Eight agents. One graph. Humans stay in command.
Netgraph ships a full agentic SOC bench — L1 Triage, L2 Investigator, L3, RCA, Threat Analyst, Threat Hunter, Forensic and SOC Manager — plus Phish-Triage, a SOAR agent for response reasoning, and Frontal, the app-wide assistant. Every agent reasons over the security knowledge graph, so answers are anchored in real edges — not model imagination — and every risky action stops at a durable human-in-the-loop approval gate before anything touches your estate.
What is an Agentic AI SOC?
An agentic AI SOC replaces the chatbot-on-a-console pattern with a bench of specialised AI agents that actually work the queue: L1 triages every alert autonomously, L2 investigates with a full entity subgraph, RCA finds root cause and drafts the detections that should have fired, and hunter, forensic, and manager agents cover the rest of the workflow. Netgraph's agents are graph-grounded — every answer cites real nodes and edges, not hallucinated entities — and every consequential action waits for durable human-in-the-loop approval.
What ships in the module
A SOC bench that works the queue, not a chatbot.
Autonomy with receipts
Every verdict shows its work. Every action waits for a human where it should.
The L1 autopilot doesn't just close alerts — it records the graph evidence behind each verdict. Escalations arrive in the L2 queue with a case already open and a reasoning trace attached. And when any agent reaches for a skill that changes the world, the request lands in the HITL queue — persisted, reviewable, and executed exactly as approved.
- Verdicts cite graph edges — the alert, the entity, the history that justified the call.
- Malicious / suspicious → L2 queue + case; benign → auto-close with audit.
- Approvals are durable — they survive restarts and re-invoke the exact tool call.
- Full prompt & tool traces in the AI LLM Observability console.
Functionality map
Module functions at a glance
| Function | What it does | Where it lives |
|---|---|---|
| Agent Console | Watch agents work — reasoning traces, tool calls, verdicts, case write-backs | Operations ▸ Agentic SOC ▸ Agent Console |
| Agent Catalog | The full bench — 8 SOC agents plus Phish-Triage and the SOAR agent, with roles and skills | Operations ▸ Agentic SOC ▸ Agent Catalog |
| Escalation & HITL Queue | L2 escalations and pending human approvals in one working queue | Operations ▸ Agentic SOC ▸ Escalation & HITL Queue |
| HITL Approvals Runner | Approve or reject persisted actions — approve re-invokes the exact tool, fully audited | Operations ▸ Agentic SOC ▸ HITL Approvals Runner |
| Skills Library | All 75 skills with side-effect class and integration gating status | Operations ▸ Agentic SOC ▸ Skills Library |
| Frontal assistant | NQL generation, summaries, detection and dashboard generate / test / deploy — inline, everywhere | App-wide assistant |
| LLM observability | Full prompt & tool trace for every agent run; configurable LLM provider | AI LLM Observability console |
| Agentic AI dashboard | Autopilot throughput, verdict mix and agent activity at a glance | Dashboards ▸ Agentic AI |
Common questions
Agentic AI SOC — asked and answered
How does Netgraph prevent AI hallucination in investigations?+
Graph-grounded retrieval: agents can only assert facts anchored to actual nodes and edges on the security knowledge graph, and every verdict cites the alert, entity, and history that justified it. Full prompt and tool traces land in the LLM Observability console for review.
Which LLMs does the agentic SOC use?+
Bring your own provider — the platform is LLM-agnostic, and a heuristic fallback keeps L1 triage functioning even with no LLM configured, which matters for air-gapped deployments.
Do the agents take actions autonomously?+
Triage and investigation, yes; consequences, no. The 75-skill library is policy-gated with single, dual, or auto approval per skill class, and approvals persist in a durable queue that survives restarts and re-invokes the exact reviewed action.
See it live
Give the autopilot your alert queue. Keep your hand on the approvals.
Works with everything on the graph
NextGen SIEM
The central alerts table every detection plane writes to is the L1 autopilot's inbox — and RCA drafts detections back into it.
Explore→Threat Intelligence
IOC-reputation skills and enrichment draw on the TIP — and confirmed indicators flow back out through detection orchestration.
Explore→Cloud Security
Cloud detections land in the same central queue — the autopilot triages a CloudTrail-class finding exactly like an endpoint one.
Explore→