Driver FixRecommendedSound, Wi-Fi or graphics acting up? Check drivers firstFind missing or outdated drivers fast.Check DriversOctober DealsAmazon USOctober deal check: compare before you payAmazon US: current deals, useful picks and tech finds.Check DealsWindows FixRecommendedWindows errors stealing your time? Find the fix fastScan stability, cleanup and performance issues.Fix Now×
Skip to content
The Finance Base
The Money Desk · Blog
Re:

DXC and 7AI Partner on Agentic AI Security Operations Service

DXC and 7AI announced a managed agentic SOC in 2025. Here is what the service is designed to do, how it differs from SOAR and MDR, and which performance, governance and pricing questions enterprise buyers should ask.
From TheFinanceBase Team6 min to read
Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

DXC Technology and cybersecurity company 7AI announced the DXC Agentic Security Operations Center on August 4, 2025, at Black Hat in Las Vegas. The offering combines DXC’s managed-security delivery, incident-response and governance services with 7AI’s agentic-security platform.

It is presented as a DXC-delivered managed service—not a self-service software subscription. The announcement covers alert ingestion through investigation and remediation, but public materials do not disclose pricing, contractual service levels, independent performance benchmarks or the precise actions the system may execute automatically.

What DXC and 7AI announced

DXC said the service would be available worldwide and would use 7AI technology inside a managed security-operations model. DXC also said it had implemented 7AI’s platform in its own SOC. The partnership announcement is available from 7AI.

Party Role described publicly
DXC Technology Managed SOC operation, implementation, support, incident response, breach management, governance, risk and compliance services, customer relationship and global delivery.
7AI Agentic-security platform, specialized agents, security-tool integrations, Dynamic Reasoning technology, investigation automation and audit context.

DXC told CRN that the design goal was to add the technology to an operating SOC without requiring a complete reengineering of existing processes and tools. That is an integration objective, not a guarantee for every customer environment.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
#1 Best Overall
SonicWall TZ280 2.5 Gbps Next-Gen Firewall Appliance, HW Only
  • APPLIANCE ONLY: Hardware unit sold without a service subscription — security services, firmware updates and support are NOT included and must be purchased separately to activate protection.
  • PERFORMANCE: Up to 2.5 Gbps firewall inspection, 1 Gbps threat prevention and 1.2 Gbps IPSec VPN throughput driven by SonicWall's patented Reassembly-Free Deep Packet Inspection (RFDPI) engine.
  • CONNECTIVITY: 8x1GbE + 2x1G SFP in a desktop form factor; zero-touch deploy and manage on-box or via cloud Network Security Manager (NSM).
  • THREAT PROTECTION: SonicOS 8 delivers intrusion prevention, gateway anti-malware, application control, TLS/SSL decryption, Capture ATP multi-engine sandboxing (RTDMI) and reputation-based content & DNS filtering with an active service subscription.
  • BUILT FOR SMALL BUSINESS & BRANCH: Secure SD-WAN, IPSec and SSL VPN plus Zero-Trust Network Access through Cloud Secure Edge keep distributed sites and remote workers protected.

What the agentic SOC is intended to do

The announced workflow runs from an incoming alert to investigation and response:

  1. Ingest alerts: collect signals from the customer’s existing security stack.
  2. Gather evidence: query connected endpoint, identity, cloud, email, network and threat-intelligence systems.
  3. Investigate: assess the alert and determine what evidence to collect next.
  4. Assess and escalate: recommend a disposition or send the case to human operators.
  5. Respond and remediate: carry out approved containment or other actions, subject to the customer’s permissions and operating model.
  6. Record the case: retain investigation evidence and an activity trail for review.

The public announcement establishes intended scope, not universal autonomous execution. It does not specify which connectors support read-only enrichment, investigation queries, suggested responses, automatic responses or rollback.

What “agentic AI” means here

Generative AI

A generative system produces text such as a summary, explanation or recommendation. It may help an analyst understand a case without operating security tools itself.

Rank #2
SonicWall TZ280 2.5 Gbps Firewall, Secure Upgrade Plus Adv 2-Yr NGFW
  • SECURE UPGRADE PLUS PROGRAM (2-Yr, Advanced Edition): SonicWall upgrade path that bundles a new TZ280 appliance with the Advanced Protection Suite (APSS). REQUIREMENTS: for customers upgrading from an existing SonicWall firewall; a qualifying prior unit may be required at registration.
  • SERVICE BUNDLE – ADVANCED PROTECTION SUITE (APSS): all Essential services plus Capture ATP cloud sandboxing with patented RTDMI, advanced DNS security, cloud Network Security Manager (NSM) management, reporting & analytics, and 24/7 support — SonicWall's recommended all-in security suite.
  • PERFORMANCE: Up to 2.5 Gbps firewall inspection, 1 Gbps threat prevention and 1.2 Gbps IPSec VPN throughput driven by SonicWall's patented Reassembly-Free Deep Packet Inspection (RFDPI) engine.
  • CONNECTIVITY: 8x1GbE + 2x1G SFP in a desktop form factor; zero-touch deploy and manage on-box or via cloud Network Security Manager (NSM).
  • BUILT FOR SMALL BUSINESS & BRANCH: Secure SD-WAN, IPSec and SSL VPN plus Zero-Trust Network Access through Cloud Secure Edge keep distributed sites and remote workers protected.

