Security category

AI Security and Governance

Help your organization adopt AI confidently while protecting sensitive data, managing identities, controlling AI usage, and securing AI-enabled applications.

What this category includes

  • AI discovery: sanctioned tools, shadow AI, agents, and embedded model features
  • AI governance: acceptable use policy, approval workflow, and audit trail
  • Data protection in prompts, retrieval pipelines, and model outputs
  • Model and agent identity, access, and permission control
  • Security testing for AI-enabled applications and LLM integrations

Why it matters now

AI adoption is outpacing security review in most organizations. Employees, developers, and agents are already moving regulated data through models that were never inventoried, and regulators and customers are starting to ask for evidence of control.

Common buyer triggers

  • A copilot or internal LLM rollout reaching production
  • Discovery of sensitive data in prompts or model logs
  • Customer or regulator requests for AI governance evidence
  • Developers shipping AI features without a security review path
  • Autonomous agents gaining access to production systems

Key capabilities to evaluate

  • Shadow AI discovery across browser, endpoint, network, and SaaS
  • Prompt and response inspection with redaction rather than blunt blocking
  • Policy granularity by role, data classification, and use case
  • Coverage for agentic and API-based AI traffic, not just chat interfaces
  • Evidence and reporting mapped to emerging AI frameworks
  • Low-friction user experience that avoids driving staff to unmanaged tools

Questions to ask vendors

  • How is prompt and response data stored, and can we keep it in our tenancy?
  • What is the user experience when a policy blocks or redacts a request?
  • Which AI tools are covered natively versus through a browser agent?
  • How do you handle agent-to-agent and API traffic?
  • What happens to our controls when a vendor releases a new model or feature?

Featured vendors

CrowdStrike logo

CrowdStrike

AI Security & AI Governance

CrowdStrike is the leader in cloud-delivered next-generation endpoint protection.

crowdstrike.comopens in a new tab
EstablishedEndpoint Protection Platform (EDR)Managed Detection and Response (MDR)
View Vendor Profile
Fortinet logo

Fortinet

AI Security & AI Governance

The Fortinet Security Fabric platform secures the largest enterprise, service provider, and government organizations around the world.

fortinet.comopens in a new tab
EstablishedEndpoint Protection PlatformNetwork Security
View Vendor Profile
IronNet Cybersecurity logo

IronNet Cybersecurity

AI Security & AI Governance

Founded in 2014, IronNet Cybersecurity is a global cybersecurity leader that is revolutionizing how enterprises, industries, and governments secure their networks.

ironnet.comopens in a new tab
EstablishedNetwork Detection & Responsecybersecurity
View Vendor Profile
TrustArc logo

TrustArc

AI Security & AI Governance

Privacy leaders simplify and automate their privacy programs with the TrustArc Privacy Management Platform.

trustarc.comopens in a new tab
EstablishedGovernanceRisk and Compliance - GRC
View Vendor Profile
AttackIQ logo

AttackIQ

AI Security & AI Governance

Adversaries across the globe, from nation-states to criminal organizations, hold our businesses, democracy, and society at risk through cyberspace.

attackiq.comopens in a new tab
EstablishedPenetration Testing - PenTestTesting Cyber Security Tools and Configuration
View Vendor Profile
HiddenLayer logo

HiddenLayer

AI Security & AI Governance

HiddenLayer, a Gartner recognized AI Application Security company, is a provider of security solutions for artificial intelligence algorithms, models & the data that power them.

hiddenlayer.comopens in a new tab
EstablishedA.I. Detection and ResponseA.I. Application Security
View Vendor Profile
Swimlane logo

Swimlane

AI Security & AI Governance

At Swimlane, we believe the convergence of agentic AI and automation can solve the most challenging security, compliance and IT/OT operations problems.

swimlane.comopens in a new tab
EstablishedSOAR - Security OrchestrationAutomation and Response
View Vendor Profile
Dune Security logo

Dune Security

AI Security & AI Governance

Dune Security is replacing legacy phishing simulations and security awareness training tools with a unified, automated User Adaptive Risk Management platform.

dune.securityopens in a new tab
EstablishedCyber Security Awareness TrainingSecurity Awareness Training
View Vendor Profile
Litt Security logo

Litt Security

AI Security & AI Governance

Litt Security is a cybersecurity company specializing in autonomous security solutions designed for the AI era.

litt.securityopens in a new tab
EstablishedAI Penetration TestingAI PenTest
View Vendor Profile
Fabrix Security logo

Fabrix Security

AI Security & AI Governance

Fabrix Security builds AI agents for identity security, empowering IAM teams with the intelligence to make confident, explainable access decisions – right at the point of decision.

fabrix.ioopens in a new tab
EstablishedIdentity Access Management - IAMAI Native Identity Security Platform
View Vendor Profile
7AI logo

7AI

AI Security & AI Governance

7AI is the first agentic security platform that harnesses the speed, swarming capabilities, and power of AI to finally give defenders the advantage over evolving threats.

7ai.comopens in a new tab
EstablishedAI Managed Detection and Response - AI MDRAI MDR
View Vendor Profile
Prophet Security logo

Prophet Security

AI Security & AI Governance

Prophet Security delivers the industry’s most comprehensive Agentic AI SOC Platform, purpose?built to transform how security operations work.

prophetsecurity.aiopens in a new tab
EstablishedAI Managed Detection and Response - AI MDRAI MDR
View Vendor Profile
Dropzone AI logo

Dropzone AI

AI Security & AI Governance

Dropzone AI is a Seattle-based cybersecurity innovator founded in 2023 by Edward Wu, former detection engine lead at ExtraHop.

dropzone.aiopens in a new tab
EstablishedAI Managed Detection and Response - AI MDRAI MDR
View Vendor Profile
Checkmarx logo

Checkmarx

AI Security & AI Governance

Checkmarx helps the world’s largest enterprises stay ahead of application risk without slowing development.

checkmarx.comopens in a new tab
EstablishedApplication Security - AppSecAppSec
View Vendor Profile

Emerging vendors from Breach Tank

Early-stage companies surfaced through Breach Tank pitch sessions. Inclusion is for discovery, not endorsement.

Featured Breach Tank startups will appear here soon. Visit breachtank.com to see the latest pitches.

Get a AI Security & AI Governance buying roadmap.

We will map the category, shortlist vendors matched to your environment, and coordinate evaluations.