MAAT INDEX
Themes

AI agents and agentic security/governance

126 statements on the record across 12 companies, ordered by how much each has said. Every quote is verbatim from its call.

THE FIFTEEN-SECOND READ

Across the sector, companies converge on treating AI agents as both a security and governance imperative, with AVPT, SAIL, VRNS, PANW, CHKP, RPD, NOW and CVLT all describing agents as expanding attack surfaces, identity risk and governance gaps that require new controls [m1430, m1435, m1680, m1927, m1237]. Product responses cluster around governance platforms and control planes, seen in AVPT's AgentPulse and Agent Plus rollout [m1358, m1360, m901], SAIL's Agent Identity Security building on Machine Identity Security [m1681, m1691], VRNS's Atlas-based control plane [m1444, m1438], PANW's Prisma AIRS and Protect.ai acquisition [m119, m103], CHKP's AI Defense Plan and Lakera acquisition [m1634, m1662], and NOW positioning itself as the enterprise agent control tower [m1244]. Divergence appears in emphasis and timing: RBRK and RPD focus on operational resilience and autonomous remediation via Agent Rewind and Kenzo [m1810, m818], DT and GTLB stress agent interoperability and developer integration rather than governance per se [m542, m972], and QLYS and CVLT emphasize risk quantification and policy enforcement for AI systems [m2058, m1946]. CHKP is explicit that AI security bookings remain immaterial now but expects a substantial standalone business only by 2027 [m1655, m1661], while AVPT points to concrete delivery milestones in February and May 2026 [m1358, m900], and SAIL has committed to an Agent Identity Security release this fall [m1681].

AVPT37CHKP22SAIL11NOW9RPD9VRNS8GTLB7PANW7RBRK6DT4CVLT3QLYS3
AVPT37 statements

In November 2024, CEO TJ Jiang called agents early-stage, forecasting agent-driven software deployment shifts over the next few years to 3-5 years. [m1618, m1617, m1616] By August 2025, Jiang said agentic AI governance was already underway with large global customers and expected to remain a growth theme for the next few quarters. [m1739, m1740] In November 2025, Jiang detailed a build-in-not-bolted-on governance approach, enhancing the Confidence Platform for Copilot Studio agent visibility and planning to layer in automated governance workflows next, including ecosystem-wide and recovery capabilities. [m1555, m1556, m1558, m1561, m1562, m1557] In February and May 2026, AvePoint delivered on this with AgentPulse governance and control launched earlier that month, agent inventory and multi-cloud coverage, and new this-quarter risk definition and Agent Plus visibility across Copilot Studio, Foundry, SharePoint Agents and Gemini Enterprise, validated by Gartner over Microsoft's Agent 365. [m1358, m1360, m1359, m1376, m901, m902, m900]

Show the 37 verbatim statements
#m1618 · 2024-11-07 · TJ Jiang · STATED · by next few years

So, the way software is actually going to be deployed out there will change drastically in the next few years. But right now, we are still in very early innings of agents.

#m1617 · 2024-11-07 · TJ Jiang · STATED · by next 3 to 5 years

I would say that what this actually new development and new areas and trending, it’s very exciting for us as overall, a B2B SaaS provider. In that I really think in the next 3 years to 5 years, fundamentally, the way software are being deployed, not only just developed now, everyone is using Copilot, those type of AI accelerated dev tools. It’s going to change right with agents introduction.

#m1616 · 2024-11-07 · TJ Jiang · STATED

Agents will continue to evolve. There is – actually, it’s still very, very early stages. If you can’t get a good quality output from your current AI deployments, given poor data state, and make – deploying agents would just make it even worse, because there is so much more automation introduced.

#m1740 · 2025-08-07 · Tianyi Jiang · STATED · by next few quarters

So, this is actually a fantastic growth area. We're very excited about the results we're seeing in the field. So, we think that this is something that's going to be a theme carrying forward in the next few quarters.

#m1739 · 2025-08-07 · Tianyi Jiang · STATED

Yes. You see -- we have already talked a lot about Agentic AI governance. That's the very hot topic. We have already done this in prior with the Power Platform governance, low-code and no-code application governance. And now we're working very closely with some of our largest global customers around Agentic governance.

#m1557 · 2025-11-06 · Tianyi Jiang · STATED

Our objective is to bring the governance of a agentic AI into the same control plane as more traditional data protection and cloud governance tools so that governance is holistic and not siloed.

