Legion: Scaling Security with AI

Cybersecurity professionals are under siege.
Cybersecurity is arguably the most critical and understaffed area of an enterprise’s workforce. The global cyber workforce shortage has ballooned past 4M unfilled roles,[1] while the typical enterprise now faces ~5K security alerts every day.[2]
To date, despite the ~$145B spent on cybersecurity software,[3] enterprises are spending nearly 50% of their security budget on labor.[4] Previous attempts at automation and AI have failed to deliver – with the typical organization only running a handful of playbooks and using AI to prioritize a myriad of false positives. Meanwhile, AI adoption is creating new, rapidly evolving risks that organizations are underequipped to handle.
How can human defenses scale fast enough to meet tomorrow’s cyber threats?
Enter Legion Security.
Legion Security is an AI security analyst capable of automating security teams' most complex workflows. Unlike traditional tools that rely on brittle playbooks and rigid integrations, Legion operates as a browser extension that can reason across fragmented toolchains, take contextual actions, and adapt dynamically without the need for constant human intervention.
The product leverages the browser to interface with any tool in your environment. It also uses LLMs finetuned on historical incidents to intelligently triage and respond to threats in real time. The observed analyst behavior serves as the basis for automations, which means automations are personalized for each organization. Legion continuously learns from individual user interactions to execute tailored workflows.
This approach lets Legion scale your team’s tribal knowledge into AI-powered workflows. Ones that adapt to your environment, evolve continuously, and always keep analysts in control. It’s automation that earns trust before it takes action.
Security leaders at large enterprises are already seeing measurable results in the field:
At a Global 2000 financial institution, Legion has reduced average response time from 19 minutes to 2 minutes, effectively replacing the workload of 9 full-time analysts.
At a public healthcare company, Legion is handling 75% of Tier 1 alerts, freeing human analysts to focus on more complex tasks.
Legion’s founding team brings immense credibility and technical depth. Ely and Michael led product and engineering at Microsoft Sentinel from inception to a $1B+ run rate, and Eyal has been building with GenAI since his PhD days at Cambridge, long before LLMs went mainstream.
We’re privileged to lead Legion Security’s Series A and work alongside Accel and Picture Capital.
As AI reshapes every domain, security must evolve faster than the threats it faces. We look forward to supporting the Legion team as they seek to pioneer a new approach to proactive defense and deliver highly scalable, around-the-clock security.
1 ISC2 (2023)
2 MSFT (2024)
3 Gartner Information Security Forecast (2024)
4 Forrester Survey & IANS CISO Survey (2024)