Average Ratings 1 Rating
Average Ratings 0 Ratings
Description
Intezer AI SOC combines multiple AI models, both proprietary and commercial, with deterministic, forensic methods such as endpoint analysis, reverse engineering, network artifact forensics, sandboxing, static analysis and more. Together, this approach mirrors the triage process that expert, human analysts follow, maintaining high accuracy at unmatched speed and scale.
Our native integrations are built for the depth and rigor of the triage and forensic investigation process, providing robust, full-featured connections between tools. This allows Intezer to ingest alerts from all major sources within seconds, gather richer evidence, and deliver deeper context in every analysis. Remediation actions can be easily automated with explicit human approval.
You get:
- Accurate, fast triage, available 24/7/365: Regardless of alert volume, Intezer delivers consistent, objective triage free from human error or subjective judgment.
- Forensics built-in: Intezer AI SOC incorporates advanced forensic capabilities, from automated evidence collection via EDR/SIEM/IDP to memory analysis, reverse engineering, network artifact forensics, and sandboxing.
- Humans in the loop: Intezer maintains true human-in-the-loop oversight with transparent triage logic, clear explanations, and the ability for analysts to review or override escalated alerts.
- Scalable with predictable pricing: By combining deterministic analysis with efficient AI models, most alerts are triaged without requiring resource-intensive, expensive LLM processing.
Description
THOR stands out as the most advanced and adaptable tool available for compromise assessments. When responding to incidents, teams frequently encounter a collection of compromised devices along with a larger array of potentially affected systems, making the manual examination of numerous forensic images a daunting task. With THOR, the process of forensic analysis is accelerated thanks to its impressive arsenal of over 12,000 meticulously crafted YARA signatures, 400 Sigma rules, a variety of anomaly detection protocols, and countless indicators of compromise (IOCs). This tool is designed to emphasize suspicious activities, alleviate the burden on analysts, and expedite the forensic examination process during critical moments when timely results are vital. By concentrating on areas often overlooked by traditional antivirus solutions, THOR employs an extensive signature library that encompasses a multitude of YARA and Sigma rules, IOCs, and checks for rootkits and anomalies, effectively addressing a wide range of threats. Furthermore, THOR not only identifies backdoors and tools leveraged by attackers but also captures outputs, temporary files, modifications to system configurations, and other remnants of nefarious actions, ensuring a thorough understanding of the incident landscape. The comprehensive nature of THOR makes it an invaluable asset in the realm of cybersecurity.
API Access
Has API
Yes
API Access
Has API
No
Screenshots View All
No images available
Integrations
Abnormal AI
Yes
Blink
Yes
Cisco Duo
Yes
Cloudflare
Yes
Cortex XSOAR
Yes
Filigran
Yes
Google Security Operations (SecOps)
Yes
IBM QRadar EDR
Yes
JumpCloud
Yes
Microsoft 365
Yes
Integrations
Abnormal AI
No
Blink
No
Cisco Duo
No
Cloudflare
No
Cortex XSOAR
No
Filigran
No
Google Security Operations (SecOps)
No
IBM QRadar EDR
No
JumpCloud
No
Microsoft 365
No
Pricing Details
Priced by endpoints (keep your costs consistent, even if your alert volume increases).
Free Trial
Yes
Free Version
No
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
No
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Intezer
Founded
2015
Country
United States
Website
www.intezer.com
Vendor Details
Company Name
Nextron Systems
Founded
2017
Country
Germany
Website
www.nextron-systems.com/thor/
Product Features
Incident Response
Attack Behavior Analytics
Yes
Automated Remediation
Yes
Compliance Reporting
No
Forensic Data Retention
No
Incident Alerting
No
Incident Database
No
Incident Logs
No
Incident Reporting
No
Privacy Breach Reporting
No
SIEM Data Ingestion / Correlation
No
SLA Tracking / Management
No
Security Orchestration
No
Threat Intelligence
Yes
Timeline Analysis
No
Workflow Automation
No
Workflow Management
No
Product Features
Incident Response
Attack Behavior Analytics
No
Automated Remediation
No
Compliance Reporting
No
Forensic Data Retention
No
Incident Alerting
No
Incident Database
No
Incident Logs
No
Incident Reporting
No
Privacy Breach Reporting
No
SIEM Data Ingestion / Correlation
No
SLA Tracking / Management
No
Security Orchestration
No
Threat Intelligence
No
Timeline Analysis
No
Workflow Automation
No
Workflow Management
No