#m1556 · 2025-11-06 · Tianyi Jiang · STATED

We have enhanced the AvePoint Confidence Platform to provide deeper visibility into agentic AI and specifically the life cycle of agents created in environments like Copilot Studio.

#m1555 · 2025-11-06 · Tianyi Jiang · STATED

At AvePoint, we believe that organizations must treat agentic AI governance as a first-class discipline, just like data protection, identity and access management and cloud governance.

#m1563 · 2025-11-06 · Tianyi Jiang · STATED

And lastly, from compliance to strategic governance. Governance cannot be just about meeting controls. It must be a strategic enabler.

#m1554 · 2025-11-06 · Tianyi Jiang · STATED

The addition of agentic AI systems that can automatically execute workflows, interface across apps and architectures and make decisions within defined boundaries only exacerbates these risks.

#m1562 · 2025-11-06 · Tianyi Jiang · STATED

Second, from enterprise governance to ecosystem governance, governance will expand beyond internal agents to partner develop build agents, federated agents across organizations and cross-cloud agent networks. We are preparing our platform for that complexity, including the recovery capabilities from potential agentic AI damage that I referenced earlier and evaluating a variety of pricing structures for customers.

#m1561 · 2025-11-06 · Tianyi Jiang · STATED · by next

First, from visibility to autonomous governance. Today, we provide dashboards, metrics and control planes. Next, we'll layer in more automated governance workflows such as agent risk scoring, automated remediation triggers, policy-driven agent retirement.

#m1560 · 2025-11-06 · Tianyi Jiang · STATED

Companies that properly govern their agentic AI can confidently move faster and scale smarter. At the same time, organizations that neglect proper governance face delays, rework or regulatory issues, as I noted earlier.

#m1558 · 2025-11-06 · Tianyi Jiang · STATED

We believe governance must be built in, not bolted on. That means embedding controls such as role-based access for agents, segregation of duties, process triggers for agent deployment or retirement and consistent life cycle management.

#m1358 · 2026-02-26 · Tianyi Jiang · STATED

Today, as agents proliferate, the missing layer is not more AI. It is governance and operational oversight for AI. That is exactly why we built our sixth command center, AgentPulse, which provides unified visibility, governance, and operational oversight for agentic AI.

#m1357 · 2026-02-26 · Tianyi Jiang · STATED

It also functions as a governance and control layer for agentic AI, providing the trusted data foundation that agents need to act safely and effectively in the AI era.

#m1361 · 2026-02-26 · Tianyi Jiang · STATED · by 2026

This was also validated by Gartner, which referenced AvePoint, Inc. in their latest research on how to build a strategy for M365 Copilot and agentic AI in 2026.

#m1360 · 2026-02-26 · Tianyi Jiang · STATED · by earlier this month

And lastly, building on AgentPulse, our new agentic AI governance and data protection features that we announced earlier this month provide customers with better insights about agent security posture and the ability to correct security problems directly in the Confidence Platform, helping them use agentic AI tools safely and efficiently.

#m1359 · 2026-02-26 · Tianyi Jiang · STATED

AvePoint, Inc. customers can now inventory agents across their digital estate, surface usage, risk, and cost signals, monitor performance drift, and ultimately take action when needed.

#m1375 · 2026-02-26 · Tianyi Jiang · STATED

We also see in the age of agentic AI, where there are more sophisticated agents being deployed, these agents are actually fully licensed. From a software perspective, from a licensing perspective, it looks like a virtual employee.

#m1376 · 2026-02-26 · Tianyi Jiang · STATED

So you have seen—Microsoft released their agent governance capabilities. We actually announced our capabilities at the same time, AgentPulse, which covers multi-cloud, and particularly we are looking at agentic not only governance from a risk exposure perspective, access control, but also the cost.

#m890 · 2026-05-08 · Tianyi Jiang · STATED

As AI is becoming deployed more widely and evolves from assistance to autonomous agents, data access increases exponentially and data governance becomes top of mind.

#m891 · 2026-05-08 · Tianyi Jiang · STATED

Today, when I meet with customers and partners globally, the question is no longer what can AI do for my organization, but rather, can I trust, govern and operate AI safely and at scale.

#m892 · 2026-05-08 · Tianyi Jiang · STATED

the conversation has pivoted away from productivity and towards something far more important, enterprise trust in this new enormously powerful technology.

