Home / Directory / AI SaaS tooling / AI SOC & security operations / Intezer

Intezer

Forensic AI SOC platform that triages endpoint, phishing, SIEM, identity, and cloud alerts, with deep file and memory analysis.

7.6/10
Overall Score
Recommend

Intezer stands out among AI SOC tools for forensic depth: it pulls files and memory and analyzes the code itself before it closes an alert.

Best for

Enterprise SOCs and MSSPs that want every alert investigated, including low-severity ones, with forensic evidence behind each verdict.

Not ideal for

Small teams that only want a SIEM assistant, or buyers who need every alert source covered on the entry plan.

Verdict

Intezer is an AI SOC company with offices in New York and Tel Aviv, founded in 2015 by former leaders of the Israeli military's incident response team. Security teams and managed security providers use it to triage and investigate alerts from endpoint tools, user-reported phishing, SIEM, identity, and cloud, close false positives automatically, and escalate the few that need a person. It stands out because it does reverse engineering and memory forensics on the evidence behind an alert, which lets it judge low-severity alerts that most teams never get to.

Score Breakdown

How Intezer scores in the categories that matter to its buyers.

Buyer outcomes

Autonomous alert investigation
8.1
Forensic depth on files & memory
8.4
Phishing & user-reported email
7.8
Lowest entry price
6.9

Company & commercial

Innovation & product leadership
7.6
Project management & communication
7.4
Pricing
7.0
Contract fairness
7.2

Pricing

Intezer prices both of its packages by the number of endpoints. Prices are given on request.

PlanPriceWhat stands out
StarterPriced by endpointsAutomated triage for one alert source, either endpoint or user-reported phishing
CompletePriced by endpointsAll alert sources, including SIEM, cloud, identity, and network; custom response workflows; managed SIEM add-on

The Field at a Glance

How Intezer compares with other AI SOC & security operations vendors we reviewed, by Overall Score and relative typical engagement cost.

6 7 8 9 Overall Score $ $$ $$$ $$$$ Relative typical engagement cost Dropzone AI Prophet Security Qevlar AI Intezer 7.6
Intezer Dropzone AI Prophet Security Qevlar AI

Intezer scores 7.6 in AI SOC & security operations, level with Dropzone AI (7.6), and ahead of Prophet Security (7.4) and Qevlar AI (7.3). Relative cost lands upper-mid for this subcategory.

Use-case matrix

Use caseFitNotes
Endpoint alert triageStrongCollects files and memory and analyzes the code behind each alert.
User-reported phishingStrongSalesforce routes reported emails through it with little analyst work.
SIEM, identity, and cloud alertsStrongCovered on the Complete plan.
MSSP and multi-client operationsStrongRSM Defense automates SIEM, EDR, and phishing triage for its clients.
Detection engineering and rule tuningMixedGives tuning recommendations but is not a detection platform.
Teams buying for one alert type onlyMixedStarter covers one source; adding more means the Complete plan.

Who it’s for

Good fit

  • Enterprise SOCs with high alert volume
  • MSSPs and MDR providers
  • Teams buried in user-reported phishing

Poor fit

  • Small teams without an EDR or SIEM in place
  • Buyers who want a published price
  • Teams looking for a SIEM replacement

Review Excerpts

Below are excerpts from public reviews. Our team scoured public reviews, forums, and chat rooms to get a balanced view of customers' experience with this company. Paid reviews and pay-for-play sites such as Clutch were excluded.

How it's used

“By automating the triage of SIEM, EDR, and phishing alerts and providing us with enriched threat intelligence, Intezer empowers our security practitioners to focus on high-priority incidents and take decisive action to protect our clients’ business operations and reputation.”

Todd Willoughby, Director of Security Transformation, RSM Defense · source
What people like

“Intezer is well integrated into our SOC team’s daily workflows. It’s all automated. Our analysts now have time for more proactive security.”

Matan Ziv, Lead Incident Responder, CSIRT, Salesforce · source
What people don't like

“We started on the Starter plan for our EDR alerts and wanted to add phishing reports later. That meant moving up to Complete, and since it's priced by endpoints, the jump was bigger than we planned for.”

SOC manager · r/cybersecurity

Methodology

This page is an independent evaluation of Intezer for buyers comparing options in ai soc & security operations. AI Industry Reviews accepts no sponsorships, advertising, or pay-for-placement fees. Intezer did not pay for this review.

What we scored

The headline number is an Overall Score on a 0-10 scale. Eight criteria sit under it in two groups.

  • Buyer outcomes (for ai soc & security operations)
    • Autonomous alert investigation
    • Forensic depth on files & memory
    • Phishing & user-reported email
    • Lowest entry price
  • Company & commercial
    • Innovation & product leadership
    • Project management & communication
    • Pricing
    • Contract fairness

Pricing measures whether the price looks fair for the value delivered, including packaging and renewal friction that show up in real buying cycles.

Score Composition

InputWeightWhat it covers
Reviews40%A proprietary read of what practitioners say about likes, complaints, and day-to-day use, including public review sites, forums, and private chat rooms. Paid reviews and pay-for-play sites such as Clutch are out of scope.
Product35%Hands-on look at screens and workflows.
Pricing15%Whether the price looks fair for what you get.
Docs & training10%Docs, tutorials, and training material.

How we balanced the evidence

The Overall Score is the simple average of the eight criteria. Recommendation language follows that score and the fit pattern described above.

Scope

Intezer is graded here as ai soc & security operations. Criteria scores can move as more review volume and product checks are added.

← Back to AI SOC & security operations