Pricing

Packages built for Enterprise
and MSSP growth

Regardless of alert volume, Intezer delivers consistent, lightning fast, in-depth triage and investigation. Every alert, including low-severity ones, receives the same rigorous level of scrutiny, reducing unnecessary escalations, and ensuring your team catches threats that human-only teams will miss.

Starter

For organizations looking to leverage Intezer AI SOC for one alert source.

Priced by endpoints

Connect one alert source to Intezer’s AI SOC

This plan includes:

24/7 monitoring and automated triage for one alert source (either endpoint or user-reported phishing)

Automatically collect files, URLs, and other evidence

Deep investigations using advanced sandboxing & AI

Auto-resolution for false-positive alerts

Complete

For organizations looking to leverage Intezer AI SOC for multiple alert sources.

Priced by endpoints

Connect ALL alert sources for full visibility into complex environments

This plan includes:

Everything in Starter for all your alert sources (including SIEM, cloud, identity, and network)

Custom response workflows

Option to add-on managed SIEM

On-demand assistance from security experts

Coverage
Starter
Complete
Alert Source

One Alert Source

Unlimited Alert Sources

Automated triage of endpoint alerts
Automated triage of user-reported phishing emails
Automated triage of SIEM alerts
Automated triage of identity alerts
Automated triage of cloud alerts
Automated triage of network / firewall alerts
Investigation Features
AI investigation chat agent
On-demand analysis
Response Features
Auto-resolution of false positive alerts
Auto-remediation of true positive alerts
Custom response workflows
Case management

Add-on

Add-on

Other Features
Managed SIEM

Add-on

API access
Single sign-on authentication and MFA
Multi-tenancy
Support & Services
Support
On-demand access to expert security analysts
COVERAGE
Alert Sources

One Alert Source

Unlimited Alert Sources

Automated triage of endpoint alerts

Starter

Complete

Available for alerts from SentinelOne, CrowdStrike, Microsoft Defender, and Palo Alto Cortex XDR
Automated triage of user-reported phishing emails

Starter

Complete

Automatically monitor and investigate 
an abuse inbox or other suspicious email pipeline
Automated triage of SIEM alerts

Starter

Complete

Automated triage of identity alerts

Starter

Complete

Automated triage of cloud alerts

Starter

Complete

Automated triage of network / firewall alerts

Starter

Complete

INVESTIGATION FEATURES
AI investigation chat agent

Starter

Complete

On-demand analysis

Starter

Complete

Including files, hashes, URLs, and
endpoint forensics
RESPONSE FEATURES
Auto-resolution of false positive alerts

Starter

Complete

Auto-remediation of true positive alerts

Starter

Complete

Custom response workflows

Starter

Complete

Case management

Add-on

OTHER FEATURES
Managed SIEM

Starter

Add-on

API access

Starter

Complete

Single sign-on authentication and MFA

Starter

Complete

Multi-tenancy

Starter

Complete

SUPPORT & SERVICES
Support Level

Starter

Complete

Premium SLA add-on 
available for Complete
Priority Support

Starter

Complete

On-demand access to expert security analysts

Starter

Complete

Case studies

Hear from our customers

FREQUENTLY ASKED QUESTIONS

Frequently asked questions

Want to know the technical details?

How does Intezer's AI SOC work?

Intezer leverages a combination of proprietary and commercial AI models, along with proven forensic tools for crafting the bottom-line incident triage assessments. In addition, users can fine-tune Intezer’s decision making process to their own organization and policies.

What security tools does Intezer integrate with?

Intezer offers bi-directional integration with all major security detection tools, SIEMs, asset management, ticketing and SOARs.

How is Intezer different from a SOAR or MDR?

Intezer’s AI-driven technology functions as an extension of your team to help you reduce your SOC/IR workload.
Unlike a SOAR that you’d use for case management and creating playbooks for repetitive operational tasks, Intezer focuses on automating the triage and investigation decision-making  that is usually handled by human analysts.

As a SaaS platform that leverages artificial intelligence and advanced automation for highly accurate and efficient alert triage, Intezer is unlike MDRs where human error and alert fatigue is quite common.

What’s the setup process and how long does it take to get started with Intezer?

The primary onboarding tasks are connecting your alert sources and then adding members of your team as new users to your Intezer account.

It takes a few minutes to connect a security tool as a new alert source in Intezer, using an API key with the necessary permissions. After adding your API key to Intezer, you should start seeing alert triage results in your dashboard within the hour.

What kind of companies and security teams use Intezer?

Top brands like Equifax, MGM Resorts, NVIDIA and other Fortune 500 enterprise security teams use Intezer to investigate and remediate the high volume of their security alerts