Put agentic AI to work: Real-world defense against threats
Attackers are using AI to compress timelines from hours to minutes. Most SOCs, and most security platforms, weren’t built for that speed.
Join Elastic Security product and research experts for a look at how modern security teams can detect, investigate, and respond faster using agentic AI.
You’ll learn how to:
- Apply Elastic Security Labs threat research to real-world detection and response workflows
- Use autonomous agents to accelerate triage, enrichment, investigation, and staged response planning
- Use conversational detection engineering to speed up rule creation and investigations
- Extend security operations directly into tools like Claude, Cursor, GitHub Copilot, and more
You’ll leave better equipped to reduce investigation time, keep analysts focused on decision-making, and modernize security operations for machine-speed threats without removing humans from the loop.
Speakers:
- James Spiteri, Senior Director, Product Management, Security, Elastic
- Andrew Pease, Elastic Security Labs Tech Lead
- Daniel Miessler, Founder, Unsupervised Learning
00:00 Introduction
00:30 Meet the speakers
02:00 The agentic SOC: market problem
03:00 Threat research: today's landscape
05:25 Threat research: Obsidian plugin campaign
08:15 Threat research: Axios breach
11:42 Discussion with Daniel Miessler: detecting AI-generated threats
14:35 Live demo: Elastic Security platform overview
18:00 Live demo: the three-hour window
19:18 Live demo: autonomous triage and investigation
22:11 Live demo: agentic response and workflows
24:30 Q&A: how does the analyst see the AI's reasoning?
28:50 Customer story: Chainguard
36:08 Innovations: the agentic SOC in Claude, Cursor & GitHub Copilot
41:15 Discussion with Daniel Miessler
42:45 Closing and free trial CTA
Additional resources:
- Free Trial: https://cloud.elastic.co/serverless-registration
- Obsidian campaign: https://www.elastic.co/security-labs/phantom-in-the-vault
- Axios RAT: https://www.elastic.co/security-labs/axios-one-rat-to-rule-them-all
- Axios supply chain detections: https://www.elastic.co/security-labs/axios-supply-chain-compromise-detections
- Axios supply chain attack: https://www.elastic.co/security-labs/how-we-caught-the-axios-supply-chain-attack
- Blockchain: https://www.elastic.co/security-labs/blockchain-c2-phantompulse-rat-sinkhole
- Open source supply chain monitor tool: https://github.com/elastic/supply-chain-monitor