
How SLED can win the cybersecurity race with agentic AI
SLED organizations are adopting agentic AI within their security operations centers to counter the increased speed and volume of AI-enabled cyber attacks. This approach automates multi-step investigation tasks while maintaining human oversight.
Why it matters
AI-driven attacks can compromise systems in under 30 minutes, risking critical government services and educational data. Agentic AI helps small, budget-constrained teams respond faster by automating repetitive manual work.
The details
- Lateral movement time between initial compromise and action has fallen to 29 minutes.
- Phishing campaigns using LLMs have click-through rates 4.5 times higher than traditional methods.
- Eight states reported having agentic AI tools in production as of 2026.
Show entities and relationshipsHide entities and relationships
In this article
Organizations
Companies
Products
People
Key connections
Elastic owns Attack Discovery
Elastic develops and provides the Attack Discovery security capability.
Elastic uses Agentic AI
Elastic builds its agentic SOC solutions using agentic AI.
Elastic provides a data mesh architecture for visibility across hybrid environments.
California Employment Development Department uses Attack Discovery
California Employment Development Department cut mean time to response by 99% using Elastic Attack Discovery.
California Employment Development Department is located in United States
California Employment Development Department is a state agency in the United States.
Arizona Department of Homeland Security uses Agentic AI
Arizona Department of Homeland Security uses prebuilt security alerts and AI capabilities to manage log volume.
Show 13 more connectionsShow fewer connections
Arizona Department of Homeland Security is located in United States
Arizona Department of Homeland Security is a state agency in the United States.
Vrije Universiteit Brussel uses Attack Discovery
Vrije Universiteit Brussel utilizes Elastic security monitoring to secure university endpoints.
Xavier Tomaszynski works at Vrije Universiteit Brussel
Xavier Tomaszynski serves as a Network Security ICT Consultant at Vrije Universiteit Brussel.
Texas A&M University System uses Agentic AI
Texas A&M University System uses AI and automation to reduce threat investigation times.
Texas A&M University System is located in United States
Texas A&M University System is located in the United States.
EDUCAUSE is related to Agentic AI
EDUCAUSE surveyed higher education institutions regarding AI tool adoption and governance.
United States is a member of Five Eyes
The United States is a member country of the Five Eyes intelligence alliance.
United Kingdom is a member of Five Eyes
The United Kingdom is a member country of the Five Eyes intelligence alliance.
Canada is a member of Five Eyes
Canada is a member country of the Five Eyes intelligence alliance.
Australia is a member of Five Eyes
Australia is a member country of the Five Eyes intelligence alliance.
New Zealand is a member of Five Eyes
New Zealand is a member country of the Five Eyes intelligence alliance.
Five Eyes regulates Agentic AI
Five Eyes published guidance outlining operational visibility and transparency requirements for AI agents.
Large Language Models is related to Agentic AI
Large Language Models are utilized in AI-driven cybersecurity operations and phishing campaigns.
Related events
Five Eyes Issues Joint Guidance on Autonomous AI Security Risks
Eight US States Deploy Agentic AI Tools in Production
Get the weekly recap
The stories like this one, picked and explained — once a week, straight to your inbox.