# TandemTrace Use Cases

Security teams add TandemTrace to tools they already trust. These use cases show what changes when every eligible alert is investigated and threat hunting continues around the clock.

## Customer and deployment use cases

- [MSSP with many CrowdStrike tenants](https://www.tandemtrace.ai/why/use-cases/mssp-crowdstrike/): autonomous investigation and continuous hunting across isolated customer environments.
- [Complex enterprise](https://www.tandemtrace.ai/why/use-cases/complex-enterprise/): connect a fragmented multi-vendor security stack into one investigation layer.
- [On-premise AI SOC](https://www.tandemtrace.ai/why/use-cases/on-premise-ai-soc/): private deployment, measurable analyst agreement and human-approved response.
- [Cloud security operations](https://www.tandemtrace.ai/why/use-cases/cloud-security-operations/): separate routine activity from automation risk and turn missing telemetry into a coverage plan.
- [XDR and MDR cost model](https://www.tandemtrace.ai/why/lower-costs/): retain trusted endpoint controls while reducing premium managed-investigation layers.
- [SOAR cost model](https://www.tandemtrace.ai/why/lower-costs-soar/): replace investigation playbook complexity while retaining approved response controls.

