Google Threat Intelligence has officially transitioned its agentic artificial intelligence capabilities from public preview to General Availability. Now accessible to all Enterprise and Enterprise+ customers, this development represents a major step forward in scaling cybersecurity expertise, optimizing resource allocation, and streamlining complex security operations across organizations.
The core benefit of this feature lies in its ability to seamlessly support the full spectrum of cyber defense functions. Whether your security team is focused on strategic threat hunting, rapid incident response, or daily alert triage, the platform simplifies the entire operational workflow. Security professionals can now utilize intuitive natural language queries to generate comprehensive, up to date threat reports, execute indicators of compromise searches, and analyze suspicious files, domains, or vulnerabilities.
One of the standout components of this release is the Prompt Library, which allows organizations to instantly utilize expert designed workflows. These structured definitions transform highly complex technical tasks such as tracking historical malware evolution or comparing threat actor tactics into repeatable and highly efficient actions. Additionally, a specialized Malware Analysis Agent triggers automatically to handle deep inspection tasks, automatically extracting command and control (C2) infrastructure data and encryption keys across multiple operating systems in a secure cloud sandbox.
Security teams often express valid concerns regarding the opacity of modern artificial intelligence tools. Google addresses this directly by prioritizing transparency and trust. The system openly reveals its step by step reasoning and thinking process while providing verified inline citations directly connected to high fidelity threat data, successfully eliminating the uncertainty of traditional black box results.
By empowering defenders to solve multifaceted security problems through natural language interaction, this release makes advanced security analysis more accessible, trustworthy, and actionable than ever before. Organizations looking to enhance their situational awareness can now leverage these automated, expert level workflows to stay ahead of rapidly emerging global threats.








Additional Resources and Links:
GTIDocs: Agentic Platform
GTIDocs: Agentic User Guide
Best Practices For Prompt Writing
Operationalizing Google Agentic Threat Intelligence: Transforming Defense Workflows Blog
Active dark web monitoring with Google Threat Intelligence and Agentic TI
