Home / Directory / AI SaaS tooling / AI SOC & security operations / Intezer
Intezer
Forensic AI SOC platform that triages endpoint, phishing, SIEM, identity, and cloud alerts, with deep file and memory analysis.
Enterprise SOCs and MSSPs that want every alert investigated, including low-severity ones, with forensic evidence behind each verdict.
Small teams that only want a SIEM assistant, or buyers who need every alert source covered on the entry plan.
Verdict
Intezer is an AI SOC company with offices in New York and Tel Aviv, founded in 2015 by former leaders of the Israeli military's incident response team. Security teams and managed security providers use it to triage and investigate alerts from endpoint tools, user-reported phishing, SIEM, identity, and cloud, close false positives automatically, and escalate the few that need a person. It stands out because it does reverse engineering and memory forensics on the evidence behind an alert, which lets it judge low-severity alerts that most teams never get to.
Score Breakdown
How Intezer scores in the categories that matter to its buyers.
Pricing
Intezer prices both of its packages by the number of endpoints. Prices are given on request.
| Plan | Price | What stands out |
|---|---|---|
| Starter | Priced by endpoints | Automated triage for one alert source, either endpoint or user-reported phishing |
| Complete | Priced by endpoints | All alert sources, including SIEM, cloud, identity, and network; custom response workflows; managed SIEM add-on |
The Field at a Glance
How Intezer compares with other AI SOC & security operations vendors we reviewed, by Overall Score and relative typical engagement cost.
Intezer scores 7.6 in AI SOC & security operations, level with Dropzone AI (7.6), and ahead of Prophet Security (7.4) and Qevlar AI (7.3). Relative cost lands upper-mid for this subcategory.
Use-case matrix
| Use case | Fit | Notes |
|---|---|---|
| Endpoint alert triage | Strong | Collects files and memory and analyzes the code behind each alert. |
| User-reported phishing | Strong | Salesforce routes reported emails through it with little analyst work. |
| SIEM, identity, and cloud alerts | Strong | Covered on the Complete plan. |
| MSSP and multi-client operations | Strong | RSM Defense automates SIEM, EDR, and phishing triage for its clients. |
| Detection engineering and rule tuning | Mixed | Gives tuning recommendations but is not a detection platform. |
| Teams buying for one alert type only | Mixed | Starter covers one source; adding more means the Complete plan. |
Who it’s for
Good fit
- Enterprise SOCs with high alert volume
- MSSPs and MDR providers
- Teams buried in user-reported phishing
Poor fit
- Small teams without an EDR or SIEM in place
- Buyers who want a published price
- Teams looking for a SIEM replacement
Review Excerpts
Below are excerpts from public reviews. Our team scoured public reviews, forums, and chat rooms to get a balanced view of customers' experience with this company. Paid reviews and pay-for-play sites such as Clutch were excluded.
“By automating the triage of SIEM, EDR, and phishing alerts and providing us with enriched threat intelligence, Intezer empowers our security practitioners to focus on high-priority incidents and take decisive action to protect our clients’ business operations and reputation.”
“Intezer is well integrated into our SOC team’s daily workflows. It’s all automated. Our analysts now have time for more proactive security.”
“We started on the Starter plan for our EDR alerts and wanted to add phishing reports later. That meant moving up to Complete, and since it's priced by endpoints, the jump was bigger than we planned for.”
Methodology
This page is an independent evaluation of Intezer for buyers comparing options in ai soc & security operations. AI Industry Reviews accepts no sponsorships, advertising, or pay-for-placement fees. Intezer did not pay for this review.
What we scored
The headline number is an Overall Score on a 0-10 scale. Eight criteria sit under it in two groups.
- Buyer outcomes (for ai soc & security operations)
- Autonomous alert investigation
- Forensic depth on files & memory
- Phishing & user-reported email
- Lowest entry price
- Company & commercial
- Innovation & product leadership
- Project management & communication
- Pricing
- Contract fairness
Pricing measures whether the price looks fair for the value delivered, including packaging and renewal friction that show up in real buying cycles.
Score Composition
| Input | Weight | What it covers |
|---|---|---|
| Reviews | 40% | A proprietary read of what practitioners say about likes, complaints, and day-to-day use, including public review sites, forums, and private chat rooms. Paid reviews and pay-for-play sites such as Clutch are out of scope. |
| Product | 35% | Hands-on look at screens and workflows. |
| Pricing | 15% | Whether the price looks fair for what you get. |
| Docs & training | 10% | Docs, tutorials, and training material. |
How we balanced the evidence
The Overall Score is the simple average of the eight criteria. Recommendation language follows that score and the fit pattern described above.
Scope
Intezer is graded here as ai soc & security operations. Criteria scores can move as more review volume and product checks are added.
