Highlights
- AI SOC Xpert adds broader coverage and AI guidance for DDoS and bot attacks.
- New dashboards enable faster root cause analysis and reduced mean time to resolution.
- Agentic AI supports proactive traffic profiling and continuous security policy optimization.
Radware (NASDAQ:RDWR) announced enhancements to its AI SOC Xpert, expanding coverage to additional cybersecurity use cases less than a year after its initial launch for Cloud DDoS Protection. The expanded capabilities provide Security Operations Centers (SOC) teams with agentic AI functionality, enabling them to investigate incidents, remediate attacks, and monitor threats more efficiently across multiple attack surfaces.
Powered by Radware’s EPIC-AI™, AI SOC Xpert now delivers root cause analysis, incident timelines, and context within minutes for both DDoS and bot attacks. Analysts gain a consolidated view of incidents via new dashboards for Application Protection and On-Premise DDoS Protection, in addition to enhancements for Cloud DDoS Protection. The unified interface reduces the need to manually correlate data across multiple tools, allowing SOC teams to act faster and lower mean time to resolution (MTTR).
Application Protection Capabilities
AI SOC Xpert for Application Protection introduces AI-driven incident remediation for bot attacks. It includes visual dashboards that highlight anomalies, incidents, and attack patterns with agentic AI guidance. Continuous policy optimization recommendations are provided to reduce false positives and streamline WAF management. Automated workflows and context-aware recommendations assist teams in distinguishing between legitimate automation and malicious bot activity.
DDoS Protection Capabilities
The AI SOC Xpert for DDoS Protection supports on-premise, hybrid, and cloud-based solutions. A new dashboard embedded in Radware’s DefensePro X and Cyber Controller platforms provides analysts with real-time insights. Peacetime traffic profiles are used to proactively prepare filters before attacks occur, while one-click enforcement options allow remediation both inline and out-of-path. Additional capabilities include AI-powered forensic storytelling, structured summaries, anomaly detection, and continuous monitoring of vectors, packet sizes, and traffic dynamics.
Management Commentary
Gabi Malka, Chief Operating Officer of Radware, stated:
"While the growing ecosystem of agentic capabilities provides vast opportunities for businesses, as AI systems gain autonomy the attack surface expands dramatically. Analysts have more to track and more complex root causes to analyze which contributes to down time as they seek to repair. Radware is extending AI SOC Xpert to further protect applications in an AI agentic world. Think of it as an AI agent for the SOC, reducing MTTR by up to twenty times."
Operational Impact
The enhancements aim to reduce the time, effort, and costs associated with managing DDoS and application security incidents. SOC teams can access agentic AI recommendations for incident investigation, remediation, and prevention.