Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Try Sumo Logic in minutes: see SIEM and Dojo AI agents in action

You already know the feeling. An alert fires, and you’re the one digging through logs to figure out if it matters. A query takes three tries to get right. A tool demo looked great, but you still cannot picture it running against your own environment. Before dedicating too much of your over-committed schedule to a proof of concept, you want to know one thing: does this actually work the way they say it does?

Sumo Logic MCP server: bringing SIEM and log data into Claude and other AI clients

More security and operations work now happens inside an AI client instead of a dedicated console. That shift creates a gap for any platform that isn’t part of the conversation. Every time an analyst needs to triage an insight or check a log, they have to leave the AI client and go open a different tool. Sumo Logic closes that gap with a Model Context Protocol (MCP) server.

How the SOC Analyst Agent cuts investigation time from four hours to fourteen minutes

MFA fatigue campaigns work on a simple bet: eventually, someone taps “approve” just to make the notifications stop. It paid off. The attacker was in. The first move was quiet — deactivate SMS authentication, a small settings change easy to miss on a busy queue, and exactly the kind of thing that buys room to work without tripping an alarm. Then came the real work: AWS credentials pulled from one system, SSH keys from another, and a slow and methodical pull of internal source code.

Agentic First Security -- Customer Brown Bag - August 20th, 2026

Join Jeremy Powell, CISO of Sumo Logic, to learn how AI-powered agents are reshaping modern security operations. Discover the key principles, governance, and best practices for building an agentic security program that enhances analyst productivity, accelerates threat response, and strengthens organizational resilience.

Think like a criminal: How to land your first security role

On this episode of Masters of Data, we tackle breaking into cybersecurity. David shares his journey from welder to AppSec manager, proving that career pivots are tough but doable. We explore entry points like SOC analyst, GRC, and application security roles, noting that penetration testing gigs are fiercely competitive. AI is reshaping the landscape, making technical skills more accessible while amplifying the need for critical thinking. Networking beats degrees. Side projects and hands-on certifications matter more than credentials.

Navigating cybersecurity in the airline industry: Balancing legacy systems and innovation

Commercial airlines run some of the world’s most complex technology environments. Every day, they balance decades-old aircraft systems with modern cloud platforms, connected devices, global payment networks, and strict regulatory requirements, all while ensuring flights depart safely and on time. For security teams, that means protecting an enormous attack surface without disrupting operations.

Dojo AI: Agentic security and cloud operations powered by AI-ready telemetry

You’re collecting more telemetry than ever, but chances are it hasn’t made your job easier. Fragmented data, disconnected tools, and manual investigations mean more noise, slower response times, and higher operational costs. The promise of AI is that it will solve it, but in most cases, you just end up trading noise for expensive hallucinations. Point an LLM at raw, unorganized log storage, and you get an assistant that burns through credits to produce generic, unreliable answers.

Mobot: Sumo Logic's natural language AI for SOC investigations

Mobot is Sumo Logic's conversational interface designed to streamline investigations for SOC analysts and observability users. Ask a question in plain English and get a full SOC analyst-style investigation without writing a query. Inside an Insight, Mobot pulls context like the C2IP, ransomware hash, host, and exfiltration data automatically. A six-word question, "anyone else hit by the campaign?", triggers a full investigation across every mailbox and endpoint tied to that attack, with a link to the raw query behind every answer.

Sumo Logic's SOC Analyst Agent: Automated triage for every tier one alert

Sumo Logic's SOC Analyst Agent automatically triages every insight within the SIEM, replacing the manual work that used to fall to a tier-one analyst. Using Sumo Logic's own SOC as customer zero, we found that 100% of tier-one alerts are triaged end-to-end by the agent, resulting in a 89% reduction in median time to triage, from 28 minutes to 3 minutes. In this demo, you’ll see.

Black Hat FOMO? Dojo AI Demo

On this episode of Masters of Data, we take you inside the Dojo AI demo we're bringing to the show floor at Black Hat. We walk through the SOC Analyst Agent, Mobot, and MCP back to back. SOC Analyst Agent triages every tier one alert down to the one that actually matters, and Mobot picks up from there, running the investigation in plain English to track down other phishing victims and lateral movement. We also show how MCP pulls that same insight into Claude or Slack. SOC leads tired of alert fatigue and analyst burnout will want the numbers here: 100% of tier one alerts triaged automatically, and 25 hours a week back per person.