Radware enhances AI SOC Xpert for faster, broader threat defence
Radware has expanded the global reach and capabilities of its AI SOC Xpert solution, aiming to strengthen Security Operations Centres (SOCs) worldwide with advanced, AI-driven cyber defence.
AI SOC Xpert was initially launched with a focus on Cloud DDoS Protection, aiming to deploy artificial intelligence more comprehensively across Security Operations Centre (SOC) environments to enhance incident investigation, streamline the remediation process, and bolster defences.
The latest update introduces agentic AI capabilities designed to provide SOC teams with broad coverage, deeper AI-driven guidance, and measurable efficiency improvements. These advancements are intended to support more effective investigation, faster remediation, and improved prevention across multiple attack vectors.
New coverage
Powered by Radware's EPIC-AI, the updated AI SOC Xpert platform supplies root cause analysis, timeline, and incident context within minutes following both DDoS and bot attacks.
According to Radware, this information is delivered to analysts promptly, offering the clarity needed to understand incidents and respond efficiently, either automatically or at scale.
Previously, analysts often needed to correlate incidents manually or toggle between multiple tools. The new release of AI SOC Xpert introduces dashboards dedicated to Application Protection and On-Premise DDoS Protection, alongside upgrades to Cloud DDoS Protection. This unified dashboard is intended to reduce investigation fatigue and to help teams act more swiftly under pressure, ultimately aiming to lower mean time to resolution (MTTR).
Alongside attack remediation, the solution can be employed during attack prevention phases. By profiling peacetime traffic, teams can proactively configure filters before an attack occurs. This enables better preparation and supports a positive security model with improved enforcement accuracy during attacks through recommended, proactive tuning and protection refinement.
Management and efficiency
Enhancements to AI SOC Xpert for Application Protection include AI-driven incident remediation for bot attacks, focusing on improving root cause analysis and reducing MTTR. Visual dashboards highlight anomalies, incidents, and attack patterns, while offering agentic AI-guided recommendations.
The system also features smarter, ongoing policy optimisation using AI-driven recommendations. This reduces the risk of false positives and simplifies the management of Web Application Firewalls (WAF). Automated workflows and context-aware recommendations help teams to differentiate between legitimate automation and malicious bots in real-time.
For DDoS defence, AI SOC Xpert now supports on-premise, hybrid, and cloud-based deployments. The updated solution integrates a new dashboard into Radware's DefencePro X platform and Cyber Controller for centralised monitoring and control. Peacetime traffic profiling is also leveraged to facilitate proactive filtering before attacks commence. The remediation process can be executed in real-time via one-click enforcement, irrespective of whether the solution is deployed inline or out-of-path.
Additional features include agentic AI-powered forensic storytelling, anomaly detection, and structured incident summaries. Continuous monitoring of vectors, packet sizes, and traffic dynamics aim to support more rapid detection and mitigation.
Industry perspective
"While the growing ecosystem of agentic capabilities provides vast opportunities for businesses, as AI systems gain autonomy the attack surface expands dramatically," said Gabi Malka, Chief Operating Officer, Radware. "
Analysts have more to track and more complex root causes to analyze which contributes to down time as they seek to repair. Radware is extending AI SOC Xpert to further protect applications in an AI agentic world. Think of it as an AI agent for the SOC, reducing MTTR by up to twenty times."
Radware states that these enhancements are designed to assist customers in safeguarding their brands while also reducing the resources required to manage DDoS and application security incidents.
The successive updates to AI SOC Xpert reflect ongoing industry trends that prioritise automation and rapid remediation to mitigate increasingly sophisticated cyber threats targeting both cloud and on-premise environments.