Agentic Index

The best security and SOC agents in 2026, ranked

The best security and SOC agents of 2026 are CrowdStrike, Cyware, and Sonar, ranked by verified capability coverage on the Agentic Index. All 76 researched vendors in the category are scored against the same 14 capabilities, and CrowdStrike documents the broadest coverage at 12.5 out of 14.

Agentic Index ranks all 76 security and SOC agents in its index by verified capability coverage. These are agents that triage, investigate, and respond to security alerts autonomously. Each vendor is scored across the same 14 point taxonomy used throughout the index, most recently verified on 2026-07-22, and this ranking recomputes automatically as new research is verified.

Buyers also search this category as agentic SOC platforms, AI alert triage tools, and autonomous security operations agents.

Scored on 14 buyer facing capabilities researched from public sources. No vendor pays for placement. How this ranking works

Best security and SOC agents by buyer need

Best for regulated and governed deployments
CrowdStrike

Documents 3.0 of 3 on security, auditability, and human oversight, and 12.5 of 14 overall.

Best for production reliability
Sonar

Documents 2.0 of 2 on testing and observability, and 12.0 of 14 overall.

Best for developer extensibility
Cyware

Documents 2.0 of 2 on APIs, MCP support, and tool calling, and 12.0 of 14 overall.

Best for complex multi step work
ThreatModeler

Documents 3.0 of 3 on orchestration, memory, and knowledge grounding, and 12.0 of 14 overall.

Each segment names the vendor with the most documented coverage on the criteria that segment depends on, computed from the same research as the ranking below. A vendor appears once, in its strongest segment.

Ranked field (76 vendors)

Latest verified research: 2026-07-22

  1. 1
    C

    Cybersecurity platform whose Charlotte AI delivers agentic detection, triage, and response in the SOC.

  2. 2
    C

    AI powered Cyber Fusion platform with an Agentic AI Fabric of specialized SOC agents that enrich intelligence, engineer detections, reconstruct attacks, and automate response, plus threat sharing networks.

  3. 3
    S

    Verification layer for AI and agentic coding, and a standard for automated code review.

  4. 4
    T

    Governed agentic threat modeling platform whose multi agent system builds, maintains, and reports on threat models grounded in a persistent Secure Design Graph, threat modeling applications, cloud, OT, and AI agents at enterprise scale with a deterministic framework, MCP integration, and Bring Your Own AI.

  5. 5
    Z

    Cyber risk intelligence platform with a Cyber Navigator posture and quantification suite plus ZAK, an open source Agent Development Kit for building and governing autonomous cybersecurity agents with policy guardrails.

  6. 6
    d

    AI security platform that detects, triages, and remediates software vulnerabilities.

  7. 7
    S

    Enterprise MCP platform (built on open source ToolHive) that runs, governs, and secures MCP servers and agent skills in isolated containers, Kubernetes native and self hosted, from the Kubernetes co creators.

  8. 8
    A

    Autonomous red teaming platform (Ares) whose AI agents discover, chain, and exploit vulnerabilities across APIs, web apps, and mobile apps, powered by a proprietary offensive security model.

  9. 9
    K

    Agentic AI cybersecurity platform that unifies threat intelligence, exposure management, detection, and response into one autonomous machine speed pipeline across IT and OT.

  10. 10
    T

    Vendor-agnostic AI orchestration and workflow platform for security and IT teams, and a SOAR leader gone agentic: a no-code Storyboard, an AI Workbench that acts on proprietary data in natural language, and Cases management, with three levels of control (deterministic, human-led copilot, autonomous agents) keeping the analyst in charge. Free community edition; data kept within Tines infrastructure.

  11. 11
    A

    Agentic OS that unifies SOC, GRC, IAM, vulnerability management, IT, and business operations under one agent layer, letting teams fine tune third party LLMs and compose deep reasoning agents.

