[ Velocity ]
Best for fast paced tech forward businesses looking to establish a modern SOC and SIEM
$50k/yr
up to 500 employees
[ Velocity ]
Best for fast paced tech forward businesses looking to establish a modern SOC and SIEM
$50k/yr
up to 500 employees
[ Scale ]
Best for established firms looking to rapidly modernize their security program
$75k/yr
up to 2,000 employees
[ Megatron ]
Best for mega firms looking to tame a previously unmanageable threat surface and data scale
Custom
you know who you are!
Ask about our starter program, a focused way to get your modern security program up and running.
Ingestion isn’t metered, so keeping more history is a storage cost rather than a licensing one, and compute follows the queries you run rather than the volume you stored. The tables are Iceberg, so other engines can read them.
Perpetual ingests and stores security event data in your cloud account. Your price for Perpetual does not change if your rate of data ingestion increases.
Everyone's data, detection coverage requirements, and alert load is different. Try it today on your own data to see! If you're looking for a ballpark: you can think of Perpetual's data plane cost as being an order of magnitude cheaper than traditional SaaS SIEM list price.
Perpetual reduces your ingest and retention cost to commodity cost levels, which allows you to keep all the data you need to operate your defense, including voluminous sources like EDR and network telemetry. Especially given the importance of behavioral detection as a defense from agentic threats, these sources are more important than ever.
Yes. Perpetual's data plane is tightly integrated with AWS, and can power its LLM capabilities using Bedrock. It can also use other model providers, which you can configure with an API key.
Perpetual's dynamic alert prioritization allows you to operate your agentic SOC within a strict budget. Alerts are investigated in priority order, ensuring that your LLM dollars go to the highest value work.
Perpetual's prioritization is agentic: it uses a detection's configuration combined with a lightweight agent to make prioritization decisions.
In terms of architecture, most AI SOC vendors provide an agent harness for alert triage while sitting on existing tools for ingestion, detection, investigation, and storage.
Alternatively, Perpetual is the complete system for Agentic Security Operations. It tightly integrates its agent harness for security operations with a modern security lakehouse. This keeps broad security event retention affordable and more actionable.
Data Federation is a popular industry buzzward for an approach to connecting security data sources. In many cases, this approach has limitations for SOC analysts to deliver effective hunts, investigations and detections. Because of rate limiting, retention, query semantic power, etc, Data Federation often delivers an incomplete view of foundational data which can limit the analyst’s ability to adequately secure their organizations.
Alternately, with Perpetual, events from these systems get ingested into a modern, cost-effective security lakehouse with a built-in analytic engine. Additionally, Perpetual's agent harness can be extended via MCP where such external systems make sense for mid-case enrichment.
Perpetual is built to complement both qualified SOC Analysts and existing LLM initiatives. Perpetual's agent harness coexists with the harnesses that analysts are actively using. In addition, Perpetual has MCP tool support for all significant product APIs (create/read/update/delete on resources, running queries, etc.), making it easy for your analysts to include Perpetual in their day to day activities.
Perpetual AI chatbot, Simba, helps analysts scale further with background agentic work of triaging and investigating cases. Finally, Perpetual provides agents with flexibility of choice. Simba is included at no extra cost, which empowers analysts to decide to use Simba or a harness they have already tuned.
