Awesome AI for Infra › AI-Powered Automation

Vigil-SOC/vigil

⭐ 342 Python added to this list on 2026-08-03 repository created 2026-03-13

Vigil is an open-source AI-native Security Operations Center (SOC) solution designed for rapid, automated network defense. Inspired by StackStorm, it aims to provide a fully owned, transparent alternative to proprietary AI SOC systems. The platform is built around three core pillars: specialized AI agents, multi-agent workflows, and broad integrations via the open Model Context Protocol (MCP). Vigil features 12 specialized AI agents, including Triage, Investigator, Threat Hunter, Responder, and MITRE Analyst, each equipped with specific roles and access to over 100 tools. These agents form the building blocks for 'Workflows,' which are multi-agent playbooks defined as simple Markdown files. Users can customize existing workflows or create new ones, chaining agents together to automate complex security operations like incident response, full investigations, threat hunting, and forensic analysis. The system is designed with human oversight, requiring approval for high-cost or low-confidence automations. Integrations are a key component, with Vigil connecting to over 30 existing security tools (SIEMs, EDRs, Threat Intel platforms, Sandboxes, Ticketing systems, etc.) using the Model Context Protocol (MCP). This allows agents to access real-time data and execute actions across a diverse security ecosystem. Vigil emphasizes transparency, providing readable Python agent logic and plain-text playbook definitions, enabling security teams to understand, fork, and rewire the system to meet their specific operational needs.

https://github.com/Vigil-SOC/vigil

AI-powered automationSecurity Operations CenterIncident ResponseThreat DetectionCyber SecurityAI AgentsWorkflow AutomationOpen SourceNetwork DefenseAIOpsSecOpsThreat HuntingRoot Cause AnalysisAI-driven SIEMModel Context Protocol

Also in AI-Powered Automation

microsoft/AIOpsLab

AIOpsLab is a comprehensive framework for designing, developing, and evaluating autonomous AIOps agents, providing reproducible and scalable benchmarks for AIOps solutions.

getsavvyinc/savvy-cli

Savvy is a CLI tool that uses AI to create, share, and run command-line workflows, leveraging natural language for automation and explanation of commands and error messages.

mezmo/aura

AURA is an agentic harness that enables Large Language Models (LLMs) to perform SRE work autonomously by providing critical guardrails, API servers, state management, and tool integrations for prod...

bgdnvk/clanker

Clanker is an AI-powered CLI agent designed for autonomous systems engineering across various cloud environments, enabling intelligent infrastructure operations and agent-human collaboration.

bolivian-peru/os-moda

osModa is an AI-native operating system based on NixOS, allowing AI agents to manage server operations through typed, auditable tool access and atomic rollbacks.

ChristoAnsek/audited-change-gate

Certifier is a language-agnostic, zero-trust change management system that uses cryptographic proof-carrying envelopes to verify and gate actions taken by autonomous AI agents in IT operations.