  12. 12
    D

    Autonomous AI SOC platform from SOAR vendor D3 Security: full L2-depth Attack Path Discovery on every alert, bespoke response playbooks generated at runtime, and a structured case file in under two minutes, with up to 95% of alerts triaged and L2-investigated in that window. Runs bounded agentic reasoning on a purpose-built Cybersecurity Triage Reasoning Graph inside deterministic governance with autonomy modes and approval gates, producing one unified regulator-ready audit trail per incident. Self-healing integrations across 800+ tools, Azure plus four-region data residency plus on-prem, published testing results (87% attack path revelation, 94% closure).

  13. 13
    P

    AI native predictive SecOps platform (Predict & Prevent) that replaces or augments legacy SIEM with parserless ingestion, generative XDR, agentic triage, and predictive analytics.

  14. 14
    P

    Security platform that uses browser telemetry and autonomous agents to detect and stop identity attacks.

  15. 15
    S

    Agentic exposure action platform that turns security findings into prioritized, auto-routed, and tracked remediation fixes, with a suite of AI agents for security teams.

  16. 16
    S

    Agentic AI automation platform (Turbine) for SOC workflows, vulnerability management, and compliance, with Hero AI agents and a visual playbook and agent builder.

  17. 17
    T

    Non human identity security platform that discovers, governs, and secures every machine identity and AI agent across on premise, hybrid, and cloud, with posture management, threat detection, least privilege, and a conversational Token AI Agent.

  18. 18
    T

    Security hyperautomation platform with agentic HyperSOC on top, pairing free agent reasoning with a mature governed workflow action layer, valued at $1.2 billion.

  19. 19
    L

    AI native identity security and governance platform that maps and governs human, non-human, and AI agent identities in real time, with an autonomous remediation agent, Autopilot.

  20. 20
    S

    Family of SOC, threat hunting, and pentest agents reasoning over a shared Context Lake, closing an offensive to defensive loop and auto resolving a reported 92 percent of alerts.

  21. 21
    Z

    Agentic AI platform whose domain specific agents execute security governance, risk, and compliance work end to end rather than just tracking it.

  22. 22
    C

    Agentic Security Delivery Platform for MSPs and MSSPs running Microsoft Sentinel and Defender XDR, with Security Delivery Agents that autonomously triage, investigate, and respond across unlimited customer tenants.

    Full coverage on Workflow Orchestration and Observability & Auditability and 5 more. No documented coverage on Browser / Computer-use and Model Flexibility & Routing and 1 more.

  23. 23
    M

    Autonomous AI workforce for third party risk management that continuously assesses vendors, products, and AI agent dependencies across the supply chain instead of periodic audits.

  24. 24
    M

    Attacker-aligned AI security platform running continuous automated red teaming against complete AI systems: reconnaissance maps the production attack surface (guardrails, system prompts, tools, shadow AI), then thousands of MITRE ATLAS and OWASP-mapped attacks test LLMs, agents, and multimodal models, including chained exploits, with runtime protection in production. Developer-native deployment via GitHub Action, CLI, APIs, and Burp Suite against any inference endpoint. Lancaster University spinout, 11 PhDs, SOC 2 Type II, $11.6M raised, 2025 Cybersecurity Excellence Award winner.

  25. 25
    M

    Agentic AI Security and Compliance Officer that operates a company's full security and IT stack and keeps it continuously audit ready across major frameworks.

    Full coverage on Prebuilt Agents / Templates / Packs and Workflow Orchestration and 4 more. No documented coverage on Model Flexibility & Routing and Browser / Computer-use.

  26. 26
    O

    Runtime AI application defense platform protecting every layer of live cloud and AI applications through discovery, detection, and defense, deployed via single-step Helm inside the customer's own Kubernetes cluster with zero instrumentation. Agent Protector (Feb 2026) adds agentic security: prompt-to-tool-to-memory tracing, intent analysis, continuous runtime re-authorization of tool calls, and memory poisoning protection, integrating with LangGraph, CrewAI, n8n, and the ChatGPT Agents SDK. Also ships AI Gatekeeper, MCP Gateway, and open-source Woodpecker red teaming. The only vendor in six Gartner AI security reports.

