Better together: How Intezer and Torq are powering the autonomous, AI SOC [Video]

Zev Schonberg

We know the drill. Too many alerts, not enough time. Threats slipping through. SOC analysts losing their minds. It’s brutal.

But all that pain makes the agent-to-agent collaboration between Intezer and Torq so much more delicious!

In this Torq AMP’d session you’ll enjoy the fast-paced and super informative back-and-forth with Mitchem Boles, field CISO at Intezer talking to Bob Boyle and Brittney Wittfeldt of Torq fame, all about our partnership and with a full technical deep-dive!

Hope you watched the full and super fun video for all the details, but if not, here is a nice synopsis of how the Intezer+Torq magic happens, step by step:

  1. Intezer triages everything
    AI agents emulate elite human analysts, running forensic-grade triage and investigation on every single alert.
  2. Only true positives move forward
    Fully triaged, verified alerts are escalated. Noise stays behind (typically only 4% of alerts are escalated with 98% accuracy).
  3. Agent-to-agent handoff
    Intezer kicks those true positives over to Socrates, Torq’s agentic AI analyst inside HyperSOC.
  4. Case creation & enrichment
    Socrates builds a complete case, mapping observables, IOCs, and all context, then enriching with intel and quick-action buttons.
  5. Autonomous runbook execution
    Socrates translates Intezer’s recommendations into a step-by-step remediation plan, then executes it end-to-end.

The result: true Autonomous SOC. Detection, triage, and response handled at machine speed, freeing humans to focus on what really matters.

Learn more about the Intezer and Torq partnership.

Zev Schonberg

Zev Schonberg is a product marketing manager with years of experience in deep tech.

As a lead contributor at Intezer, Zev authors research-driven analysis and thought leadership that explores how modern security operations centers can better detect, investigate, and respond to threats at scale.

In this article

Share this article
Recommended Blogs
5MIN READ

A Gartner take on the MDR market in 2026

For CISOs navigating the AI era, the question is no longer whether AI will change the SOC. It is whether the current service model is the right vehicle for that change.
27MIN READ

OrBit (Re)turns: Tracking an open-source Linux rootkit across four years of forks and deployments

Explore how OrBit, a two-stage malware, has changed over the last 4 years and why it matters for defenders.
blog cover for when to use generic AI for your SOC
7MIN READ

Generalist AI for your SOC: When and where to use it

Many security leader are asking the same question right now. We already pay for Microsoft Copilot, ChatGPT Enterprise, or Claude. Why buy anything else? Here's what you need to know.