Abnormal developed focused artificial intelligence for cybersecurity that excels at analyzing vast amounts of data, identifying patterns, and making quick, accurate decisions about human behavior and attack patterns. Abnormal creates a human behavior baseline via its API ingestion of tens of thousands of human-related signals. This baseline is used by predictive AI and large language models (LLMs) to assess risk, stop attacks, and apply remediation. In addition, Abnormal uses engines that combine both system types, detecting attacks using machine learning-based predictive AI with generative AI agents that refine the decisions of the traditional systems. Generative AI agents are also used to refine and augment the training data that powers the predictive AI systems.
The Abnormal Platform
Learn what’s included in our platform and how it fuels our fundamentally different approach to cloud email security.
See a Demo
One Platform for Your Cloud Email Security Needs
Connect, Ingest, and Understand
The Abnormal platform integrates via API in seconds with Microsoft 365 and its 85+ associated apps, Google Workspace, cloud apps including Slack, Zoom, Workday, Salesforce, cloud infrastructure—AWS, Azure, and Google Cloud Platform—as well as identity providers like Okta and Ping, and other security tools like CrowdStrike and Splunk.
Discover the Architecture
![](https://img.plasmic.app/img-optimizer/v1/img?src=https%3A%2F%2Fimg.plasmic.app%2Fimg-optimizer%2Fv1%2Fimg%2Fdce2109f4c67a5f86f80d1aeef9c5550.png&q=75)
Aggregate Behavior Intelligence
Abnormal Knowledge Bases surface anomalous behavior and activity across your people, applications, tenants, vendors, and threat intelligence. Security analysts use this insight to hunt for threats and investigate potential incidents more quickly.
See the Knowledge Bases
Surface Impactful Insights
Abnormal provides the visibility and control security analysts need to investigate and remediate threats, with comprehensive attack insights and the ability to search for and respond to specific messages and campaigns.
View Demos of Platform Features
Integrate Your Security Ecosystem
Abnormal integrates easily into multiple security operations solutions, including SIEM, SOAR, and EDR/XDR platforms. These API-based integrations allow security teams to leverage Abnormal’s high-efficacy threat detection within existing response workflows.
See Technology Partners
AI-Native and API-Based Architecture Focused on Human Behavior
Microsoft 365 covers a lot of bases. But it doesn't have the speciality Abnormal does to address threats that come from trusted sources like vendors.”
— Kirit Marvania, Digital Operations Director at Mace
Frequently Asked Questions
Trusted By More Than 15% of the Fortune 500
See it for Yourself
Get AI Protection for Your Human Interactions
See the #1 AI-native platform for human behavior security.
Request a Demo
Request a Demo
![](https://img.plasmic.app/img-optimizer/v1/img?src=https%3A%2F%2Fimg.plasmic.app%2Fimg-optimizer%2Fv1%2Fimg%2F1620b1b4a7ef96a0cf0f5552dbf9d14c.png&q=75)