Skip to content
TrustList
Anomali logo
Endpoint Detection and Response Software

Anomali

Threat intelligence and security operations platform for enterprise and public-sector teams

Anomali cover

About Anomali

Anomali sells threat intelligence software and an AI-driven security operations platform. Its current site describes an agentic SOC that turns security data into governed decisions, built on its ThreatStream intelligence product.

What Anomali offers

  • ThreatStream — threat intelligence platform that enriches data with real-world threat context.
  • AURA agent — triages, investigates and recommends actions with approvals, rollback and an audit trail.
  • Extended detection and response — correlates telemetry against active threat intelligence.
  • Intelligence app store — marketplace of feeds, integrations and analysis tools.
  • Attack surface and dark web visibility — shows exposed assets and external threats.

Who it works with

Anomali says it works with the SIEM, endpoint, cloud, identity and email tools customers already own. It names financial services, critical infrastructure and government among its customers, and states more than 400 enterprise customers.

Key facts

  • Investors: Google Ventures, General Catalyst and IVP
  • Products: ThreatStream, Match and Lens

Profile written by TrustList from the business's own published information, Oct 2026.

What the business tells TrustList

Stability: major incidents
0 incidents measured

Request a demo or quote from Anomali

Protected by reCAPTCHA — Google Privacy Policy and Terms apply.

By sending, you agree we may share your request and contact details with the provider once you confirm your email.

Reviews

Write the first review of Anomali

Used it? Your experience helps other buyers decide.

Write a review

Questions & answers

No questions yet. Be the first to ask about Anomali.

Anomali alternatives

Similar listings buyers compare against this one.

Cloud-based endpoint detection and response with analytics and workflow automation for security teams

Endpoint detection and response tool that records endpoint activity and flags unusual behaviour for security teams

Endpoint detection and response platform for advanced threats in isolated environments

Linux-focused cloud workload security, now presented under Sophos cloud native security

Unified security platform covering endpoint, identity, cloud and network, with round-the-clock monitoring