Security Analyst
An AI security analyst on demand. Paste raw logs, alerts or a suspicious script and get a clear verdict, the attacker techniques involved, extracted indicators and a ready-to-send incident report.
Included from the Pro plan · runs on your own AI key
How to use Security Analyst
- 1
Paste logs, an alert or a suspicious command.
- 2
Choose what you need — triage, IOC extraction or a full incident report.
- 3
Get findings mapped to MITRE ATT&CK with recommended containment steps.
- SOC alert triage
- Log investigation
- Phishing analysis
- Incident write-ups
Alert triage
Verdict (benign / suspicious / malicious), severity and reasoning in plain language.
MITRE ATT&CK mapping
Tactics and technique IDs for every finding.
IOC extraction
IPs, domains, URLs, hashes and emails pulled out automatically — even before the AI runs.
Incident reports
Executive summary, timeline, impact and next steps, ready to share.
Guardian AI is the self-hosted counterpart — Docker and Windows, included with Business and Enterprise.