  27. 27Pillar Security logo

    Unified AI security platform where offense and defense work as one system across the AI lifecycle: discovery and posture (AI-SPM cataloging models, tools, MCP servers, coding agents), a first-class Gartner-recognized red-teaming pillar (RedGraph offensive agentic testing, tool-use and black-box red teaming), runtime guardrails over agentic tool calls and permissions, and governance and compliance. A red-team finding becomes a policy becomes a retest, so protection compounds. Tops the AI-agent-security cluster on the strength of its offensive-testing loop.

  28. 28Repello AI logo

    Enterprise platform for autonomous AI red teaming, runtime guardrails, and continuous AI security across LLMs, agents, and MCP, run on a three-phase loop: discover and build an AI BOM, red-team, then deploy adaptive guardrails calibrated from results. ARTEMIS profiles and attacks like a human red-teamer, chaining multi-stage exploits across integrations and visualizing attack paths, drawing on 15M+ attack patterns with multi-modal and multi-lingual coverage mapped to OWASP, NIST, and MITRE. Black-box, CI/CD-integrated, 270+ vulnerability types; publishes open-source tooling and original AI-threat research.

  29. 29Tuskira logo

    Agentic SecOps platform that unifies over one hundred fifty security tools into a security mesh and runs a workforce of specialist AI analysts for preemptive threat exposure, detection, and autonomous response.

  30. 30ZEST Security logo

    Agentic AI cloud risk resolution platform whose multi agent system turns CSPM and CNAPP findings into validated, code based remediation paths, simulated on a digital twin, with read only access.

    Full coverage on Workflow Orchestration and Knowledge Grounding & RAG and 5 more. No documented coverage on Browser / Computer-use and APIs / SDKs / MCP Extensibility and 1 more.

  31. 31Alertd logo

    Agentic AI SRE and DevOps platform for AWS that analyzes cost, security, compliance, and performance in plain English and generates human approved fix runbooks.

    Full coverage on Integrations & Tool Calling and Human Oversight & Guardrails and 4 more. No documented coverage on Browser / Computer-use and APIs / SDKs / MCP Extensibility and 1 more.

  32. 32BlinkOps logo

    Agentic security operations platform running a digital workforce of micro-agents (150+ out of the box, unlimited custom via no-code Agent Builder) across the full alert lifecycle. Agents execute only pre-vetted, auditable Abilities, pairing AI reasoning with deterministic code safety. Underneath: 30,000+ integration actions across 400+ vendors, Blink Copilot prompt-to-workflow generation, and the largest prebuilt library in the category at 8,000+ workflows. Over $100M raised, Fortune 500 customers, 936% estimated ROI (TAGCyber).

  33. 33Clawvisor logo

    Open source authorization gateway for AI agents: vaults credentials, enforces task scoped access, and puts a human approval gate and full audit trail on every tool call.

    Full coverage on APIs / SDKs / MCP Extensibility and Model Flexibility & Routing and 5 more. No documented coverage on Testing, Debugging & Optimization and Browser / Computer-use and 2 more.

  34. 34HiddenLayer logo

    Leading independent AI/ML model security platform extended into agents: Model Scanner (35+ formats, supply-chain threats), AI Detection and Response against adversarial attacks and prompt injection, model genealogy and AIBOM governance, plus 2026 agentic runtime security that detects malicious tool calls and data exfiltration in multi-step autonomous workflows. The model-security-first counterpart to agent-native Noma and Zenity.

  35. 35Horizon3.ai logo

    NodeZero: continuous autonomous penetration testing that runs safely in production with no persistent agents, chaining real attack paths across internal, external, cloud, AD, and web app surfaces and verifying fixes instantly. FedRAMP High Authorized, first AI to solve the Game of Active Directory; founded by national-security veterans.

