Close Menu
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

Cybersecurity Weekly: Major Breaches, Zero-Days, and Exploits

February 22, 2026

Revolutionizing ICS Security: The Power of OT Deception in Active Defense

February 22, 2026

Redefining Productivity: Why AI Should Replace Workflows

February 22, 2026
Facebook X (Twitter) Instagram
The CISO Brief
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance
Home » Ontinue First to Launch Agentic AI-Powered Incident Investigations
Uncategorized

Ontinue First to Launch Agentic AI-Powered Incident Investigations

Staff WriterBy Staff WriterJune 11, 2025No Comments5 Mins Read0 Views
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email


New Capability in ION MXDR Slashes Investigation Time by 50% and Helps Resolve 99.5% of Incidents Without the Need for Customer Involvement

Ontinue, a leading provider of AI-powered managed extended detection and response (MXDR) services and winner of the 2023 Microsoft Security Services Innovator of the Year award, announced it is the first Microsoft-focused MXDR provider to bring autonomous investigations to market. This groundbreaking technology transforms MXDR by scaling expert-level security analysis, accelerating investigations, and reducing customers’ SecOps burdens using Agentic AI.

Automation has long accelerated Tier 1 incident triage by handling repetitive tasks, helping defenders quickly resolve commonly seen incidents. Ontinue takes this further with autonomous investigations powered by Agentic AI—now live in production for every customer since December 2024. This innovation extends automation to Tier 2-level investigations. When an incident is escalated to the Ontinue Cyber Defense Center, a team of AI agents automatically aggregates telemetry, forms and tests hypotheses, and conducts a full investigation — work that would typically require a Tier 2/3 analyst – that is passed to an Ontinue Cyber Defender. The result is a detailed summary with step-by-step logic, giving human defenders a head start in the race against attackers. This capability has cut mean time to investigate by up to 50% and enables Ontinue to resolve 99.5% of incidents without customer involvement, saving customer security teams hundreds of hours.

Cyber Technology Insights : F5 Secures Sensitive Data and Streamlines Compliance

“Agentic AI doesn’t just evolve how we do security — it redefines it,” said Geoff Haydon, CEO of Ontinue. “Unlike traditional automation tools that follow prescriptive rule-based scripts, the generative nature of Agentic AI allows it to learn, reason, test, and adapt within the context of any given situation. It doesn’t just assist humans, it amplifies them. Autonomous investigations allow Ontinue’s Cyber Defenders to move faster, go deeper, and make more accurate decisions on behalf of customers. This is not an incremental innovation; it’s a fundamental leap forward in how MDR should be delivered.”

“Ontinue’s new autonomous investigation capability brings speed and precision to threat response,” said Thai Vong, Vice President of Technology and CIO (Acting) at ACR. “It cuts through the noise, focuses our attention on real issues, and reduces the burden on our internal team. That allows us to maintain strong security while keeping our focus on integration, operational efficiency, and growth. It’s a smarter, more scalable approach to cybersecurity—exactly what’s needed in a fast-moving, acquisition-driven environment.”

Solving MDR Scale Challenge

In an era of growing threat sophistication and talent shortages, customers need more than a managed service — they need an AI-augmented team.  Many MDR providers still rely on human-only models that can’t keep up with today’s volume, variety, and velocity of threats. Agentic AI helps Ontinue do what legacy MDR providers can’t. The new autonomous investigation capability ensures every alert is fully investigated with contextual depth across logs, identities, endpoints, and cloud environments. That means 24/7 expert-level analysis, action, and resolution — at scale.

Cyber Technology Insights : Blackpoint Cyber and UKON Partner to Redefine Cyber Risk Protection

“Since our inception, we have always viewed AI as a critical technology for overcoming the scale and speed limitations that legacy MDRs simply can’t address,” said Theus Hossmann, Chief Technology Officer at Ontinue. “Automation in security operations has always been limited to deterministic use cases – “if we see x, then do y” – which is useful, but only allows us to automate situations we can predict or have seen before. Novel, more complex incidents have traditionally been left up to humans to investigate because they require human-level reasoning and intuition, and as a result these are the incidents that take the most time to resolve. We took a multi-agentic approach when we built autonomous investigations into the ION SecOps platform which completely flips this paradigm on its head by allowing us to harness near human-level reasoning and creativity at machine speed. As attack surfaces continue to expand and new threats emerge faster than ever, the ability to automatically investigate complex, multi-dimensional incidents is essential.” 