SOAR automation

A security-orchestration, automation and response (SOAR) platform normally follows prewritten playbooks: when defined conditions occur, it runs the matching workflow. This is predictable when the situation matches the rule, but novel or ambiguous cases generally require analyst intervention.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

7AI’s agentic model

7AI says its “Dynamic Reasoning” agents choose an investigative approach for unfamiliar threats rather than relying only on static rules or prewritten playbooks. The company describes agents moving among security systems in a way analogous to a human investigator; that is a vendor description, not an independently verified benchmark. Its current platform page positions the technology across detection, investigation, response and threat hunting, with humans retaining oversight and judgment.

Where human responsibility remains

The launch used the phrase “fully autonomous AI agents,” while DXC described the practical objective as augmenting existing people and tools. 7AI’s current messaging similarly keeps humans “on the loop.” Before signing, a buyer should obtain written answers to these questions:

  • Which actions can run without approval, and which require a named customer or DXC approver?
  • Can the service isolate an endpoint, disable an account, block an indicator or change a firewall rule?
  • Can approval thresholds differ by asset, severity, business unit or time of day?
  • How are high-impact actions reversed, and how quickly can access be revoked?
  • What happens when evidence is incomplete, contradictory or potentially manipulated?
  • Who owns the decision and liability when an automated response is wrong?
  • Can the customer inspect the evidence, tool calls, approvals and final reasoning?

Least-privilege credentials, approval gates, immutable logs and tested rollback procedures should be treated as baseline controls for any system able to modify security tools.

What DXC contributes beyond the platform

DXC brings an existing SOC, managed-security staff, implementation capability, global delivery infrastructure, incident-response and breach-management services, and governance, risk and compliance support. DXC also said it can use threat intelligence and anonymized threat-pattern data while protecting client information.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

This service layer matters commercially. A customer is buying an operating outcome, escalation path and contractual relationship—not merely access to an AI interface. DXC told CRN that its design should remain operable if the underlying technology changes or becomes unavailable; the continuity arrangement should be verified in the contract.

Rank #4
FortiGate-40F Firewall Appliance - 5 Gigabit Ethernet RJ45 Ports, Ideal for Small Businesses (Appliance Only, No Subscription) (FG-40F)
  • Compact and Efficient Design: The FortiGate 40F is designed for small to mid-sized businesses and enterprise branch offices, featuring a compact, fanless desktop form factor that ensures quiet operation and minimizes space usage.
  • Robust Connectivity Options: Equipped with 5 GE RJ45 ports, including 1 WAN port and 4 internal ports, this model provides essential connectivity and flexibility for various network configurations in a small-scale environment.
  • High-Performance Security: Offers up to 1 Gbps IPS throughput and 600 Mbps threat protection throughput, using Fortinet’s purpose-built security processor technology to deliver industry-leading performance and protection for SSL encrypted traffic.
  • Advanced Threat Protection: Integrated with Fortinet’s AI-powered FortiGuard Labs, the FortiGate 40F offers comprehensive cybersecurity, identifying and mitigating both known and unknown threats to maintain robust security across your network.
  • Simplified Management and Deployment: Features a user-friendly management console that provides comprehensive network automation and visibility, coupled with Zero Touch Integration with Fortinet’s Security Fabric for easy deployment.

Efficiency figures: useful signals, not proven ROI

The companies published several figures, all of which should be read as company-reported or projected claims:

Claim Qualification
224,000 analyst hours saved in 2025 7AI-reported aggregate; public methodology, baseline, sample and independent validation were not provided.
Approximately 112 analyst years and $11.2 million in reclaimed productivity 7AI’s conversion of the hours claim; it is not audited customer savings.
30 minutes to 2.5 hours saved per investigation DXC estimate; it should not be generalized to every technology stack or case type.
More than $100 million in customer savings during 2025 7AI projection, not a published, independently verified result.
4.5 million daily security threats across 25 delivery centers DXC-reported operational figure; the public material does not define whether “threats” means alerts, events, detections or another internal measure.

“Analyst hours saved” can reflect faster investigation, changed filtering, reassigned work or suppression. A serious evaluation should compare total alerts, investigated alerts, suppressed alerts, true positives, false negatives, escalations, closed cases, automated actions and human-reviewed actions before and after deployment.

How it differs from MDR and SOAR

Approach Typical operating model Key buyer question
Traditional MDR Human-led monitoring, triage, investigation and escalation using SIEM, EDR, playbooks and defined service levels. What coverage, staffing and response commitments are included?
SOAR Deterministic workflows that execute prewritten playbooks when conditions match. How much of the customer’s process must be engineered in advance?
DXC Agentic SOC DXC-managed operations using 7AI agents intended to investigate alerts beyond fixed playbooks, with human oversight for judgment and consequential response. Which investigations and actions are genuinely autonomous in this environment?

