capability, Threat Intel, Threat Hunting, Data Ingestion & Processing | Plug and Play & Customizable | United States | 2018 |
| Perpetual Systems | SIEM | AI SOC Capability, CIRM / Case Management, Data Ingestion & Processing, Detection Engineering, Threat Hunting, Data Analytics / UABA | Plug and Play & Customizable | Austin, TX, United States | 2024 |
| PRE Security | Automation | AI SOC Pure Play | Plug and Play | United States | |
| Priam Cyber AI | AI SOC Pure Play | Plug and Play & Customizable | London, United Kingdom | 2023 | |
| Prophet Security | Detection Engineering | Threat Hunting, AI SOC Pure Play, Threat Intel | Plug and Play | United States | 2023 |
| Qevlar | AI SOC Pure Play | Plug and Play | United Kingdom | ||
| Query | Data Analytics / UABA | Data Ingestion & Processing, SIEM | Plug and Play & Customizable | United States | |
| Radiant Security | AI SOC Pure Play | Plug and Play | United States | ||
| ReliaQuest | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, MDR, AI SOC Capability | Plug and Play | United States | |
| Rilian | AI SOC Pure Play | Plug and Play | United States | ||
| RunReveal | SIEM | Detection Engineering, Data Analytics / UABA, AI Agent Builder, Data Ingestion & Processing, Threat Hunting, SecOps Resilience, AI SOC Capability | Plug and Play | United States | |
| Scanner | SIEM | Data Ingestion & Processing, AI SOC Capability, Detection Engineering, Data Analytics / UABA | Build it Yourself | United States | |
| SecsphereSOC | SOAR | AI SOC Pure Play, SIEM | Plug and Play & Customizable | India | |
| Seculyze | AI SOC Capability | Data Analytics / UABA | Plug and Play | Copenhagen, Denmark | 2021 |
| Securaa | AI SOC Capability | SOAR, Threat Intel | Plug and Play & Customizable | Mysuru, India | 2017 |
| SecureVisio | SIEM | AI SOC Capability, Data Analytics / UABA, SOAR, Detection Engineering, Data Ingestion & Processing, Threat Hunting, Threat Intel | Build it Yourself | Warsaw, Poland | 2010 |
| Sekoia | SIEM | Data Analytics / UABA, SecOps Resilience, Threat Intel, AI SOC Capability, SOAR, Detection Engineering, Data Ingestion & Processing, Threat Hunting | Plug and Play | Rennes, France | 2022 |
| SentinelOne | SIEM | Detection Engineering, Data Analytics / UABA, Automation, Threat Hunting, MDR, DFIR / Forensics, Threat Intel, AI SOC Capability | Plug and Play | United States | |
| ServiceNow | SOAR | AI SOC Capability, Threat Intel, ITDR | Build it Yourself | Santa Clara, United States | 2004 |
| Sevii | AI SOC Pure Play | Plug and Play | United States | ||
| Sharelock | Insider Threat / DLP | Plug and Play | Italy | ||
| Shuffle | SOAR | AI SOC Capability, OSS | Build it Yourself | United States | |
| Simbian | Threat Hunting | AI SOC Pure Play, Detection Engineering | Plug and Play & Customizable | India | |
| SIRP | CIRM / Case Management | AI SOC Capability, OSS | Plug and Play & Customizable | United States | |
| Sleuth Kit Labs | OSS | SOAR, DFIR / Forensics, AI SOC Capability | Build it Yourself | United States | |
| SOC Prime | SIEM | Detection Engineering, Data Analytics / UABA, AI SOC Pure Play | Plug and Play & Customizable | United States | |
| SOCAI | AI SOC Pure Play | Plug and Play | Spain | ||
| Socjedi AI | AI SOC Pure Play | Plug and Play | United States | ||
| SOCNova | AI SOC Pure Play | CIRM / Case Management | Plug and Play | Turkey | |
| Sola | AI Agent Builder | AI SOC Capability, Data Analytics / UABA | Plug and Play & Customizable | United States | 2024 |
| Sophos | Data Ingestion & Processing | Detection Engineering, DFIR / Forensics, ITDR, MDR, SIEM, SOAR, Threat Hunting, Threat Intel, AI SOC Capability | Oxford, Oxfordshire, United Kingdom | 1985 | |
| Spacewalk AI | AI SOC Pure Play | CIRM / Case Management, DFIR / Forensics, Insider Threat / DLP, Threat Hunting | Plug and Play & Customizable | Irvine, United States | 2024 |
| Spectrum Security | Detection Engineering | SecOps Resilience | Plug and Play | San Francisco | 2025 |