  36. 36Lasso Security logo

    GenAI-first, end-to-end AI security platform covering models, agents, and applications through a five-pillar framework: Discover (shadow AI and agent inventory), Assess (posture on what agents can reach and do), Test (automated red teaming with a 3,000+ attack library and multi-turn agentic attacks), Enforce (inline policies at the proxy, API, or AI gateway layer), and Protect (runtime detection and response). Its Intent Security framework, anchored by the Intent Deputy launched in 2026, sets behavioral baselines for agentic AI and covers MCP security. Sub-50ms classifications with a published 98.6% accuracy rate.

  37. 37Noma Security logo

    Market-leading independent enterprise AI and agent security platform: discovery and posture (AI-SPM), Agent Access Control (tool-level governance of agents and MCP servers), runtime AI Detection and Response across prompts, tool calls, MCP, and agent-to-agent traffic, plus continuous AI Red Teaming. Covers homegrown, SaaS, and developer-machine agents. The leading independent counterpart to Zenity.

  38. 38Prophet Security logo

    AI SOC platform with continuously learning agents, explicit auditable reasoning per alert, and single tenant VPC deployment, covering triage through threat hunting.

  39. 39Straiker logo

    Agentic-first AI security platform securing agents across their lifecycle through three modules: Discover AI (inventory of agents, tools, and MCP servers with shadow-usage detection), Ascend AI (continuous adversarial testing on every deployment, mapped to OWASP LLM Top 10, MITRE ATLAS, and the EU AI Act), and Defend AI (sub-second runtime blocking of prompt injection, agent manipulation, and regulated-data leakage). Single-hook install, ISO 27001 and SOC 2 certified, ~$85M raised, customers include Comcast, Fortinet, Snowflake, and Deloitte.

  40. 40Terra Security logo

    Agentic offensive security platform for continuous penetration testing with human-in-the-loop as the architecture: a swarm of fine-tuned AI agents scopes, discovers, hypothesizes, and validates vulnerabilities across web apps, AI systems, and network infrastructure, while human testers operate inside the same agentic workflow via the gateway and Terra Portal execution layer. Cuts discovery-to-fix from months to hours with proof-of-exploitability reporting. Founded 2024; $38M raised (Felicis-led Series A); Fortune 100 clients; first AWS Partner with the Autonomous Security Validation competency.

  41. 41UnderDefense logo

    Agentic AI SOC and compliance automation platform (MAXI) delivered with a human-led MDR service: a multi-agent system of Agentic Teammates autonomously handles ~80% of Tier 1/2 SecOps, delivering full incident context in 2 minutes and containment within 5, while 120 certified engineers validate actions and a distinctive ChatOps capability has analysts confirm suspicious activity with affected users over Slack or Teams. 250+ integrations, 1500+ correlation rules, no vendor lock-in, and a May 2026 on-premise build for closed, sovereign, and air-gapped environments. Freemium entry; stated zero-ransomware record over six years.

  42. 42WitnessAI logo

    Unified AI security and governance platform applying intent-based behavioral controls at the network layer: analyzes the meaning behind each prompt to block multi-turn attacks and contextual jailbreaks, monitors which agents are active and what MCP servers, tools, and data they touch, and connects human and agentic identities for explainable agent actions across both workforces. Deploys on-premise, in a cloud sandbox, or in a VPC. Over $85M raised (Sound Ventures, GV, Qualcomm, Samsung), 500% ARR growth, and production customers among the largest public enterprises.

  43. 43Dome Systems logo

    Agent native governance control plane that registers agents, filters tools via an MCP Gateway, enforces per action Cedar policy before execution, and audits every governed action across any cloud.

    Full coverage on APIs / SDKs / MCP Extensibility and Human Oversight & Guardrails and 4 more. No documented coverage on Testing, Debugging & Optimization and Browser / Computer-use and 2 more.

  44. 44Exaforce logo

    AI SOC platform unifying Exabots agents with an integrated knowledge graph data layer and a multi model engine, positioned as a SIEM cost counterweight with complete log visibility.

