目前位置: 新聞總覽 -> 最新訊息 -> Fortinet advances its Security Operations Platform with Unified SOC, Agentic AI and expanded Endpoint Security
2026年05月20日
Fortinet has revealed key enhancements to its Security Operations platform. The updates aim to help organisations simplify operations, accelerate threat detection and respond more effectively to increasingly complex, AI-driven cyberthreats.
Fortinet, a global cybersecurity leader driving the convergence of networking and security, has announced major innovations across the Fortinet Security Operations (SecOps) Platform at Fortinet Accelerate 2026. Updates feature next-generation SecOps advancements, including expanded Agentic AI capabilities, a preview of FortiSOC, managed services and endpoint security enhancements delivered through FortiEndpoint.

“As attackers weaponise AI to accelerate reconnaissance, exploit development and social engineering, security operations must function with the same speed and coordination,” said Ken Xie, Founder, Chairman of the Board and Chief Executive Officer at Fortinet. “Fortinet is advancing a unified, AI-powered security operations platform that provides a scalable operating architecture across our defence framework, enabling organisations to build, extend or optimise their SOC through a single architecture spanning self-managed, cloud and managed deployments.”
Advancing security operations for an AI-accelerated threat landscape
Security teams must defend an expanding attack surface across endpoints, identity, cloud, email and networks while facing skills shortages, alert overload and fragmented tooling. The Fortinet Security Operations Platform unifies telemetry, analytics, threat intelligence and response across the kill chain, reducing complexity and accelerating investigations without forcing operational rebuilds.
This release strengthens four core areas for organisations:
• SOC modernisation
• Agentic AI execution
• FortiGuard managed services
• Simplified endpoint security
FortiSOC and FortiAI: Unifying cloud SOC and advancing agentic operations
As security operations mature, tool sprawl and workflow fragmentation slow teams down.
At Accelerate 2026, Fortinet is previewing FortiSOC, a cloud-delivered offering that brings together the core capabilities of FortiAnalyzer, FortiSIEM, FortiSOAR and FortiTIP into a single integrated service, while expanding FortiAI to introduce new agentic workflows across security operations.
FortiSOC supports log ingestion, normalisation, correlation, automation, case management, behavioural analytics and identity-focused investigations through a single console and a unified data model, integrating telemetry from Fortinet and third-party environments. Built-in SOC best practices, shaped by Fortinet’s own global SOC operations, are embedded alongside AI/ML and FortiAI capabilities to accelerate analysis and response. Simplified subscription licensing and elastic cloud scale help streamline deployment, while future endpoint and continuous threat exposure management (CTEM) architectural expansions will be incorporated into the FortiSOC experience.
Fortinet is also expanding FortiAI across FortiAnalyzer, FortiSIEM, FortiSOAR and FortiSOC to move beyond interactive copilots towards agentic execution that connects telemetry, tools and response actions across the SOC. Enhancements include a dedicated agent that automates alert triage, investigation, threat hunting and Model Context Protocol (MCP) support to maintain shared context and execution continuity across detection, investigation and response workflows.
FortiGuard SOC-as-a-Service: Strengthening managed coverage
For organisations requiring continuous monitoring and escalation, Fortinet enhanced FortiGuard SOC-as-a-Service, extending the unified SOC architecture with Fortinet expertise and curated intelligence.
Enhancements include third-party log sources for multivendor monitoring, expanded Security Fabric integrations, FortiNDR telemetry to improve detection fidelity and FortiCNAPP telemetry to extend cloud visibility, strengthening investigation confidence across hybrid environments.
FortiEndpoint: Simplifying endpoint security in the AI era
Endpoints remain a primary attack vector and a source of operational complexity. Fortinet announced unified endpoint security enhancements through FortiEndpoint to consolidate multiple endpoint products, reduce agent sprawl, simplify licensing and management and strengthen protection against emerging threats, including AI application misuse.
Enhancements include single-agent unification across ZTNA, SASE, EPP, EDR and DLP, extending data protection without additional agents. Fortinet also introduced FortiAI-powered application visibility and control to detect and govern AI applications and their communications, reducing unsanctioned usage and data exposure risk. Enhanced EDR integration further streamlines management through a unified console and simplified licensing.
Enabling faster and smarter security operations
Together, these innovations advance Fortinet’s SecOps platform by strengthening unified SOC modernisation, previewing a transformative cloud SOC experience, expanding Agentic AI, enhancing managed coverage and simplifying endpoint security. The result is a single architecture that reduces operational complexity, accelerates investigations and enables organisations to defend against AI-driven threats at scale.
source:
https://www.intelligentciso.com/2026/03/23/fortinet-advances-its-security-operations-platform-with-unified-soc-agentic-ai-and-expanded-endpoint-security/