Slack engineering
Read post

Streamlining Security Investigations with Agents

Slack's Security Engineering team built an agentic AI system to automate security alert investigations. The system uses multiple AI personas (Director, Expert, and Critic agents) working collaboratively through structured outputs and defined phases (Discovery, Trace, Conclude). Over 7,500 investigations were performed in the first quarter, with agents making spontaneous discoveries like credential exposures that human analysts might miss. The architecture includes a Hub API, scalable Workers, and a real-time Dashboard, enabling security analysts to supervise investigations rather than manually gather evidence.

    #ai#security#devops#llm#slack
Dec 01, 2025•10m read time•From slack.engineering
Post cover image
Table of contents
The Development ProcessFrom Prototype to ProductionService ArchitectureExample ReportConclusion
1.2K Impressions
Slack engineering's image
Slack engineering

The Slack Blog serves as a resource for teams and developers looking to make the most out of Slack, ...

98 Followers

•

239 Upvotes

Would you recommend this post?

Copy link
WhatsApp
Facebook
X
New Squad
  • © 2026 Daily Dev Ltd.
  • Guidelines
  • Explore
  • Tags
  • Sources
  • Squads
  • Leaderboard