#m893 · 2026-05-08 · Tianyi Jiang · STATED

The real center of gravity, not surprisingly, has shifted to data, the knowledge that powers AI and fuels the next 2 layers, AI models and agentic AI.

#m894 · 2026-05-08 · Tianyi Jiang · STATED

weak data governance and poor data controls lead to bad decisions and security risks, in turn destroying trust. Ultimately, once trust is lost, AI doesn't scale.

#m895 · 2026-05-08 · Tianyi Jiang · STATED

This is critical because as AI agents operate more autonomously across enterprise productivity apps, companies truly need a trust layer so that they can scale AI adoption without losing control of data security, privacy and compliance.

#m896 · 2026-05-08 · Tianyi Jiang · STATED

the most commonly leveraged productivity tools today like Microsoft 365, Google Workspace, Salesforce and others were originally designed for human productivity and not autonomous AI execution.

#m897 · 2026-05-08 · Tianyi Jiang · STATED

It's why we're building the trust layer for AI, spanning data, governance, risk and operations so that organizations can deploy AI securely responsibly and with confidence.

#m898 · 2026-05-08 · Tianyi Jiang · STATED

We believe that organizations can only trust AI when they prioritize 3 things: first, precisely control what AI can access; second, govern and audit every action AI takes and finally, recover instantly when something goes wrong.

#m899 · 2026-05-08 · Tianyi Jiang · STATED

The resulting contextual data is an enormous competitive advantage for AvePoint and truly distinguishes us from legacy point solutions and backup first vendors.

#m900 · 2026-05-08 · Tianyi Jiang · STATED

This differentiation was also recently validated by Gartner, who specifically cited AvePoint's comprehensive set of capabilities and platform strategy as superior to native offerings like Microsoft's Agent 365.

#m901 · 2026-05-08 · Tianyi Jiang · STATED · by this quarter

New this quarter, organizations can now see across their entire agent stack, including Copilot Studio, Microsoft Foundry, SharePoint Agents and Gemini Enterprise, all within one screen in Agent Plus.

#m902 · 2026-05-08 · Tianyi Jiang · STATED · by this quarter

This quarter, we launched a new risk definition for AI agents, so organizations can better access more information about agent security and correct problems automatically.

#m903 · 2026-05-08 · Tianyi Jiang · STATED

This is especially critical because unmanaged agents can lead to runaway costs and expose sensitive data without proper oversight.

#m906 · 2026-05-08 · Tianyi Jiang · STATED

This integrated approach, see, govern and recover is powerful because it transforms AI risk into a manageable variable and ensures that the trust layer is a foundation for AI-driven growth, and it is resonating across the market, firmly cementing AvePoint as a foundational infrastructure that enables safe AI deployment at scale.

#m911 · 2026-05-08 · Tianyi Jiang · STATED

One of our largest customer recently shared that bundling Agent POS within the broader governance capabilities of our control suite has provided them visibility into thousands of agents without having to make a separate business case related to their MC65 deployment.

CHKP22 statements

Zafrir said AI security will be a small part of 2026 revenue but likely take until 2027 to become a substantial standalone part of Check Point's business. [m1655, m1661] Golan said AI security bookings are not yet significant but a significant funnel has formed, with subscription growth expected in the next few quarters and strength into the second half of the year. [m1646, m1640, m1645] Check Point launched the AI Defense Plan, AI Factory Security Blueprint, and Secure AI Advisory Service, plus a Google Cloud integration for runtime agent protection. [m1634, m1635, m1638, m1636] Zafrir framed AI security as both standalone and embedded across pillars, citing the Lakera acquisition to build tailored security models and network security as a multi-year tailwind. [m1662, m1653, m1652]

Show the 22 verbatim statements
#m1630 · 2026-04-30 · Nadav Zafrir · STATED

AI is a watershed moment for the security industry. When you look at the emergence of these frontier AI models, including models in the GPT class, they're driving two structural shifts in cybersecurity.

#m1656 · 2026-04-30 · Roei Golan · STATED

Memory pricing continues to increase; we see the trend continuing.

#m1661 · 2026-04-30 · Nadav Zafrir · STATED · by 2027

As a stand-alone business, to be a substantial part of Check Point's revenue it will likely take until 2027.

#m1662 · 2026-04-30 · Nadav Zafrir · STATED

AI security will be both a stand-alone business and something that is embedded across our pillars.