  45. 45Ghost Security logo

    Autonomous application and API security built on agentic AI: Reaper, an open source AppSec testing framework usable by humans and AI agents, plus the Ghost Platform for continuous discovery, testing and risk context, backed by Munich Re Ventures.

    Full coverage on APIs / SDKs / MCP Extensibility and Workflow Orchestration and 2 more. No documented coverage on Model Flexibility & Routing and Browser / Computer-use.

  46. 46XBOW logo

    Autonomous offensive-security platform: a coordinator directs thousands of parallel agents that chain vulnerabilities into reproducible, exploit-validated attack paths at machine speed, continuously as apps change, with scope control and SOC 2 / ISO 27001 / PCI DSS / NIS 2 governance. First AI to hit #1 on HackerOne; founded by GitHub Copilot's creator; from $6,000 on-demand.

  47. 47Zenity logo

    First end-to-end security and governance platform purpose-built for AI agents: Observe (discovery and observability), Govern (AI Security Posture Management), and Defend (detection and response) across Copilot Studio, Agentforce, Bedrock, Azure AI Foundry, Vertex AI, and ChatGPT Enterprise, with intent-aware runtime enforcement. Named Gartner's company to beat in AI agent governance.

  48. 487AI logo

    Swarming agentic SOC from the Cybereason founders: sixty plus domain specialized agents work each alert in parallel across endpoint, identity, cloud, email, and network, through response.

  49. 49Capsule Security logo

    Runtime security layer for AI agents that detects and blocks unsafe agent behavior in real time, with agentless discovery, an agent security graph, and white box agent red teaming.

  50. 50Dropzone AI logo

    Production proven AI SOC analyst that investigates every alert in under ten minutes over the existing security stack, with published per investigation pricing from $36,000 a year.

  51. 51Equixly logo

    Autonomous offensive security platform whose Agentic AI Hacker continuously pentests APIs and web applications, chaining interactions to prove exploitable risk.

    Full coverage on Observability & Auditability and Triggers & Channel Coverage and 3 more. No documented coverage on Testing, Debugging & Optimization and Browser / Computer-use and 2 more.

  52. 52Evoke Security logo

    Security platform for the agentic workforce, an EDR for AI agents that discovers every agent, model, tool and MCP, models attack paths, and blocks risky agent actions in real time.

    Full coverage on Deployment & Data Residency and Human Oversight & Guardrails and 3 more. No documented coverage on Browser / Computer-use and Model Flexibility & Routing and 2 more.

  53. 53Knostic logo

    First AI security platform for need-to-know access control at the knowledge layer, preventing enterprise assistants (Microsoft 365 Copilot, Glean, Gemini, custom LLMs) from oversharing sensitive data. Addresses the LLM-specific inference risk that IAM and DLP miss: it captures per-user, per-topic need-to-know policies, simulates real employee queries to find oversharing before users do, and enforces dynamically with runtime redaction, knowledge-graph visibility, and forensic audit trails aligned to the EU AI Act, ISO 42001, and NIST AI RMF. Founded 2023 by Gadi Evron and Sounil Yu; $19.3M raised; SOC 2 Type II; RSA and Black Hat competition winner.

  54. 54Vulnetic logo

    Autonomous penetration testing platform whose agent, PTJunior, runs reconnaissance, exploitation, and reporting without human intervention, actively exploiting vulnerabilities (not just flagging them) across web apps, APIs, Active Directory, IoT, and AI/ML systems with a sub-1% false-positive rate. A transparent workspace lets teams watch it operate, install tools for it to use, and customize its methodology, while queue management scales across many targets and generates NIST SP 800-115 CVSS-scored reports. Credit-based self-serve pricing with pro and enterprise tiers; Docker-based on-demand deployment.

  55. 55Astelia logo

    AI native exposure management platform from Israeli National Red Team veterans that maps an enterprise's real network and uses autonomous AI agents to analyze exploitability and reachability, narrowing millions of vulnerabilities down to the roughly two percent that represent true exposure, with attack path visualization and evidence based remediation.

