In this presentation we share our SOC Use Case on APEX - a deep dive into our agentic security incident triage system, walking through how it was designed, built, and scaled. Expect real-world insights, trade-offs, and lessons learned from taking an agentic AI system from pilot to production.
Speakers:
• Chamika Bandara, Senior Engineering Lead - Engineering, Data & AI
• Veronika Kysilkova, Senior Engineer - Engineering, Data & AI
SOC teams are drowning in alert volume - sign-in anomalies, phishing emails, malicious URLs, multistage incidents — each needing manual triage, enrichment, and escalation across multiple disconnected systems. It's slow, inconsistent, and doesn't scale.
APEX changes that. Built jointly by Deloitte Engineering, AI & Data and Deloitte Cyber, and running on AWS and Amazon Bedrock, APEX autonomously triages, enriches, and escalates security alerts - starting with Sign-in Anomaly Alerts and now expanding into Email use cases.
This session will cover:
• How APEX moved from an advise-only pilot to a governance-approved, client-isolated production capability
• The agent architecture behind triaging Sign-in Anomaly Alerts and Email-based threats
• Real trade-offs in delivering secure, compliance-ready agentic systems in a regulated environment