An AI agent can contain an intrusion in 90 seconds — or be turned against you by one poisoned alert. The agentic SOC: bounded authority, six guardrails, investigator-first.