  56. 56Dux logo

    Agentic exposure management platform from IDF Talpiot cyber veterans whose AI workers continuously analyze what is actually exploitable in an environment, check whether existing controls already block the path, surface lightweight mitigations faster than full patches, and route targeted remediation to asset owners.

  57. 57Intezer logo

    AI SOC platform that autonomously triages 100% of alerts across endpoint, identity, network, cloud, SIEM, and email at forensic depth, escalating under 2% with auditable, evidence-based verdicts. Combines a deterministic forensic toolset (memory scanning, reverse engineering, sandboxing) with agentic AI and feeds outcomes back into detection engineering. Used by Fortune 500 enterprises.

  58. 58Pi logo

    Agentic product security platform that builds a security brain of a company's code, cloud, and history, then autonomously finds and ships fixes for vulnerabilities across the software development lifecycle.

  59. 59Portal26 logo

    Enterprise GenAI visibility, governance, and security platform (AI TRiSM) with SOC 2 and FIPS 140-2 certification and an agent token governance module.

    Full coverage on Human Oversight & Guardrails and Observability & Auditability and 2 more. No documented coverage on Prebuilt Agents / Templates / Packs and Model Flexibility & Routing and 2 more.

  60. 60Qevlar AI logo

    European autonomous AI SOC platform using graph based orchestration for hallucination free tier 2 and 3 investigation in about three minutes, live across 1,500 plus organizations.

  61. 61RunSybil logo

    AI-native offensive security platform whose autonomous agent, Sybil, continuously tests applications and infrastructure by reasoning like an elite attacker across the whole stack on every deployment, chaining vulnerabilities into real exploitable paths rather than scanning for signatures. Owns CTEM Phase 4 (Validation): proves whether findings are actually exploitable, delivering pre-validated results with zero triage burden as a replacement for bug bounties and point-in-time pentests. Founded 2023 by OpenAI's first security researcher and Meta's former offensive security lead; $40M raised; Fortune 500 and financial-institution customers.

  62. 62StrikeReady logo

    Vendor-agnostic AI Security Command Center centralizing threat response across the existing stack: CARA, the Gartner-recognized Cyber AI Response Analyst, advises with real-time learning from the team's collective knowledge, while a proprietary Large Action Model executes defensive actions across 650+ integrations from user prompts. v2 unifies identities, assets, vulnerabilities, and simulations into one risk console, cutting threat-intel validation from hours to minutes. Founded 2019 by ex-FireEye leadership; $15.6M raised; Texas HQ.

  63. 63Trent AI logo

    Multi agent security platform that secures a company's own AI agents across their lifecycle, using specialist scan, judge, mitigate, and evaluate agents to catch and fix threats like prompt injection, tool misuse, and data exfiltration.

  64. 64Clutch Security logo

    Universal non human identity security platform that discovers, governs, and secures every NHI, AI agent, and secret across cloud, SaaS, and on prem, powered by the Identity Lineage graph and a zero trust, ephemeral credentials approach.

  65. 65Culminate logo

    AI SOC Analyst that autonomously investigates every alert using expert-level techniques at machine speed, with no playbooks, code, or prompts. Connects via API across SIEM, EDR, cloud, identity, and ticketing, orchestrates the whole stack during investigations, and produces attestable, auditable, decision-ready reports within minutes for human-AI teaming. Reports 95% false-positive reduction in lab testing. SOC 2 Type II certified, AWS Marketplace listed, deep Amazon GuardDuty integration.

  66. 66OpenBox AI logo

    Runtime governance and trust layer for enterprise AI agents that enforces identity, authorization, and policy at the point of execution, scores risk against the OWASP AIVSS framework, and produces tamper proof cryptographic Proof Certificates, dropping into Temporal, LangChain, Mastra, and other runtimes as a plugin.

