Funding/M&A

Cisco to Acquire WideField Security to Boost Splunk’s Agentic SOC

WideField will accelerate Agentic SOC capabilities by expanding the lens on threat investigation to include identity, credentials, sessions, and blast radius.

Cisco on Thursday announced an agreement to acquire identity lifecycle security company WideField Security to strengthen the capabilities of Splunk’s Agentic SOC. 

No financial details have been publicly disclosed. WideField raised more than $11 million in Series A funding last year. 

WideField has developed technology that enables organizations to discover human and non-human identities, map exposures across accounts and roles, and assess hygiene gaps. 

The company’s platform also enables users to detect misconfigurations in authentication policies and weak authentication paths, providing live session monitoring for real-time threat detection, and AI-powered behavioral analytics.

By integrating this into Splunk’s Agentic SOC and Cisco’s broader data fabric, the acquisition brings deeper identity and session intelligence into threat investigations, adding critical details around credentials, active sessions, and potential impact radius. 

This helps security teams better understand context for both human and AI-driven activity, and organizations gain the visibility needed to run autonomous AI systems securely at scale.

Advertisement. Scroll to continue reading.

This is Cisco’s third cybersecurity-related M&A deal of 2026, after Galileo and Astrix Security.

Cisco’s announcement came on the same day Accenture revealed a major OT cybersecurity push via acquisitions totaling $4.1 billion. The professional services giant is taking a majority stake in Dragos and fully acquiring runZero and NetRise.

SecurityWeek’s M&A tracker has cataloged approximately 190 deals to date in 2026.  

Related: SailPoint to Acquire Entro in Reported $200 Million Deal

Related: Cybersecurity M&A Roundup: 26 Deals Announced in May 2026

Related: 1Password Acquires Apono in Reported $250M-$300M Deal

Related Content

M&A Tracker

The transaction is part of the $4.1 billion deal in which Accenture acquired a majority stake in Dragos in an OT cybersecurity push.

Vulnerabilities

The vulnerabilities may lead to root access, command execution, bypasses, SQL injection, and remote code execution.  

Vulnerabilities

Remote, unauthenticated attackers can exploit the vulnerability to bypass authentication via crafted requests.

Email Security

An unauthenticated attacker can exploit CVE-2026-76461 to execute arbitrary commands on the underlying OS with root privileges.

Data Protection

Financials have not been disclosed, but the estimated cost is in the tens of millions of dollars.

Funding/M&A

Significant cybersecurity M&A deals announced by Brinqa, Cribl, Echo, Fortinet, Kiteworks, Palo Alto Networks, and Visa.

Vulnerabilities

Cisco and CISA have flagged exploitation of CVE-2026-20079, a vulnerability disclosed in March 2026.

Network Security

Publicly disclosed S/MIME flaws could expose encrypted email content, while critical IOS XR and Nexus bugs could enable remote code execution and authentication bypass.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version