Tel Aviv, Israel, January 15th, 2025 – Sweet Security, a prominent player in cloud runtime detection and response, has unveiled its cutting-edge patent-pending Large Language Model (LLM)-powered cloud detection engine. This revolutionary advancement in technology strengthens Sweet’s unified detection and response solution, allowing the reduction of cloud detection noise to an unprecedented 0.04%. With the utilization of advanced AI, Sweet aims to assist security teams in navigating intricate and evolving environments with enhanced precision and confidence.
The introduction of Sweet’s patent-pending LLM technology marks a significant milestone in the realm of cybersecurity. By analyzing cloud variables and anomalies in real-time and adapting the findings to suit the particular cloud environment, Sweet’s cloud detection engine can now detect zero-day attacks and “unknown unknowns” – threats that were previously unidentified or undisclosed. This innovative approach eliminates the need to preset parameters for abnormal or malicious behavior, thus simplifying the differentiation between unusual activities and actual threats.
Sweet’s patent-pending LLM-powered cloud detection engine excels in swiftly validating and vindicating findings by categorizing incidents as “malicious,” “suspicious,” or “bad practice.” This classification system effectively distinguishes between benign anomalous activities and genuine threats, enabling security teams to focus on areas that require immediate attention. By eliminating false positives and streamlining workflows, Sweet’s solution enhances operational efficiency and reduces alert fatigue among security personnel.
The new capability introduced by Sweet Security ensures maximum usability by delivering actionable insights through various means, including an intuitive heat map for immediate identification of danger zones, clear incident labeling to provide context for security analysts, and the identification of relevant problem owners within the organization to streamline incident response. By enhancing response times and promoting collaboration and accountability among teams, this approach facilitates a more efficient security infrastructure.
In dynamic cloud environments, Sweet’s patent-pending LLM-powered cloud detection engine enables scalable Application Detection and Response (ADR) by cross-correlating potential attack patterns with extensive application data to identify the ‘smoking gun’ signals indicative of an attack. This capability offers clarity and precision in applications where traditional rule-based approaches would struggle due to the sheer volume of data.
With the introduction of this advanced capability, Sweet reiterates its commitment to providing clarity and control within cloud environments. By reducing noise, enhancing detection accuracy, and empowering actionable insights, Sweet instills confidence in security teams to operate efficiently even in complex cloud landscapes. The enhanced detection and response capabilities provided by Sweet Security represent a significant leap forward in their mission to deliver unparalleled security solutions for the cloud environment.
“This new capability is a game-changer for cloud security,” remarked Dror Kashti, CEO of Sweet Security. “By leveraging the power of LLMs, we are not only reducing detection noise to near-zero levels but also providing security teams with the necessary tools to act decisively and swiftly. This represents a major advancement in our commitment to delivering top-tier detection and response solutions for the cloud.”
Sweet Security remains committed to safeguarding customer privacy and adheres to stringent privacy standards by processing data securely and responsibly. As the leading provider of Cloud Native Detection and Response solutions, Sweet Security continues to innovate and lead the way in enhancing cloud security infrastructure for organizations worldwide.