  67. 67Radiant Security logo

    Adaptive AI SOC platform triaging every alert type that reaches the SOC, with integrated log management pitched as a SIEM cost counterweight.

  68. 68SGNL logo

    Continuous Identity platform delivering dynamic, context aware authorization and zero standing privilege for human, non human, and AI agent identities, with a built in MCP Gateway governing what tools agents can use; being acquired by CrowdStrike in a deal announced January 2026.

  69. 69AirMDR logo

    AI-native MDR built around a Virtual Analyst that triages 95% of alerts in under five minutes and covers 100% of alert volume 24/7, paired with a round-the-clock human expert team that supervises, validates, and escalates its findings. Ships 240+ out-of-the-box integrations, automated playbooks, and an always-free plan automating 100% of alert triage. Founded by ArcSight/Sumo Logic/LogicHub veteran Kumar Saurabh; $15.5M seed; SOC 2 certified; sells to SMBs, enterprises, and through MSSPs.

  70. 70Conifers.ai logo

    Agentic AI SOC platform (CognitiveSOC) investigating complex, multi-tier incidents at scale, differentiated by institutional knowledge: it continuously ingests the organization's own data, decision patterns, and risk tolerance so investigations adapt to each environment. Maps each incident to a security use case and applies pre-trained agents suited to it, with human-in-the-loop feedback in the architecture. Reports up to 8% higher accuracy than humans and 87% faster investigations. $25M+ raised (SYN Ventures, Picus, Washington Harbour); enterprise, MSSP, and government focus.

  71. 71TectoAI logo

    Governance platform for agentic AI: discover, vet, and continuously monitor third party AI tools and agents, with compliance controls for regulated industries.

  72. 72Andesite logo

    Bionic SOC: a human-AI collaboration platform that automates triage, enrichment, and investigation across 100% of alerts while analysts oversee workflows and own critical decisions. Context-Aware AI consolidates fragmented data silos, Evidentiary AI makes every decision auditable and explainable, and compliance aligns to SOC 2 Type I, NIST 800-53 High, NIST CSF, and the NIST AI RMF, with FedRAMP High in process. Founded by former CIA Special Activities Center director Brian Carbaugh; $38.25M raised from General Catalyst and Red Cell; national security, financial services, and healthcare traction.

  73. 73Enclave logo

    AI native agentic security researcher that hunts exploitable vulnerabilities across code and cloud, with a red team agent that verifies which findings are actually exploitable.

    Full coverage on Observability & Auditability and Workflow Orchestration and 1 more. No documented coverage on Browser / Computer-use and Testing, Debugging & Optimization and 4 more.

  74. 74Ocean logo

    Agentic email security platform whose network of AI agents, led by an autonomous investigation engine called Ray, inspects every message in real time to catch phishing and social engineering that evade legacy filters.

  75. 75Quantro Security logo

    AI native cybersecurity agent (VM.Analyst) that reasons across the security stack to find vulnerable, reachable, exploitable risks and drives human approved remediation.

    Full coverage on Human Oversight & Guardrails and Knowledge Grounding & RAG and 1 more. No documented coverage on Memory & State Persistence and Browser / Computer-use and 6 more.

  76. 76Hex Security logo

    Autonomous AI agents that run continuous penetration tests against web apps, APIs, and infrastructure, reasoning like security researchers to find and verify vulnerabilities and deliver working proof-of-concept exploits with remediation steps.

    Full coverage on Workflow Orchestration. No documented coverage on Deployment & Data Residency and Knowledge Grounding & RAG and 5 more.

How this ranking works. Each vendor's score is the sum of its verified feature scores across 14 buyer facing agentic AI capabilities, researched from public sources. Full support counts 1.0, partial support counts 0.5, and ties are broken alphabetically. A low score means less documented coverage in public materials, not a definitive absence of capability. The buyer need block above is computed from the same scores, taking the subset of criteria each need depends on. No vendor pays for placement.

Contact us

Found a vendor we missed? Have feedback on the index? We'd love to hear from you.