Splunk expands AI security workforce to enable autonomous defence at machine speed
To combat the growing threat of AI-led attacks Splunk is
expanding its Agentic SOC Workforce to enable organisations to defend
autonomously, block attacks at the source and continuously mitigate critical
exposure.
At its .conf26 event in Denver, the Cisco company announced that
it is expanding its Agentic SOC Workforce with a set of new purpose-built
skills, across detection, investigation, response, and governance
It is intended to give companies a way to move from largely
human-led, reactive security operations to AI-driven, increasingly autonomous
defence. Splunk said by expanding Workforce it will enable security teams to
identify and contain threats at machine speed rather than waiting for analysts
to work through alerts manually.
For companies, this means faster threat detection, quicker
containment and a smaller blast radius when attacks occur. They
can also use AI agents to proactively identify vulnerabilities and prioritise
the exposures that pose the greatest business risk.
Importantly, the approach keeps humans in control through
approvals, policies, governance and auditability. Companies therefore gain
greater automation without surrendering oversight.
Splunk said the AI threat landscape was on track to outpace the
human-led defence model.
“Never has it been more critical for organisations to be able to
understand and address potential exposure and vulnerabilities across their
entire IT landscape from the infrastructure to the applications.
“Stopping these AI-era threats requires an agentic SOC capable
of reasoning and defending at machine speed without compromising the data
sovereignty and human governance enterprise leaders demand.”




























Leave A Comment