Intelligent operations platform provider Sumo Logic brings agentic AI into enterprise security stack with launch of Dojo AI on AWS

Chas Clawson, Field CTO, Security, Sumo Logic

Sumo Logic, which makes an Intelligent Operations Platform, has  announced the launch of its new Sumo Logic Dojo AI, powered by Amazon Web Services. Sumo Logic is describing Dojo AI as a breakthrough in intelligent, agent-powered security operations. It was built leveraging Amazon Bedrock and the new Amazon Nova family of models to help enterprises address the growing volume and complexity of cyber threats. It also introduces specialized agents that can help automate routine tasks, streamline investigations, and give security teams the freedom and ability to focus on analyzing the highest value security issues facing their organization.

“We’ve used Artificial Intelligence and Machine Learning in the platform for years, but this is the first time we’ve re-architected around agentic workflows,” said Chas Clawson, Field CTO, Security, Sumo Logic. “We started by delivering the framework first, then we’re iterating by releasing discrete agents under a single conversational experience (via MoBot). For example, while one agent might help configure a feature, another can assist in building a new detection, and another can guide an investigation during an incident — all through natural language.”

The environment around the platform has become increasingly dangerous.

“Attackers are using AI and other advanced techniques to outpace defenders, overwhelming SOC teams with alert fatigue, context switching, manual triage, and slow responses from disparate tools. At a time when every vendor is bringing new AI tools to market, the C-Suite is asking which agents can deliver measurable value,” said Keith Kuchler, Chief Development Officer at Sumo Logic. “With Dojo AI, we’re bringing agentic AI directly into the enterprise security stack at cloud scale. By automating hours of manual work and reducing MTTR, Dojo AI helps customers not just keep pace with threats but get ahead of them. In fact, we’ve seen an increase in accuracy of more than 20% during our global rollout to customers.”

By combining the powerful Amazon Nova foundation models of AWS with Sumo Logic’s cloud‑native Intelligent Operations Platform, the company will accelerate innovation for customers in highly regulated industries, helping them detect threats faster, meet compliance requirements, and optimize performance in real time.

“Amazon Bedrock is AWS’s managed platform for building with foundation models through a single, secure API,” Clawson noted. “Amazon Nova is a family of advanced models that power Bedrock. We’ve been cloud-native from day one and early adopters of all AWS technology, so leveraging Bedrock lets us use the most current LLMs while keeping enterprise controls in place. Because we’re building for the future with purpose-built agents, we can pick the best model for each task, and Bedrock gives us that flexibility without reinventing our stack also built on AWS services. Things are changing fast, and there isn’t a better way for us to build AI solutions for the future.”

“Our collaboration with Sumo Logic on Dojo AI exemplifies how Amazon Nova and Amazon Bedrock technologies can transform enterprise security operations,” said Eugene Kawamoto, Director, Amazon Bedrock & AI GTM, AWS. “As security landscapes continue to evolve, Dojo AI demonstrates our shared commitment to helping customers build more proactive security strategies that scale with their business while minimizing operational burden.”

Three agents are  available from the Dojo AI platform out of the gate.

Mobot is now in beta. It is a unified conversational interface that enables seamless interaction with Dojo AI through natural language multi-turn conversations, empowering users to deploy agents and request insights without the need for complex queries. New and experienced Sumo Logic users can get to the root cause faster with natural language investigation.

Query Agent translates natural language questions into efficient Sumo Logic queries, streamlining data exploration. The new Query Agent leverages agentic architecture, improving accuracy and outcomes. It’s built on AWS and integrates seamlessly with the new Mobot interface to deliver a more robust experience.

Summary Agent automatically creates clear, AI-generated summaries of real-time threat insights from Sumo Logic’s SIEM, adding to Mobot for accelerated investigation context.

“Our strength is collecting and correlating telemetry across the entire security stack, including infrastructure and application logs, creating a security data lake you don’t get from point solutions,” Clawson said. “That cross-correlation and a single pane of glass at cloud scale is what makes us a real force multiplier. Building on this foundation, as we add agents, time-to-value significantly improves: insights surface faster, and when humans need to investigate, they don’t have to be “query ninjas.” They can simply work with MoBot as they would with a skilled colleague, and let the agents handle the heavy lifting.”

Sumo Logic customers gain a proven data advantage because the Sumo Logic platform ingests more than 4.5 exabytes of data every day, so Dojo AI agents ramp faster and act more effectively with a single source of truth for data. In addition, specialized agents collaborate to help drive higher accuracy and efficiency, all implemented on an enterprise-grade AWS foundation. Dojo AI is also designed for SOC teams, and enhances analyst productivity rather than replacing human expertise, all while maintaining data privacy and security.

Clawson said this news should excite Sumo Logic channel partners.

“For the channel, this means a unified, end-to-end cyber solution, not a patchwork of hard-to-integrate point tools,” he said. “Partners get standardized triage, faster investigations, and out-of-the-box unified analytics across the tools they already sell. And it’s all now accelerated by agentic workflows, which customers are anxious to implement. MSSPs, MDRs, GSIs, and VARs can all unleash an “army of agents” across their services to deliver end-to-end triage and investigation that spans all customer telemetry. Any time you need search, analytics, data visualization, reporting, compliance, or real-time detection, layering Sumo Logic with Dojo AI makes those motions faster and more consistent — so partners can prove measurable improvements without ripping and replacing existing tools.”

Query Agent and Mobot will be available to all Sumo Logic customers, and Summary Agent will be included at no additional cost for all Cloud SIEM customers. Dojo AI is also available in AWS Marketplace.