Organizations are increasingly turning to agentic artificial intelligence (AI) to address the growing complexity and volume of cybersecurity threats. Transurban, a global roadway operator, has implemented agentic AI models to automate the triaging and scoring of security alerts, significantly improving the efficiency and accuracy of their security operations center (SOC). This approach allows SOC analysts to focus on higher-priority incidents while AI handles the initial assessment of the majority of alerts, addressing the challenge of overwhelming alert volumes and reducing the risk of missed or mishandled incidents.
Industry discussions highlight that the adoption of AI-driven tools is not only a response to technical challenges but also to rising expectations from organizational leadership. CISOs are under increasing pressure from boards to deliver clear, business-friendly metrics and maintain readiness despite limited resources and frequent incidents. The integration of agentic AI into cyber defense strategies is seen as a critical innovation to bridge the gap between operational demands and leadership expectations, helping organizations manage both technical and organizational risks more effectively.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
5 events from the most recent confirmed update back to the earliest known activity.
Cybersecurity startup 7AI raised a record $130 million Series A round, underscoring investor interest in AI-driven security tools. The reference does not specify an earlier date for the funding event.
Zafran Security launched an agentic exposure management platform following a $60 million Series C round. The launch was cited as part of the industry's shift toward agentic AI and continuous threat and exposure management.
AWS introduced a Security Agent designed for automated, context-aware penetration testing, reflecting broader adoption of agentic AI in security operations. The reference does not provide a more specific event date than the publication timeframe.
After the September deployment, Transurban said the system reduced alert triage times by 60%, achieved 100% incident coverage, and kept false positives below 3%. The company also said it plans to expand the platform with external threat intelligence and eventually automated containment capabilities.
Transurban implemented an agentic AI system in September 2025 to help its security operations center automate alert triage and incident scoring. The deployment used Anthropic Claude integrated with Splunk SIEM, ServiceNow, and AWS Bedrock, with human analysts retaining final control over ticket closure.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.