What is agentic security orchestration?
Software agents that carry a security workflow end to end — triage, correlation, staged response, verification — rather than emitting alerts for humans to chase. The difference between agentic orchestration and automation scripts is judgment scope: Praxis agents decide within an explicit policy envelope and hand everything else to a designated human.
Is this the same thing as an "autonomous SOC"?
No — deliberately. Praxis is bounded autonomy: every action is policy-scoped, attributable, reversible where the platform allows, and written to a tamper-evident audit log. The judgment calls stay with your team; the agents carry the load.
Do Kavach and Argus act on their own?
Only as far as the engagement mode you set — per action class, per tenant. Watch and Advise never act. Approve stages the action and waits for the role you designate. Pre-authorized executes only the threat classes you explicitly granted, then reports with evidence.
Does Praxis require all four Centeye solutions?
No. Praxis orchestrates whatever you run — Ironwatch™ (EDR & XDR), Gatewatch™ (ITDR), Lighthouse™ (email security), Lumen™ (shadow AI) — but correlation compounds: every added surface gives the agents more of the attack chain to read, so one incident per attack gets sharper as coverage grows.
How is the AI cost governed?
The reasoning cascade is layered by design: deterministic checks first, learning models next, deep reasoning only where a case is genuinely ambiguous. The economics are part of the architecture — no metering surprises passed to you or your clients.