#m1642 · 2026-04-30 · Nadav Zafrir · STATED

At the same time, when I look at the demand side, we're seeing areas of growth. For example, we're very bullish on new AI data centers where I think we have a unique capability for the longer term.

#m1640 · 2026-04-30 · Roei Golan · STATED · by next few quarters

It is important to note that although these revenues are still not a large portion of the total business, we see significant growing momentum for our AI security offering and that, together with CTEM, we expect to drive subscription revenue growth in the next few quarters.

#m1639 · 2026-04-30 · Nadav Zafrir · STATED

The emerging technologies continue to perform strongly and position Check Point well to secure the rapidly growing enterprise attack surface driven by AI adoption.

#m1638 · 2026-04-30 · Nadav Zafrir · STATED

Finally, we launched a Secure AI Advisory Service to help enterprises and government deploy and ultimately scale AI with security and responsibility.

#m1636 · 2026-04-30 · Nadav Zafrir · STATED

Most recently, we also announced our partnership with Google Cloud. We're integrating the AI Defense Plan with Google Cloud's enterprise agent platform and this can deliver real-time runtime protection at scale.

#m1635 · 2026-04-30 · Nadav Zafrir · STATED

We also introduced the AI Factory Security Blueprint. It's integrated with NVIDIA GPU service pinning on the server itself and provides end-to-end protection for AI infrastructure, and we are very bullish about this.

#m1634 · 2026-04-30 · Nadav Zafrir · STATED

we launched the AI Defense Plan which is designed to secure enterprises across employee AI usage, applications and agents that both people and applications use.

#m1632 · 2026-04-30 · Nadav Zafrir · STATED

Second, cyber attacks are undergoing structural industrialization. Agentic AI enables attackers to continuously scan global infrastructure, and they're generating a continuous flow of novel attack techniques. Manual operations are giving way to automated attack pipelines. This is what we call the Check Point AI attack factories.

#m1663 · 2026-04-30 · Nadav Zafrir · STATED

We also see AI security impacting our services business—AI red teaming is one of the fastest-growing services.

#m1671 · 2026-04-30 · Nadav Zafrir · STATED

As networks become agent-enabled, they create new pathways and complexities we haven't seen before.

#m1631 · 2026-04-30 · Nadav Zafrir · STATED

The first is that the barrier to sophisticated cyber attacks is literally collapsing because AI is democratizing capabilities that were once exclusive to nation-states and a very small set of elite criminal organizations, and this is exposing a far broader set of enterprises to material risk.

#m1654 · 2026-04-30 · Nadav Zafrir · STATED

we've even created a game called Gandalf with over one million worldwide users where thousands attack the environment every day; this feeds our small language model to improve it continuously.

#m1653 · 2026-04-30 · Nadav Zafrir · STATED

Six months ago we acquired Lakera to help build a foundational model for security. We believe that if you want the latency, accuracy and cost profile required for enterprise security, we will need to train models tailored for security, which is a significant investment.

#m1652 · 2026-04-30 · Nadav Zafrir · STATED · by multi-year

Network security is becoming more important and is one of the only places where you can prepare an organization for AI adoption. This is a multi-year effort, but I see it as a tailwind for Check Point.

#m1651 · 2026-04-30 · Nadav Zafrir · STATED

If you believe that democratization and industrialization of attackers and agentification are real, then our firewalls are very well positioned for this future because of our ability to prevent known CVEs and deploy protections through our IPS in hours, not days or weeks.

#m1646 · 2026-04-30 · Roei Golan · STATED

Booking numbers for AI security are still not yet significant, but we see a very significant funnel that was created in recent weeks.

#m1645 · 2026-04-30 · Roei Golan · STATED · by second half of the year

We do see, particularly for the second quarter and mainly for the second half of the year, very strong demand for our subscription packages and offerings—email, CTEM and SASE—as well as AI security.

#m1655 · 2026-04-30 · Nadav Zafrir · STATED · by 2026

We believe it will be a small part of 2026 but has significant potential for the future.

