Capability navigator

Explore the AI security product landscape

Start with a security domain, open a capability, and inspect the reviewed products and behaviors that support it.

Capability domains

6 domains80 reviewed offerings

Runtime Protection

Controls that inspect and enforce policy during live model and agent interactions.

3 capabilities

Prompt and Response Guardrails

Filters and policy checks that block unsafe prompts, responses, and tool calls at runtime.

26 offerings

Amazon Web Services

Amazon Bedrock Guardrails
PREVENT1 source

Amazon Bedrock Guardrails applies inline controls that can block prompt-injection and jailbreak-style requests before model outputs are returned.

Product page

Check Point Software Technologies / Lakera

Lakera Guard
PREVENT2 sources

Lakera runtime AI security positioning includes prompt attack prevention, data leakage protection, and context-aware runtime security controls.

Product page

Cranium AI, Inc. / Aiceberg

Aiceberg Guardian Agent
PREVENT2 sources

Aiceberg Guardian Agent provides runtime visibility and guardrail control over agentic AI decision flows.

Product page

F5, Inc.

F5 AI Guardrails
PREVENT1 source

F5 AI Guardrails applies inline policy controls that can block prompt-injection payloads before requests reach downstream models and tools.

F5 AI Guardrails enforces policies to detect and prevent jailbreak-style attempts that seek to bypass model safety boundaries.

Product page

Google / Google Cloud

Model Armor
DETECTPREVENT1 source

Model Armor scans prompts and responses for prompt injection and jailbreak content and can return a block verdict when a violation is detected.

Product page

Azure AI Content Safety and Prompt Shields identify direct and indirect prompt injection and related unsafe prompt patterns before they reach downstream model behavior.

Azure AI Content Safety applies jailbreak detection and policy filtering to reduce unsafe prompt and response interactions at runtime.

Product page

NEO

Neo Security Platform
PREVENT1 source

Neo Security Platform is positioned to prevent agentic threats by controlling unsafe runtime action paths and over-permissioned execution conditions.

Product page

Palo Alto Networks / Portkey

Portkey
DETECTPREVENT1 source

Portkey invokes Prisma AIRS guardrail checks before and after model requests and can enforce returned block verdicts.

Product page

Palo Alto Networks

Prisma AIRS
PREVENT1 source

Prisma AIRS applies real-time safeguards to AI prompts, responses, model interactions, agent actions, and data exposure paths.

Product page

SentinelOne, Inc. / Prompt Security

Prompt Security
PREVENT1 source

Prompt Security runtime enforcement can block prompt-injection attempts in employee and application AI interaction paths.

Product page

Agent Runtime Governance

Controls for autonomous agent behavior, action approval, and runtime policy decisions.

21 offerings

Cato Networks

Cato AI Security (AISEC)
PREVENT2 sources

Cato AI Security governance controls constrain unsafe autonomous actions and high-risk tool usage for AI agents and applications.

Product page

Cranium AI, Inc. / Aiceberg

Aiceberg Guardian Agent
PREVENT2 sources

Aiceberg Guardian Agent provides runtime visibility and guardrail control over agentic AI decision flows.

Product page

CrowdStrike / Pangea

Pangea AI Security Platform
PREVENT1 source

Pangea provides proxy-based MCP integration to apply guardrails and authentication or authorization controls to agent-to-tool and agent-to-agent communications.

Product page

F5, Inc.

F5 AI Guardrails
PREVENT2 sources

F5 AI Guardrails applies agent-focused runtime controls to constrain unsafe autonomous actions and high-risk tool execution paths.

Product page

NEO

Neo Security Platform
PREVENT1 source

Neo Security Platform is positioned to prevent agentic threats by controlling unsafe runtime action paths and over-permissioned execution conditions.

Product page

Palo Alto Networks

Prisma AIRS
PREVENT1 source

Prisma AIRS verifies agent identity and enforces real-time security controls for agent actions.

Product page

SentinelOne, Inc. / Prompt Security

Prompt Security
PREVENT2 sources

Prompt Security agent-focused governance restricts risky autonomous tool use and unsafe execution decisions.

Product page

Runtime Threat Detection and Response

Detection signals and response workflows for suspicious model interactions and AI misuse.

9 offerings

Google / Google Cloud

Security Command Center
DETECTRESPOND1 source

Security Command Center detects AI-specific threats across the AI stack.

Security Command Center provides response workflows for AI-specific threats across the AI stack.

Product page

Access and Governance

Identity, app control, and governance controls that define who can use AI systems and how.

3 capabilities

AI Access Control

Policy enforcement for user, service, and workload access to AI tools and APIs.

4 offerings

Cisco

Cisco AI Defense
PREVENT1 source

Cisco AI Defense includes AI access and policy controls as part of the platform's documented control surface.