Since introducing autonomous investigations in Ontinue ION MXDR, customers have realized significant benefits:

Mean time to investigate has been reduced by up to 50%

99.5% of incidents are resolved without requiring customer involvement

Security teams have saved hundreds of hours they would have otherwise spent on manual investigations

Redefining MDR with Real-Time Collaboration and Agentic AI Automation

Ontinue launched the industry’s first Microsoft Teams-based collaboration model that enables real-time, direct engagement between customers and the Ontinue Cyber Defense Center for faster communication and decision-making during incident management. Smart Response further tailors the service to each organization by automating customizable rules of engagement and escalation paths that allow the ION MXDR service to seamlessly integrate into a customer’s desired operational model. Additionally, Ontinue introduced autonomous investigations powered by proprietary Agentic AI to accelerate investigations at scale. Every incident escalated to the Ontinue Cyber Defense Center is automatically investigated by ION IQ, the AI at the core of the ION MXDR service, before being passed to a human for further analysis. For each incident ION IQ uses Agentic AI to gather contextual information from disparate systems, form a hypothesis, develop an action plan for testing the hypothesis, conduct the investigation, and provide a detailed summary for review by one of Ontinue’s Cyber Defenders – all in a matter of minutes.

Industry analysts recognize the significance of this advancement. “Ontinue’s use of Agentic AI in its autonomous investigation represents a significant leap forward in managed detection & response capabilities,” said Cathy Huang, Research Director at IDC. “It enables a level of automation for the context gathering that was previously unattainable. This innovation not only improves the speed and consistency of threat detection, incident investigation but also empowers security teams to have a comprehensive understanding of each incident, leading to more informed decision-making and better business outcomes.”

Cyber Technology Insights : NordVPN Validated in Independent Security and Performance Evaluation

To participate in our interviews, please write to our CyberTech Media Room at sudipto@intentamplify.com

Source: prnewswire



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleTrellix Finds Threat Intelligence Gap Calls
Next Article Deep context for code securit
Avatar photo
Staff Writer
  • Website

John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.

Related Posts

RiskRubric.ai Unveils Groundbreaking AI Model Risk Leaderboard

September 19, 2025

RegScale Secures $30M+ to Transform Cyber GRC

September 19, 2025

Cybersecurity Leaders Brace for Surge in Nation-State Attacks by 2025

September 19, 2025
Leave A Reply Cancel Reply

Latest Posts

Cybersecurity Weekly: Major Breaches, Zero-Days, and Exploits

February 22, 2026

Revolutionizing ICS Security: The Power of OT Deception in Active Defense

February 22, 2026

Multiple Hacking Groups Exploit OpenClaw to Steal API Keys and Deploy Malware

February 22, 2026

Global Outage: 6-Hour Cloudflare Service Collapse Leaves Customers Unreachable

February 22, 2026
Don't Miss

RiskRubric.ai Unveils Groundbreaking AI Model Risk Leaderboard

By Staff WriterSeptember 19, 2025

Essential Insights Launch of RiskRubric.ai: The Cloud Security Alliance and partners have introduced RiskRubric.ai, the…

RegScale Secures $30M+ to Transform Cyber GRC

September 19, 2025

Cybersecurity Leaders Brace for Surge in Nation-State Attacks by 2025

September 19, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • Cybersecurity Weekly: Major Breaches, Zero-Days, and Exploits
  • Revolutionizing ICS Security: The Power of OT Deception in Active Defense
  • Redefining Productivity: Why AI Should Replace Workflows
  • Multiple Hacking Groups Exploit OpenClaw to Steal API Keys and Deploy Malware
  • Kyndryl Unveils Integrated Cyber Defense Center in Bengaluru
About Us
About Us

Welcome to The CISO Brief, your trusted source for the latest news, expert insights, and developments in the cybersecurity world.

In today’s rapidly evolving digital landscape, staying informed about cyber threats, innovations, and industry trends is critical for professionals and organizations alike. At The CISO Brief, we are committed to providing timely, accurate, and insightful content that helps security leaders navigate the complexities of cybersecurity.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Cybersecurity Weekly: Major Breaches, Zero-Days, and Exploits

February 22, 2026

Revolutionizing ICS Security: The Power of OT Deception in Active Defense

February 22, 2026

Redefining Productivity: Why AI Should Replace Workflows

February 22, 2026
Most Popular

Absolute Launches GenAI Tools to Tackle Endpoint Risk

August 7, 202515 Views

Researchers Uncover Batavia Windows Spyware Stealing Documents from Russian Firms

July 8, 202510 Views

The CTEM Conversation We All Need

June 30, 202510 Views

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025

Categories

  • Compliance
  • Cyber Updates
  • Cybercrime and Ransomware
  • Editor's pick
  • Emerging Tech
  • Events
  • Featured
  • Insights
  • Threat Intelligence
  • Uncategorized
© 2026 thecisobrief. Designed by thecisobrief.
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions

Type above and press Enter to search. Press Esc to cancel.