Cisco Releases Open-Source Security LLM for SOCs

Cisco's Foundation AI team released and open-sourced the 8-billion-parameter Llama-3.1-FoundationAI-SecurityLLM-1.1-8B-Instruct (Foundation-sec-8b-instruct), trained on an offline cybersecurity dataset and demonstrated at Black Hat Europe NOC/SOC in London. Integrated into Cisco XDR via workflows and playbooks, the model summarizes alerts, maps MITRE ATT&CK TTPs, traces attack paths, and drafts incident reports to accelerate SOC triage and investigations.
Scoring Rationale
High practical impact and official release, limited by being a vendor-specific model focused on SOC workflows.
Practice with real Logistics & Shipping data
90 SQL & Python problems · 15 industry datasets
250 free problems · No credit card
See all Logistics & Shipping problemsStep-by-step roadmaps from zero to job-ready — curated courses, salary data, and the exact learning order that gets you hired.
Sources
- Read OriginalBlack Hat Europe: Enhancing Security Operations With Cisco XDR and Foundation-sec-8b-Instruct LLMblogs.cisco.com