SAIL11 statements

McClain identified AI agents as the next frontier of identity governance, citing autonomous systems now underwriting loans and onboarding customers. [m1680] McClain stated Agent Identity Security, a new offering to govern AI agents alongside human and machine identities, is planned for release this fall. [m1681] This builds on Machine Identity Security, launched last fall, which McClain said has seen robust demand and a growing pipeline. [m1691, m1678, m1679] McClain also pointed to Harbor Pilot, an AI-powered assistant introduced last quarter, and an expanded Deloitte alliance to help enterprises govern AI agents. [m1682, m1683, m1684, m1688]

Show the 11 verbatim statements
#m1691 · 2026-03-18 · Mark D. McClain · STATED

This includes machine identities, where we've seen robust demand and a strong and growing pipeline since the initial launch of SailPoint Machine Identity Security last fall.

#m1678 · 2026-03-18 · Mark D. McClain · STATED

Second, we're leading in the governance of emerging identity types, particularly machine identities and AI agents. Machine identities have proliferated, with some hidden deep within directories like Active Directory and Entra, making them difficult to track or secure.

#m1679 · 2026-03-18 · Mark D. McClain · STATED

When it comes to machines, other vendors primarily manage keys and certificates, not the actual access rights. Our approach goes far deeper, providing the full identity governance life cycle for the actual machines to which those keys and certificates belong.

#m1680 · 2026-03-18 · Mark D. McClain · STATED

AI agents represent the next frontier. These autonomous systems are now underwriting loans, onboarding customers, and executing critical operations across both cloud-native apps and legacy systems.

#m1681 · 2026-03-18 · Mark D. McClain · STATED · by this fall

With our new offering, Agent Identity Security, planned for release this fall, we believe SailPoint is uniquely positioned to govern this new class of digital identities alongside all human and machine identities across the full spectrum of access from the cloud to the mainframe.

#m1682 · 2026-03-18 · Mark D. McClain · STATED

Third, we're embracing AI not just as a disruptor, but as a catalyst for cyber resilience. Just last quarter, we introduced Harbor Pilot, our AI-powered assistant, and it is already gaining strong traction.

#m1683 · 2026-03-18 · Mark D. McClain · STATED

Harbor Pilot embeds AI into the fabric of identity programs, servicing recommendations, guiding configurations, and driving faster, smarter decisions.

#m1684 · 2026-03-18 · Mark D. McClain · STATED

In many ways, Harbor Pilot functions like a digital employee with deep expertise in both SailPoint and identity security.

#m1685 · 2026-03-18 · Mark D. McClain · STATED

Fourth, threat prevention must evolve. And with Atlas, we are transforming how it's done. Atlas is our unified intelligence platform built on a consolidated data model and shared services architecture designed to deliver deep identity context at scale.

#m1686 · 2026-03-18 · Mark D. McClain · STATED

By continuously mapping identities, entitlements, behaviors, and risks, Atlas becomes the intelligent foundation of modern identity security, powering decisions with context, and fortifying the entire enterprise security stack.

#m1688 · 2026-03-18 · Mark D. McClain · STATED

For large enterprises, our expanded strategic alliance with Deloitte is a prime example. Together, we're enabling organizations to navigate the rise of AI agents, harnessing them as a force for efficiency while helping improve governance and security.

NOW9 statements

McDermott positioned ServiceNow as the governance control tower for enterprise AI agents, intending to be the control point governing Agentic AI deployment across the enterprise. [m1237, m1244] McDermott said the NVIDIA partnership is co-creating out-of-the-box AI agent use cases via NIM Agent Blueprints on the Now platform, and highlighted Xanadu showcasing autonomous agents working with people, not just for them. [m1247, m1242]

Show the 9 verbatim statements
#m1247 · 2024-10-23 · Bill McDermott · STATED

Our partnership with NVIDIA has been a game changer for enterprises embracing AI. We're taking that to the next level by co-creating a shared vision on Agentic AI. Together, NVIDIA and ServiceNow are developing out-of-the-box use cases for AI agents on the Now platform using NVIDIA NIM Agent Blueprints.

#m1237 · 2024-10-23 · Bill McDermott · STATED

Now the C-suite is looking to ServiceNow to prevent another mess with AI. We do see the risk that every vendor's bots and agents will scatter like hornets fleeing the nest, and they trust ServiceNow as the governance control tower, which is a privileged position for our platform.

#m1242 · 2024-10-23 · Bill McDermott · STATED

Xanadu showcased ServiceNow's leadership with Agentic AI. And until now, generative AI in the enterprise required human prompts to initiate action. We're now deploying autonomous AI agents that work with people, not just for them.

