- Home >
- Blog >
- Company News
What’s New in Exabeam New-Scale for October 2026
- Oct 01, 2026
- Brook Chelmo
- 3 minutes to read
Table of Contents
Bringing the Agentic SOC to Life
Security operations teams are navigating a new reality. Digital workers increasingly use legitimate credentials to execute workflows, while analysts must investigate faster and manage growing volumes of activity. Because autonomous actors can operate at machine speed, risky behavior can blend into normal business operations and evade traditional rule-based detection.
The October 2026 New-Scale release addresses both challenges. It expands AI-assisted investigation, improves visibility into human and non-human activity, connects related investigations, and adds reporting and governance capabilities that help teams measure and communicate outcomes.
Key Takeaways
- Exabeam Nova AI follows analysts through Threat Center, search timelines, and Outcomes Navigator while retaining conversational context.
- The Exabeam Agentic SOC plugin for Claude Code and OpenAI Codex turns investigative guidelines into simple commands for triage, prioritization, and case investigation.
- Direct Claude Enterprise ingestion places activity logs and chat API data in a standardized timeline for monitoring and behavioral baselining.
- Exabeam Related Cases connects active and historical cases so analysts can identify shared artifacts, entities, and investigation patterns.
- Executive Digest, Outcomes Navigator overrides, and Threat Center data segregation improve reporting, coverage management, and governance.
Nova AI Extends Across Key Workflows
Nova AI is becoming a platform-wide capability and persistent AI investigation partner for security analysts. An activatable sidebar follows analysts through Threat Center, search timelines, and Outcomes Navigator while retaining conversational context.
Nova AI can gather background context, run secondary searches, and retrieve entity profiles in real time. Analysts can continue an investigation without rebuilding context in each part of the platform.
Faster Triage and Investigation With the Exabeam Agentic SOC Plugin
The Agentic SOC Plugin provides investigative guidelines for Claude Code and OpenAI Codex. It translates threat hunting workflows into conversational commands, reducing the need to write complex prompts.
Analysts can use these skills to streamline alert queue triage, prioritize cases, and guide investigations.
Exabeam Related Cases adds historical context by correlating active and past cases in Threat Center. It surfaces shared artifacts and entities, including users, hosts, and IP addresses, so analysts can review earlier notes and reuse containment playbooks.
Greater Visibility Into Claude Enterprise Activity
Direct Claude Enterprise ingestion brings activity logs and chat API data into a standardized timeline. Security teams can use this view to monitor non-human activity and establish behavioral baselines for sanctioned AI environments.
New Reporting and Governance Capabilities
The October update to Executive Digest translates technical security posture improvements into business outcomes and delivers weekly email reports to executives.
Outcomes Navigator overrides let security leaders adjust use case coverage scores when custom or unrecognized data sources satisfy specific security techniques.
Threat Center data segregation partitions one New-Scale subscription into virtual tenants with dedicated site management and role-based access controls for MSSPs and business units.
What These Updates Mean for Your Team
For Security Leaders
Executive Digest provides recurring, business-level reporting without requiring executives to sign in to the user interface. Outcomes Navigator overrides help leaders reflect recognized custom data sources in coverage scores. Threat Center data segregation helps govern separate tenants or business units.
For Security Architects
Claude Enterprise ingestion standardizes activity logs and chat API data in a timeline view. Threat Center data segregation adds dedicated site management and role-based access controls, helping architects structure access for managed services and business units within one subscription.
For Security Analysts
A persistent Nova AI sidebar retains conversational context in key workflows. The Agentic SOC plugin guides triage and investigation. Exabeam Related Cases connects current activity with historical cases, notes, artifacts, entities, and containment playbooks.
Key Terms
Agentic SOC: A security operations model in which analysts work with AI-driven capabilities to investigate and respond to machine-speed activity.
Nova AI: A platform-wide AI capability that assists analysts by gathering context, running searches, and retrieving entity profiles.
Agentic SOC plugin: Investigative guidelines for Claude Code and OpenAI Codex, delivered as conversational commands for security workflows.
Behavioral baseline: A reference view of expected activity used to identify deviations in human or non-human behavior.
Exabeam Related Cases: A Threat Center capability that correlates active and historical cases through shared artifacts, patterns, and entities.
Data segregation: The partitioning of one subscription into virtual tenants with dedicated site management and role-based access controls.
Advancing the Agentic SOC
This release expands AI-assisted investigation, non-human activity monitoring, case correlation, reporting, and governance. Together, these updates help security teams preserve context, prioritize investigations, establish behavioral baselines, and communicate program outcomes.
See the October 2026 Release in Action
Register for the launch webcast to see the October 2026 New-Scale release in action.
Brook Chelmo
Director of Product Marketing | Exabeam | Brook Chelmo is a seasoned cybersecurity strategist and product marketing leader with deep expertise in emerging threats, threat actor behavior, and security technology. He has conducted embedded research with ransomware groups, including direct engagement with Russian cybercriminals, offering rare insights into their operations, motivations, and monetization strategies. Known for delivering award-winning and standing-room-only presentations at global security conferences, Brook helps security teams stay ahead of evolving threats by translating complex threat intelligence into actionable strategies. His work spans product development, threat research, and education, supporting both the advancement of security technology and the global community’s ability to defend against cyber risk.
More posts by Brook ChelmoLearn More About Exabeam
Learn about the Exabeam platform and expand your knowledge of information security with our collection of white papers, podcasts, webinars, and more.