Workflow Detail

Unknown File Reputation

This workflow addresses the scenario where an endpoint security platform reports the execution of a file with unknown reputation—neither known good nor flagged as malicious. In these cases, Fluency triggers an AI-driven investigative workflow to determine file intent, behavior, and impact before deciding on action.

Key Differentiators

CapabilityTraditional SOARFluency AI Workflow
Verdict AnalysisBinary (Yes/No)Soft logic, reasoned output
IOC ExtractionManual or optionalAutomated from sandbox
Infrastructure CorrelationRule-based or absentBuilt into AI scoping
Workflow FlexibilityFixed playbookAI-driven modular workflows
Human EffortRequired to resolve ambiguityReserved for QA/business review
Result ExplainabilityStatic outcomeAI reasoning trace + tagging