#m1243 · 2024-10-23 · Bill McDermott · STATED

Using ServiceNow's single architecture platform and cross-enterprise data, ServiceNow AI agents can uniquely advance beyond pro-based activity to deep contextual comprehension.

#m1244 · 2024-10-23 · Bill McDermott · STATED

We intend to be the control point that governs the deployment of Agentic AI across enterprise.

#m888 · 2025-04-23 · Amit Zavery · STATED

the way we sell that today is in a hybrid kind of pricing structure. You buy a subscription to our analysis use case usage, and then you burn it down based on the number of calls you make.

#m856 · 2025-04-23 · Bill McDermott · STATED

One agency is using ServiceNow AI agents to automate contract reviews, streamline approvals, and lower operational costs.

#m855 · 2025-04-23 · Bill McDermott · STATED

With regard to the public sector, let me be clear. We had a great Q1 because ServiceNow's strategy is rooted in government automation and modernization. This is being championed by the Trump administration with local leaders and national governments around the world following suit.

#m887 · 2025-04-23 · Amit Zavery · STATED

We are the only point vendor who has a full-blown orchestration engine with package AI agents as well as a tool to build new agents as well.

RPD9 statements

Corey Thomas framed AgenTiC AI as purpose-built SOC workflows, not generic models, and said RPD would sustain accelerating AI development as a continuous engine rather than a one-time release. [m1121, m1122] Thomas argued agentic AI advances create structural uncertainty for per-seat pricing models while positioning security operations as a direct beneficiary of AI transformation. [m1112, m1113] Thomas said Kenzo moves MDR from AI-assisted to autonomous investigation, shifts data mesh customers from per-alert to system-driven coverage, and pushes remediation toward AI-native, autonomous fix deployment as Rapid7 evolves into a preemptive agentic security platform. [m818, m809, m817, m810]

Show the 9 verbatim statements
#m1122 · 2026-02-10 · Corey Thomas · STATED

And critically, we view AI innovation as a continuous engine, not a one-time product release. We're accelerating our pace of AI development and expect this to be a sustained direction.

#m1113 · 2026-02-10 · Corey Thomas · STATED

The security operations market is defined by three characteristics that make it structurally resilient and, in many ways, a direct beneficiary of the AI transformation happening across the enterprise.

#m1112 · 2026-02-10 · Corey Thomas · STATED

The rapid advancement of AgenTik AI capabilities has created real uncertainty about the durability of many software business models, particularly those built around per-seat pricing.

#m1121 · 2026-02-10 · Corey Thomas · STATED

Our expert-trained AgenTiC AI workflows are built on years of SOC expertise, trained online playbooks, and redefined through real-world analyst feedback. These are not generic models. They are purposeful engines that improve outcomes in real-time.

#m818 · 2026-05-05 · Corey Thomas · STATED

Second, detection and response. A faster discovery cycle on the attacker side means a faster response cycle on the defender side. Kenzo accelerates our MDR service from AI-assisted workflows to autonomous, machine-speed investigation.

#m808 · 2026-05-05 · Corey Thomas · STATED

In the quarter, we acquired Kenzo Security, an agentic platform built to run security operations autonomously and at machine speed. This is a direct accelerant to our AI SOC vision.

#m809 · 2026-05-05 · Corey Thomas · STATED

Data mesh shifts customers away from a per-alert investigation model to a system-driven one. Coverage scales with the environment, not headcount. This unlocks two things: a meaningful tailwind for MDR growth and a path to higher contribution margins through software-driven efficiency.

#m810 · 2026-05-05 · Corey Thomas · STATED

Rapid7 is evolving into a preemptive, agentic security platform that accelerates the entire SOC, delivered either as a managed service or a self-managed platform.

#m817 · 2026-05-05 · Corey Thomas · STATED

Combined with our SOAR capabilities and Kenzo’s agentic AI, we are moving from traditional patch management towards AI-native remediation—identifying flaws and deploying fixes autonomously.

VRNS8 statements

CEO Faitelson framed agentic AI as a governance challenge, warning agents inherit overly broad access, move fast, behave unpredictably and try to maximize privileges by design. [m1430, m1431] He said agents expand the attack surface since AI-powered phishing can target agents that read email, Slack and messages, multiplying compromised identities. [m1435] With the Atlas acquisition, Faitelson said Varonis now has the control plane for agents, models and pipelines to protect every data type, and asserted only AI can defend against AI risk. [m1444, m1438]

Show the 8 verbatim statements
#m1445 · 2026-04-28 · Yakov Faitelson · STATED

You have these agents that accessing data, you need to be ahead of them in your remediation. You need to understand any abnormal behavior. If a weather forecasting agent is accessing HR records in 2 a.m. in the morning, you better know about it, and you will be amazed how often things like that are happening.