Product page

Palo Alto Networks

AI Access Security
PREVENTPOSTURE1 source

AI Access Security classifies GenAI applications by sanction status and can revoke access or control upload and download actions based on risk and privilege.

Product page

Palo Alto Networks / Portkey

Portkey
AUDITPREVENT1 source

Portkey centralizes authentication, access, and observability for LLM providers and MCP servers through its gateways.

Product page

Zscaler

Zscaler AI Security
PREVENT1 source

Zscaler AI Security can warn, block, or isolate user access to AI applications under acceptable-use and data-protection policies.

Product page

AI SaaS Governance

Discovery and governance of sanctioned and unsanctioned AI SaaS usage.

4 offerings

Microsoft

Microsoft Purview for AI
AUDIT1 source

Microsoft Purview for AI provides classification and compliance tracking artifacts that support governance review of AI information handling.

Product page

Palo Alto Networks

AI Access Security
AUDIT1 source

AI Access Security discovers and categorizes GenAI applications, agents, marketplace plugins, usage, and users.

Product page

Zscaler

Zscaler AI Security
PREVENT1 source

Zscaler AI Security can warn, block, or isolate user access to AI applications under acceptable-use and data-protection policies.

Product page

Identity and Entitlement Control

Least-privilege and entitlement controls for AI components, services, and agent actions.

5 offerings

Tenable Holdings, Inc.

Tenable One AI Exposure
POSTURE2 sources

Tenable One AI Exposure surfaces identity and entitlement risk for AI workloads, including over-permissioned access paths that can increase autonomous abuse risk.

Product page

Data and Privacy

Controls that reduce leakage, overexposure, and misuse of sensitive data in AI workflows.

2 capabilities

Prompt and Response DLP

Data loss prevention and content controls for prompt and response channels.

19 offerings

Amazon Web Services

Amazon Bedrock Guardrails
PREVENT1 source

Amazon Bedrock Guardrails includes sensitive-information policy controls to reduce protected-data leakage in prompt and response flows.

Product page

Cyera

Cyera AI Guardian
PREVENT1 source

Cyera AI Guardian evaluates data-exposure risk and enforces policies to reduce sensitive-data exposure to AI systems.

Product page

F5, Inc.

F5 AI Guardrails
PREVENT1 source

F5 AI Guardrails inspects prompts and responses to redact or block sensitive data and reduce leakage to external AI systems.

Product page

Google / Google Cloud

Model Armor
DETECTPREVENT1 source

Model Armor can inspect, transform, tokenize, and redact sensitive elements in AI prompts and responses through Sensitive Data Protection integration.

Product page

Google / Google Cloud

Sensitive Data Protection
DETECTPREVENT1 source

Sensitive Data Protection classifies and de-identifies sensitive content used for model training, tuning, and generative AI prompts and responses.

Product page

Microsoft

Microsoft Purview for AI
PREVENT1 source

Microsoft Purview for AI applies DLP and sensitivity controls to reduce unauthorized sensitive data transfer in AI interactions.

Product page

Palo Alto Networks

AI Access Security
DETECTPREVENT1 source

AI Access Security classifies sensitive content inline and blocks sensitive text and file transfers to GenAI applications.

Product page

Palo Alto Networks / Portkey

Portkey
PREVENT1 source

Portkey automatically redacts sensitive data from requests before sending them to an LLM.

Product page

Palo Alto Networks

Prisma AIRS
PREVENT1 source

Prisma AIRS applies real-time safeguards to AI prompts, responses, model interactions, agent actions, and data exposure paths.

Product page

SentinelOne, Inc. / Prompt Security

Prompt Security
PREVENT1 source

Prompt Security prompt and content controls redact sensitive enterprise data before it is sent to external models.

Product page

Zscaler

Zscaler AI Security
PREVENT1 source

Zscaler AI Security applies data security and content policies to prevent risky AI outputs and govern response safety.

Product page

Zscaler

Zscaler Data Security
DETECTPREVENT1 source

Zscaler Data Security inspects AI usage and prompts and can block risky access or enforce prompt DLP to prevent data loss.

Product page

Sensitive Data Discovery

Data discovery and classification for AI training, inference, and retrieval sources.

5 offerings

Google / Google Cloud

Sensitive Data Protection
DETECTPREVENT1 source

Sensitive Data Protection continuously discovers and classifies sensitive data across organizational data assets.

Sensitive Data Protection classifies and de-identifies sensitive content used for model training, tuning, and generative AI prompts and responses.

Product page

Microsoft

Microsoft Purview for AI
PREVENT1 source

Microsoft Purview for AI applies DLP and sensitivity controls to reduce unauthorized sensitive data transfer in AI interactions.

Product page

Zscaler

Zscaler Data Security
DETECT1 source

Zscaler Data Security discovers and classifies sensitive data and uses contextual classification to identify data risk across GenAI and other channels.