7AI’s current PLAID ELITE page says agents investigate every alert while human experts handle judgment, response and escalation. That later product positioning should not be assumed to define every feature of the 2025 DXC service.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Best Value
SonicWall TZ370 High Availability | Gen7 Firewall HA Model, Requires Secondary Unit - Not a Standalone Device | Redundant Appliance for Continuous Network Uptime and Failover (02-SSC-6443)
  • SonicWall TZ370 High Availability Unit (02-SSC-6443) - Seamless Failover Protection: Designed to pair with a primary SonicWall firewall for automatic failover and continuous network uptime. Not a Standalone unit - requires an identical primary SonicWall appliance; cannot function independently.
  • Protects against encrypted malware and intrusions using DPI-SSL inspection, IPS, anti-malware, and Capture ATP sandboxing with RTDMI detection.
  • Secure SD-WAN intelligently steers traffic across links to reduce MPLS costs and improve cloud application performance for branch users.
  • Zero-Touch deployment, SonicExpress onboarding, and centralized management via Network Security Manager simplify rollout and ongoing operations.
  • Scales up to 900,000 to 1,000,000 concurrent connections depending on policy mix, supporting secure growth across users and devices.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Current product context and availability

7AI now describes three engagement models: operate the platform yourself, use the fully managed PLAID ELITE service, or build on the platform as a partner. Those descriptions are useful context, but the original DXC announcement does not map the DXC service feature-by-feature to PLAID ELITE, federated SIEM, security posture or other later product pages.

No public price was stated on the reviewed official pages. The buying path is a demo or enterprise conversation through 7AI’s contact page. DXC’s announcement cites DXC’s Agentic SOC destination; buyers should confirm current regional eligibility, service packaging and contracting entity directly.

What enterprise buyers should verify

Technical fit

  • Named integrations for SIEM, EDR, identity, cloud, email, network and threat intelligence.
  • Whether each connector supports enrichment, investigation, recommendation, automatic action and rollback.
  • API permissions, hybrid and multicloud coverage, tenant isolation, data residency and retention.
  • Compatibility with existing customer playbooks, exceptions and change-control processes.

Operational fit

  • Current alert volume, false-positive rate and required MTTD and MTTR targets.
  • Named personnel, escalation paths and breach-response coverage.
  • A migration, parallel-running and rollback plan.
  • How uncertainty, unavailable tools and after-hours approvals are handled.

Governance and risk

  • Human approval requirements for destructive actions.
  • Auditability, explainability and model or prompt-change management.
  • Protection against prompt injection and malicious tool instructions.
  • Privileged-access controls, customer-environment separation, liability, indemnity, insurance and breach-notification terms.
  • Business continuity if the AI platform or a connector is unavailable.

Commercial terms

  • Pricing basis: endpoint, alert, investigation, outcome or another measure.
  • Implementation, integration, incident-response, retention and overage fees.
  • Included analyst coverage, acknowledgment and containment SLAs, service credits and minimum term.
  • Data export, exit assistance and the customer’s ability to retain evidence after termination.

Competitive context

The relevant alternatives are not identical products. Traditional MDR providers emphasize human-led monitoring and response; SOAR vendors emphasize deterministic orchestration; security-platform vendors such as CrowdStrike, SentinelOne and Palo Alto Networks Cortex center operations around their ecosystems; and large integrators such as IBM Security, Accenture Security and Deloitte Cyber combine consulting, managed operations and incident response.

Compare providers on telemetry breadth, tool neutrality, autonomous investigation, human oversight, automated remediation, incident-response depth, data handling, customer control, transparency, pricing, migration difficulty and evidence of production scale. No apples-to-apples performance comparison was established in the public material.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Bottom line for prospective customers

The DXC–7AI partnership is commercially significant because it places agentic investigation technology inside a global managed-services operation. It may suit organizations seeking DXC implementation, response and governance around a modern SOC model. It should not yet be treated as a proven replacement for an existing SOC or MDR provider. Request production metrics, connector-level demonstrations, approval and rollback controls, contractual accountability, continuity provisions and transparent pricing before authorizing a broad deployment.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Leave a Reply

Your email address will not be published. Required fields are marked *

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

More post from the Money Desk

  1. The Money DeskBlogTheFinanceBase07 MAR 2625 minWhat Is a 457 Plan?
  2. The Money DeskBlogTheFinanceBase07 MAR 2621 minTime Value of Money: What It Is and How It Works
  3. The Money DeskBlogTheFinanceBase07 MAR 2627 minAre You Living in One of These Top 10 Most Expensive Cities to Retire?
Recommended PC Tool
Recommended PC Tool
Crashes, No Sound, or Screen Glitches?Free driver scan
PC Slower Than It Used to Be?Free scan - under a minute

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.