#m1430 · 2026-04-28 · Yakov Faitelson · STATED

AI pushes existing access controls to their limits because many systems and agents inherit user access that is far too broad.

#m1431 · 2026-04-28 · Yakov Faitelson · STATED

In the agentic world, an agent can access a huge amount of your data estate in seconds. Agents can move fast, behave unpredictably and maximize privileges by design. And if an agent doesn't have permissions, it will try to get them.

#m1432 · 2026-04-28 · Yakov Faitelson · STATED

Connecting agents and models to data is what's blocking organizations from safely adopting AI faster. They need remediation at scale and to understand abnormal behavior, visibility alone is not enough.

#m1435 · 2026-04-28 · Yakov Faitelson · STATED

AI-powered phishing doesn't just target humans. It targets agents too. Agents can read e-mail, Slack and key messages. One human clicking maliciously is one compromised identity. An army of agents can multiply the attack surface.

#m1437 · 2026-04-28 · Yakov Faitelson · STATED

You need an inventory of every model, agent and pipeline running in your environment and you need access posture to know what data they can touch, what permissions they have and where they are vulnerable.

#m1438 · 2026-04-28 · Yakov Faitelson · STATED

Only AI can defend AI risk.

#m1444 · 2026-04-28 · Yakov Faitelson · STATED

With the acquisition of Atlas, we have the ultimate control plan for agents, models and pipeline. We protect every data type.

GTLB7 statements

In June 2025, CEO Sid Sijbrandij showcased GitLab Duo as a workflow and autonomous agent designed to take more initiative, saying the industry is headed toward more autonomous AI. [m1983, m1982] By March 2026, CEO William Staples said GitLab is extending its open source and co-creation reputation into agentic AI strategy. [m969] Staples said GitLab's single database platform enables a knowledge graph integrating context for tasks done by humans or agents, while committing to maintain security and privacy standards with cloud neutrality and self-hosted model support. [m972, m971] Staples said GitLab will offer open community extensibility for agent discovery and development, and is focused on integrating software life cycle agents directly into GitLab so every Premium and Ultimate customer can use them out of the box. [m970, m973]

Show the 7 verbatim statements
#m1983 · 2025-06-10 · Sid Sijbrandij · STATED

At our GitLab 17 event, we showcased GitLab Duo, a workflow and autonomous agent designed to take more initiative. This is where the industry is headed, and we are scaling our operations in alignment with this direction.

#m1982 · 2025-06-10 · Sid Sijbrandij · STATED

Additionally, we anticipate more autonomous AI and a shift in augmented reality from reactive to proactive.

#m969 · 2026-03-03 · William Staples · STATED

We are also leveraging our reputation in open source and co-creation to extend our strategy into agentic AI.

#m972 · 2026-03-03 · William Staples · STATED

Another advantage we have is our single database platform, which allows us to create a knowledge graph that integrates all relevant context for tasks, whether performed by a human or an agent.

#m971 · 2026-03-03 · William Staples · STATED

Furthermore, we are committed to maintaining our standards for security and privacy, serving our clients with cloud neutrality and support for self-hosted models.

#m970 · 2026-03-03 · William Staples · STATED

Additionally, we will offer comprehensive extensibility and flexibility through an open community approach for agent discovery and development.

#m973 · 2026-03-03 · William Staples · STATED

Lastly, we are focusing on integrating software life cycle agents directly into GitLab, enabling every Premium and Ultimate customer to collaborate with them seamlessly right out of the box.

PANW7 statements

Arora first framed agentic AI as a security priority, saying PANW was moving swiftly to build it into products. [m1049] By August, Arora said PANW intended to acquire Protect.ai to add AI model scanning and red teaming to its capabilities. [m103] Klarich detailed Prisma AIRS to secure agentic systems and previewed an agentics strategy for agentic platforms, while Arora said Prisma AIRS will add security for AI agents in the future. [m119, m102] Klarich described agentic AI as a shift from helper to autonomous action, with actions regulated and expanded over time as trust is established. [m117]

Show the 7 verbatim statements
#m1049 · 2025-02-13 · Nikesh Arora · STATED

We believe this agentic vision of AI will be hugely impactful in security, and we're moving swiftly to adopt that into our products.

