FAQ
Questions CISOs ask in the first meeting.
The answers we give on a Zoom call, written down. If something here doesn't address your question, the fastest path is a direct reply - we read every message.
-
What is managed AI for security teams?
Managed AI for security teams is a service - not a product - where one team builds, deploys, and operates AI agents inside a customer's existing security stack. Customers do not buy a platform to administer. They engage a managed provider to run a specific outcome - alert triage, vulnerability management, access reviews - end to end. Gradient is the managed AI provider for enterprise security teams: our forward-deployed engineers operate tailor-made agents in your environment, and the agents run autonomously and fast, 24/7.
-
How is Gradient different from self-serve AI platforms or copilots?
Self-serve AI platforms hand your team another console, prompts to maintain, and a model to babysit. Gradient takes that work. We manage the model, the prompts, the evals, and the operating cadence. Your team owns the security outcome - and we're accountable for getting you there. Same SLAs as a tool, same flexibility as a team.
-
How are you different from a consulting firm?
Consultants are slow and expensive, and the work is hard to maintain after they leave. We deliver productized work via reusable building blocks at software speed - and we stay: managed operation is part of the model, so the agents keep working and keep improving after they ship.
-
Is this a chatbot we have to prompt every time?
No - agents are autonomous by default and run continuously in the background. Routine tasks run end-to-end with no human involvement; higher-stakes actions pause for your approval. You set the policy for when the agent acts on its own and when it checks back with you.
-
What's the typical deployment path?
We start with one use case - usually whatever workflow is most painful - and scope, build, and ship it together, with a working agent live in your environment in two weeks. The platform under each new agent inherits what previous agents learned about your stack, so the second agent ships faster than the first.
-
How fast can we be live?
A working agent in two weeks - starting from a 30-minute scoping call. Our forward-deployed engineers deploy and operate the agent live in your environment.
-
What controls does my team have over agent actions?
Agents are sandboxed and run with tightly scoped tool access - they can only touch the systems and actions you explicitly approved. Beyond the prompt, the platform enforces hard limits at the connector level, so an agent literally cannot read or write outside its scope. Every action lands in an approval queue before it touches a system. When you trust an agent's judgment on a specific class of action, you opt it into auto-execute.
-
What tools does Gradient integrate with?
Gradient connects to the tools your team already uses - across endpoint, identity, SIEM, ticketing, code, cloud, vulnerability, and compliance evidence systems. We don't publish a marketplace and we don't make you migrate. If your team uses it, we wire to it.
-
Do you reuse use cases across customers, or is every build from scratch?
We reuse common building blocks and blueprints, then tailor the configuration to your environment. Security teams' needs are more similar than they appear - commonality speeds delivery; tailoring handles the rest. And we never share your data between customers.
-
Is Gradient SOC 2 compliant?
Yes. SOC 2 by default. The platform is built for the same controls your auditors are already going to ask about - change management, access reviews, audit logging, encryption at rest and in transit.
-
Do you train on our data? Who owns what?
We run evaluations on your data so each agent performs well in your environment - that stays private to you and is never shared. Training on your data is opt-in; if you'd rather we didn't, we won't. Anything that ever feeds shared model improvement is anonymized first - identities, asset names, and configurations stripped. You own your raw data and the agent configurations built for you, and you can request deletion at any time. You can also bring your own LLM API keys for full visibility into external usage.
-
Where does our data live? Can you deploy in our own cloud?
We support a spectrum from fully managed - our default and fastest - to fully isolated. Depending on what matters most to you, that can mean a dedicated isolated tenant in our cloud, bring-your-own-key encryption so your data stays under your control, or running inside your own cloud on our infrastructure. No customer data leaves the perimeter you choose unless you explicitly allow it.
-
Can Gradient replace the tools, services, or offshore work we already pay for?
Often, yes - and that's the third phase of the engagement. When the agents are doing the operational work, the dashboards bought to look at the work become optional. So do the manual hours, the outsourced services, and the offshore queues. We don't push consolidation; it shows up as a natural consequence of agents doing the work end to end.
-
Why shouldn't we just build agents in-house?
With Gradient you're still building - your team builds on the platform as a toolkit, with security-specific building blocks already in place - you're just not building the infrastructure. Our agents verify where a raw LLM guesses, run at a fraction of the cost with the smallest model that fits, and handle the edge cases where an agent built on a laptop quietly breaks. Your team stays focused on security outcomes instead of babysitting agent infrastructure.
-
Are we locked in? What happens if we end the engagement?
No lock-in - the Gradient platform supports exporting your agents, so they can be migrated to another orchestration platform or environment of your choice. What you built stays yours: your data, blueprint configurations, and agent workflows move with you. Gradient's platform, building blocks, and core technology remain ours.
-
How much does Gradient cost?
Fixed price per use case - each use case delivers a defined output, and we estimate the price from the size of the organization it will operate on. Annual subscription; managed operation is included. No per-seat restrictions, no per-query caps - and no upfront build cost: we absorb the work of building and configuring each agent. You test agents on your own data and see measurable results before committing.
-
Do you run a proof of concept before we commit?
Yes - try before you buy. We scope your top pain points, pick the initial integrations, and validate an agent on your real data, so you see actual outcomes rather than just a dashboard. We start with a single use case to prove value, and you can contract for more once it's working.
Tell us your most painful security workflow.
Book a 30-minute scoping call - and have a working agent live in your environment in two weeks.