Welcome to Sekoia
Sekoia is an AI-powered Security Operations Center (SOC) platform that helps security teams detect, investigate, and respond to threats faster. This documentation guides you through everything you need to get up and running.
Choose your path
Your starting point depends on your role.
You are an analyst
You have received an invitation to join a workspace. Your goal is to understand the platform and start using it to detect and respond to threats.
| Step | What to do |
|---|---|
| 1 | What is Sekoia: Learn what Sekoia is and how its products work together. |
| 2 | Set up your account: Log in, secure your account, and customize your interface. |
| 3 | Understand your subscription and usage: Identify your license type, retention settings, and consumption limits. Then review Monitor your usage from the start. |
| 4 | Start using Sekoia: Follow the quick start guide for your product: Defend, Intelligence, Reveal, Elevate. |
Your onboarding journey
Follow this sequence after you receive your invitation:
- Join your workspace or community from the invitation email.
- Set up your account and secure your access.
- Understand your subscription and usage before configuring data sources. Check your license type, retention period, asset or data limits, and current consumption.
- Set up your solution with the relevant quick start guide.
- Train with the documentation or the Sekoia Academy, depending on your preferred learning format.
- Get help from the documentation for product questions. Contact your Customer Success Manager (CSM) for guidance about your specific situation when your account includes one. Contact Support for technical issues, bugs, and improvement requests.
You are an administrator
You are responsible for setting up Sekoia for your team. Your goal is to configure the workspace, invite users, and make the platform ready for operations.
Admin tasks
The Set up your workspace section is intended for administrators. It covers subscription management, user and role configuration, API keys, and notifications.
| Step | What to do |
|---|---|
| 1 | What is Sekoia: Learn what Sekoia is and how its products work together. |
| 2 | Set up your account: Log in and secure your account. |
| 3 | Set up your workspace: Configure your subscription, invite users, assign roles, and prepare the environment. |
| 4 | Start protecting your organization: Follow the Defend quick start alongside your analysts. |
What you will find in this documentation
| Section | What it covers |
|---|---|
| What is Sekoia | Platform overview, key concepts, navigation, glossary |
| Set up your account | First login, two-factor authentication, interface customization |
| Understand your subscription and usage | License type, retention settings, limits, and links to usage monitoring and optimization guidance |
| Set up your workspace (Admin) | Subscription, users, roles, API keys, notifications |
| Quick start: Defend | Connect data sources, activate detection rules, triage alerts, automate responses |
| Quick start: Intelligence | Explore the threat database, read reports, set up feeds |
| Quick start: Reveal | Asset intelligence setup |
| Quick start: Elevate | AI-powered alert triage with autonomous investigation and verdicts |
| Get help | Support portal, Academy, community, troubleshooting |
Related links
- What is Sekoia: Overview of the Sekoia AI SOC platform and its product suite.
- Understand your subscription: Identify your license type, retention settings, and consumption limits.
- Support and resources: Learn when to use the documentation, your CSM, or Support.
- Glossary: Definitions of key terms used across the platform.