Technology

Paramount Assure Launches SoCMate for Security Operations Teams

Bakhtawar Majid

By: Bakhtawar Majid

3 min read


The Dubai based cybersecurity company is using natural language AI to help security teams investigate incidents without replacing the systems they already use. 

[For more news, click here]

Paramount Assure has launched SoCMate, a new AI tool designed to help security operations teams investigate cyber incidents. The product was unveiled at GISEC Global 2026 in Dubai, with the company presenting it as an investigation assistant for teams dealing with large amounts of security data. 

SoCMate lets analysts use natural language questions to investigate security events rather than manually working through different sources of information. The current version is available for Microsoft Sentinel, putting the tool alongside an existing security platform rather than asking customers to replace it. Security operations teams already have established systems collecting alerts and other security data, but investigating an incident can still require analysts to search across those systems and work out how individual signals are connected. SoCMate is intended to handle some of that work by bringing the information together and giving analysts a natural language way to investigate it.  

The company says investigations involving lateral movement that typically take two to four hours, and data exfiltration investigations that can take four to eight hours, can be reduced to around eight to 10 minutes using SoCMate. The tool is aimed at CISOs and Level 2 and Level 3 security professionals, and can connect information from different security sources, build context around an incident and recommend possible next steps while leaving the response decision with the security team.  

The product fits into a wider push to bring AI into specific parts of security operations rather than treat it as a replacement for the wider security stack. Paramount's broader AI offering works with Microsoft's security products, including Sentinel, Defender XDR, Purview, Entra and Defender for Cloud. The company has operated in the Middle East since 1992 and says it has more than 400 customers and more than 575 cybersecurity professionals. Its services include security operations, managed security, cloud security and data security, with operations across the UAE and other Gulf markets. It also says it supports more than 24 GCC banks and has more than 30 government customers.  

Large organizations across the Gulf continue to rely on international security platforms, while regional companies are developing software that works alongside those systems and addresses particular operational needs. SoCMate takes that route rather than competing with the underlying platforms themselves. There is a practical reason for it. Large organizations are unlikely to replace established security infrastructure every time a new cybersecurity product enters the market, while a tool that works with what is already installed has a simpler path into an existing SOC. 

Whether SoCMate can deliver the time savings claimed by its developer will come down to how it performs with the messy data and varied incidents that security teams deal with outside a product demonstration. The launch also points to a more practical direction for regional cybersecurity companies, with locally developed tools being built around the technology Gulf enterprises already use rather than attempting to replace it. 


Related Articles 

Why the UAE Decided to Stop Buying Its Cybersecurity and Start Making It 

CPX Holding Rebrands as UAE Cybersecurity Moves from IT Function to National Priority 

Censys and Rilian Launch a Cyber Defense Program for the UAE’s Hospitals and Power Grids 


 

Share this article

Related Articles