| Spharaka | Data Analytics / UABA | SIEM, AI SOC Pure Play, SOAR, Threat Hunting, Threat Intel, ITDR | Plug and Play & Customizable | Hyderabad, India | |
| Splunk | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, AI SOC Capability | Plug and Play | United States | |
| Stellar Cyber | SIEM | Data Analytics / UABA, CIRM / Case Management, AI SOC Capability | Plug and Play | United States | |
| Strike48 | AI SOC Pure Play | SOAR, AI Agent Builder | Plug and Play & Customizable | United States | 2026 |
| StrikeReady | SIEM | Data Ingestion & Processing, DFIR / Forensics, Detection Engineering, SOAR, SecOps Resilience, Threat Hunting, Threat Intel, AI SOC Capability | Plug and Play | United States | |
| Sumo Logic | SIEM | Detection Engineering, Data Analytics / UABA, SOAR, AI SOC Capability | Plug and Play | United States | 2010 |
| Swimlane | SOAR | AI Agent Builder, AI SOC Capability, Threat Hunting | Plug and Play & Customizable | United States | |
| TandemTrace | AI SOC Pure Play | Plug and Play | Spain | ||
| Tenacium DC | SecOps Resilience | Data Analytics / UABA, AI SOC Capability, ITDR, SOAR, Data Ingestion & Processing | Plug and Play & Customizable | London, United Kingdom | 2021 |
| Tencyle | AI SOC Pure Play | Threat Hunting, SOAR, Threat Intel | Plug and Play | Tel Aviv, Israel | |
| Tenex AI | MDR | AI SOC Pure Play | Plug and Play | United States | |
| Tenzir | Data Ingestion & Processing | Data Analytics / UABA | Plug and Play & Customizable | Hamburg, Hamburg, Germany | 2017 |
| ThreatDefence | MDR | AI SOC Capability, Data Ingestion & Processing, Threat Hunting, SIEM | Plug and Play | Australia | |
| ThreatLens | AI SOC Pure Play | Data Ingestion & Processing, Automation | Plug and Play | United Arab Emirates | |
| Tier4 AI | MDR | AI SOC Pure Play | Plug and Play | Miami, United States | |
| Tines | SOAR | AI SOC Capability, AI Agent Builder | Build it Yourself | Ireland | 2018 |
| Torq | AI SOC Capability | SOAR, Threat Hunting, AI Agent Builder | Plug and Play & Customizable | New York, United States | 2020 |
| TraceCat | SOAR | OSS, AI SOC Capability, AI Agent Builder | Build it Yourself | New York, United States | 2024 |
| Treat | Threat Intel | Data Analytics / UABA, AI Agent Builder, AI SOC Capability, CIRM / Case Management | Plug and Play & Customizable | Tel-Aviv, Israel | 2024 |
| TrenchSecurity | SIEM | Data Ingestion & Processing, SOAR, AI SOC Pure Play | Plug and Play | Princeton, United States | |
| TrendAI | SIEM | AI SOC Capability, ITDR, DFIR / Forensics, Detection Engineering, SOAR, Data Analytics / UABA, Data Ingestion & Processing, Threat Hunting, Threat Intel | Plug and Play & Customizable | Tokyo, Japan | 1988 |
| Tuskira | Detection Engineering | Threat Hunting, AI SOC Pure Play | Plug and Play | United States | |
| UnderDefense | MDR | Detection Engineering, Threat Hunting, Threat Intel, ITDR, SIEM, AI SOC Capability, SOAR | Plug and Play & Customizable | New York, United States | 2017 |
| Vega | SIEM | Detection Engineering, Data Analytics / UABA, SecOps Resilience, AI SOC Capability | Plug and Play | Israel | |
| Vigil | OSS | AI SOC Pure Play, AI Agent Builder | Plug and Play | United States | 2026 |
| Voidum AB | SIEM | Threat Hunting, Threat Intel, SOAR, ITDR, Detection Engineering, Data Analytics / UABA, AI Agent Builder, AI SOC Capability, Data Ingestion & Processing, NDR | Plug and Play & Customizable | Stockholm, Sweden | 2026 |
| Wirespeed | MDR | SIEM, AI SOC Pure Play, ITDR | Plug and Play | San Francisco, United States | 2024 |
| Wraithwatch | AI SOC Pure Play | Data Analytics / UABA | Plug and Play | United States | |
| Zaun | SIEM | Detection Engineering, Data Analytics / UABA, Automation, AI SOC Pure Play | Plug and Play | San Francisco, United States | 2024 |
| Zscaler | NDR | AI SOC Capability, Data Analytics / UABA, Insider Threat / DLP, MDR | Plug and Play & Customizable | United States | |
| Zynap | AI SOC Pure Play | Automation, Threat Intel | Plug and Play & Customizable | Barcelona, Spain |