Product page

Posture and Risk

Asset inventory, posture assessment, and risk prioritization across AI systems.

3 capabilities

AI Posture Management

Configuration, exposure, and control-gap assessment for AI models, data, and pipelines.

14 offerings

Google / Google Cloud

Security Command Center
POSTURE1 source

Security Command Center assesses interconnected AI risks and prioritizes high-risk issues using posture analysis and virtual red teaming.

Product page

NEO

Neo Security Platform
POSTURE1 source

Neo Security Platform analyzes security gaps across agentic and non-agentic software to surface exposure conditions that require remediation.

Product page

Palo Alto Networks

Prisma AIRS
POSTURE1 source

Prisma AIRS provides posture visibility and policy management for AI assets, training and inference data, application integrity, and model access.

Product page

Tenable Holdings, Inc.

Tenable One AI Exposure
POSTURE2 sources

Tenable One AI Exposure analyzes AI posture and misconfiguration conditions to prioritize exposure reduction for AI workloads.

Product page

Zscaler

Zscaler Data Security
POSTURE1 source

Zscaler Data Security provides data posture controls for GenAI and adjacent channels by combining contextual classification with risk identification.

Product page

AI Asset Discovery

Discovery of AI models, datasets, endpoints, and agent components in use.

18 offerings

Cato Networks

Cato AI Security (AISEC)
DETECT1 source

Cato AI Security governs sanctioned and unsanctioned enterprise AI usage through interaction-level visibility and policy enforcement.

Product page

Google / Google Cloud

Security Command Center
AUDIT1 source

Security Command Center discovers and inventories AI assets across agents, data, models, applications, platforms, and infrastructure.

Product page

NEO

Neo Security Platform
DETECT1 source

Neo Security Platform provides visibility into risky misconfigurations and permission issues across enterprise software environments.

Product page

Palo Alto Networks / Koi Security

Koi Agentic Endpoint Security
AUDIT1 source

Koi AES discovers and catalogs autonomous software agents, AI agents, browser extensions, software, and AI models on enterprise endpoints.

Product page

SentinelOne, Inc. / Prompt Security

Prompt Security
DETECT1 source

Prompt Security provides enterprise visibility over GenAI usage patterns and interaction channels.

Product page

Tenable Holdings, Inc.

Tenable One AI Exposure
DETECT2 sources

Tenable One AI Exposure provides continuous discovery of AI assets and attack-surface context across software and infrastructure environments.

Product page

Risk Prioritization

Risk scoring and triage for AI findings using context from identity, runtime, and data.

6 offerings

Google / Google Cloud

Security Command Center
POSTURE1 source

Security Command Center assesses interconnected AI risks and prioritizes high-risk issues using posture analysis and virtual red teaming.

Product page

Tenable Holdings, Inc.

Tenable One AI Exposure
POSTURE2 sources

Tenable One AI Exposure analyzes AI posture and misconfiguration conditions to prioritize exposure reduction for AI workloads.

Product page

Supply Chain and Integrity

Controls for dependency trust, provenance, and AI software supply chain resilience.

3 capabilities

AI-BOM and SBOM Visibility

Inventory and transparency for model, package, and software dependencies in AI systems.

4 offerings

Dependency Integrity

Provenance, signing, and integrity controls for artifacts used in AI build and deployment pipelines.

2 offerings

Model and Tooling Supply Chain Risk

Detection and governance of risky model artifacts, plugins, and AI development tooling.

5 offerings

Chainguard

Chainguard Secure AI SDLC
PREVENT1 source

Chainguard AI Security documents software supply chain coverage across SDLC phases, including trusted dependencies, CI/CD integrity, and hardened runtime foundations.

Product page

Palo Alto Networks

Prisma AIRS
DETECT1 source

Prisma AIRS scans third-party models for tampering, malicious scripts, and deserialization risks.

Product page

Model and Validation

Model-specific assurance activities such as testing, adversarial analysis, and hardening.

1 capability

Model Security Testing

Adversarial testing and validation of model behavior prior to deployment.

13 offerings

Arthur

Arthur Platform
AUDIT1 source

Arthur Platform performs pre-production and runtime evaluations to monitor AI behavior and policy outcomes.

Product page

Check Point Software Technologies / Lakera

Lakera Red
AUDIT1 source

Lakera Red Teaming is positioned as risk-based AI testing with direct and indirect attack simulations and remediation-focused workflows.

Product page

F5, Inc.

F5 AI Guardrails
PREVENT1 source

F5 AI Guardrails enforces policies to detect and prevent jailbreak-style attempts that seek to bypass model safety boundaries.

Product page

Palo Alto Networks

Prisma AIRS
POSTURE1 source

Prisma AIRS simulates real-world attacks against single-agent and multi-agent AI systems to identify weaknesses before production.

Product page