


Find out what your peers are saying about Torq, Anvilogic, SentinelOne and others in AI-SOC.
Since we started working with Torq, I am handling much fewer alerts. It is becoming really easy for me to handle an alert.
We have seen a return on investment, targeting a $600,000 ROI for the year.
I have seen a return on investment with Torq, as the automation reduces the number of employees needed and significantly saves both time and resources.
I have seen a return on investment with Charlotte AI, especially when we have a limited team.
The data points and examples I can share indicate that the environment is more secure.
I have seen a return on investment with Charlotte AI.
It provides us with a summary of the alert and suggests what suspicious activities have occurred, along with guidance on what to look for next.
We have achieved good ROI with Purple AI.
My impression of their technical support during the initial setup was that they were helpful, responded within a reasonable timeframe, and provided exactly what we needed.
The speed and quality of their answers have been pretty good, as I usually get a response within 24 hours, and they follow up well.
We can always get an answer, and the support team are experts in their own system.
What makes customer service and technical support great is that they always respond to me when I have questions.
We have Falcon Complete, so we just call them, and they help us out, which makes it easy to do what we need to do.
When we have issues, we ask Charlotte AI for help in finding and minimizing the issue, and then we draft the tickets correctly to support so they can assist us further.
We just directly get connected to the technical person.
I would rate the technical support for Purple AI an eight out of ten.
Its scalability is good because it has a cloud-native architecture and it expands dynamically to handle thousands of alerts at the same time.
Our case management is super scalable.
In terms of scalability, you can do as long as you can build it, and they can support it.
So, this thing is basically able to analyze, learn, and predict what is normal.
Charlotte AI becomes a starting point whenever there is an issue.
Charlotte AI scales very well with the growing needs of my organization.
If we scale and add any two to three pieces within our existing plan, based on the endpoint, it gives the next term and when we pay the money, it adds that amount in the billing and it's quite easy.
Purple AI has very high chances of scalability.
Purple AI works well for all types of alerts across various data sources and environments; hence, I find it good for scalability.
We have been using Torq for one and a half years, but we have experienced no downtime.
Most of the time, the system is stable as long as the components that they integrate with are stable.
I have never faced any downtime or issues.
I have not experienced any downtime, crashes, or performance issues.
I assess the stability and reliability of Charlotte AI as very reliable.
I have experienced downtime, crashes, or performance issues with Charlotte AI, but I have also seen those get better and the frequency with which it happens has decreased over time.
The only concern is the prompting requirement, as we have to provide prompts in a proper manner, otherwise it will not work correctly.
I have not faced any challenges when implementing Purple AI.
Sometimes it lacks performance and may take a while to load, or it may not show alerts at all, requiring us to log out and log back in.
Torq should offer default templates that can directly scan firewall data and automate actions.
The AI value depends on maturity. Real value depends heavily on telemetry, integration depth, and workflow design, all of which rely on how mature customers are in their SOC department.
It was able to capture data but was unable to differentiate between the agent hostname we are using and the hostname that resides on the back end of the Internet.
I would like it to be formatted into an executive-level review or initial review, so we don't have to spend additional time formatting it.
I would like to see the false positive rate decrease.
Charlotte AI can be improved by being more precise when questions are asked.
AI combined with automation is a very powerful tool, and combining these could reduce both time and work because automation saves time for everyone.
As an improvement, if SentinelOne could focus on IOA similar to what CrowdStrike is giving, that would be a good point.
The only concern related to pricing is the ingestion-based pricing model, which is higher at scale.
When they bring more and more value into the platform, it makes more sense to pay that price, but still, it is expensive.
Before deciding to implement Torq, I considered that compared to our old case management platform, Torq was a much better price and had a lot better value for what you get out of the platform, which was a key consideration for the company.
It is an expensive solution, not an inexpensive solution, but we get through the flexibility.
Providing SentinelOne solution for small scale enterprise, if they could offer better prices, it would be more useful.
I would say the solution is a little expensive.
Torq's unified platform approach to AI SOC automation and case management has significantly benefited us by integrating the case management platform with the automation, which saves time compared to managing multiple point solutions across our security stack.
The fact that I can build whatever I want within my own imagination and skills without relying on code is the best thing about Torq.
You can copy and paste a cURL command. If you have documentation or APIs, you usually have an example on the side. You basically have all the information on how the API call should be. You can just copy that and paste it into a step, and it will just build the step for you.
I have 100% confidence in the responses and recommendations that Charlotte AI provides.
Charlotte AI has changed the way my security team investigates and responds to threats by providing valuable insights in quick succession, allowing us to verify what it has found and then move forward to determine whether something was malicious or benign.
Charlotte AI has changed the way my security team investigates and responds to threats by shortening the time of investigation and helping me find information very quickly.
In today's world, the time to respond to an attack is key.
The best feature is that the summary is very precise, crisp, and presented in layman's language while still including all the technical aspects required for analysis.
Purple AI provides availability and ensures that all threat detection and response are available in a single platform.
| Product | Mindshare (%) |
|---|---|
| Torq | 9.1% |
| Purple AI | 2.4% |
| Charlotte AI | 2.3% |
| Other | 86.2% |

| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 5 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 5 |
| Large Enterprise | 2 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?
Why consider Torq based on reviews?
In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
CrowdStrike Charlotte AI is a generative AI-powered cybersecurity capability built into the Falcon platform. It helps security teams investigate threats, automate repetitive tasks and make faster, more informed decisions by combining AI with CrowdStrike’s security telemetry, threat intelligence and expertise.
What features make Charlotte AI stand out?
What benefits and ROI can users expect?
Across industries, Charlotte AI helps organizations streamline security operations, improve analyst productivity and respond to threats with greater speed and confidence.
Purple AI offers real-time threat detection and security enhancement through AI-assisted summaries and natural language processing. Integrated with various tools, it provides quick incident summaries and improves response times across multiple organizations.
Purple AI empowers users to manage threats proactively with features like the Threat Hunting Quick Start library, enhancing threat intelligence and simplifying security investigations without needing query language knowledge. It integrates seamlessly with tools like SentinelOne, providing real-time visibility and efficient threat detection. Users can save time and improve collaboration through automatic notebook saving, making it easier to handle low and medium alerts efficiently and aiding in the manual investigation of high alerts.
What are the key features of Purple AI?In finance, Purple AI is used to automate threat analysis, manage authentications, and identify vulnerabilities. Healthcare relies on it for mitigating security threats, improving response times, and conducting thorough investigations without extensive expertise. Technology firms use it to enhance threat intelligence to lower barriers for new users entering the field.
We monitor all AI-SOC reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.