#m103 · 2025-08-18 · Nikesh Arora · STATED

And we announced the intent to acquire Protect.ai, an early innovative leader in security for AI providing AI model scanning in the red teaming to further bolster our capabilities.

#m119 · 2025-08-18 · Lee Klarich · STATED

We've shared our initiatives in two main areas: what we're doing on Prisma AIRS to secure agentic systems and a preview of agentics, outlining our strategy for developing agentic platforms for our customers.

#m118 · 2025-08-18 · Lee Klarich · STATED

No one else possesses the same level of integration and automation that can effectively work alongside AI.

#m120 · 2025-08-18 · Nikesh Arora · STATED

AI will be incessantly banging at those edges trying to find the loopholes and the misconfiguration in the way humans have not secured the perimeter.

#m102 · 2025-08-18 · Nikesh Arora · STATED · by in the future

Prisma AIRS extends our existing capability in posture management and runtime security and will add security for AI agents in the future.

#m117 · 2025-08-18 · Lee Klarich · STATED

With agentic AI, I see it as a transition from AI serving as a helper to gaining a level of autonomy, where it can take actions independently. Over time, as trust is established, these actions will be regulated and gradually expanded.

RBRK6 statements

Bipul Sinha announced Agent Rewind, built on Rubrik's secure data platform underpinned by Predibase AI technology, which lets customers undo AI agent mistakes without full system rollback. [m1810, m1811] Sinha said the Predibase platform enables enterprises to fine-tune GenAI models and run an optimized inference stack for faster, more accurate, lower cost results. [m1809] Sinha framed the strategy as AI operations, agent fine-tuning, serving, and rewind, plus cyber resilience with AI-based ransomware detection and fast recovery, rather than only securing AI. [m1814, m1825]

Show the 6 verbatim statements
#m1810 · 2026-06-04 · Bipul Sinha · STATED

We recently announced Agent Rewind, built on our Rubrik's secure data platform underpinned by Predibase AI technology.

#m1809 · 2026-06-04 · Bipul Sinha · STATED

The Predibase platform allows enterprises to fine-tune GenAI models and run an optimized inference stack for faster accurate results at lower cost.

#m1812 · 2026-06-04 · Bipul Sinha · STATED · by multiyear initiative

We are still in the early stages of optimizing product market fit for our AI solutions including Agent Rewind. We plan to add more capabilities and investments to enable confident enterprise AI transformation and agentic work adoption.

#m1814 · 2026-06-04 · Bipul Sinha · STATED

So we are helping do that cyber resilience transformation for our customers. Giving them AI-based ransomware detection, fast recovery, capabilities like that.

#m1825 · 2026-06-04 · Bipul Sinha · STATED

So we are looking at AI in a holistic way. But we are not just focused on securing the AI. What we are focused on is the cyber resilience business, as well as AI operations business, which is about agent fine-tuning, serving, agent rewind, plus plus.

#m1811 · 2026-06-04 · Bipul Sinha · STATED

With Agent Rewind, we can now help customers undo the mistakes of AI agents without full system rollback, which is crucial for scalable and secure AI adoption.

DT4 statements

McConnell noted the industry's evolution from Generative AI and RAG toward agentic AI as a recent development. [m1845] McConnell described a foundational approach driving integration of Dynatrace agents with third party agents to create an autonomous system, calling it a critical industry evolution. [m570] McConnell stated DT is driving toward an agentic AI ecosystem where its AI agents interoperate with third party agents to take action, stressing deterministic answers are critical for this to work. [m542]

Show the 4 verbatim statements
#m1845 · 2025-11-02 · Rick McConnell · STATED

What started with Generative AI has quickly evolved to retrieval augmented generation or RAG, inference AI, and more recently agentic AI.

#m570 · 2026-05-02 · Rick McConnell · STATED

that's leading into a foundational approach to agentic AI, where we're really driving the integration not only into Dynatrace agents but also third-party agents to create a truly autonomous system. We think this will be a critical evolution in the observability industry that we believe that we're well poised to take advantage of.

#m542 · 2026-05-02 · Rick McConnell · STATED

We are driving toward an agentic AI ecosystem in which our AI agents will interoperate with third-party AI agents to take appropriate action. Importantly, deterministic answers are critical for agentic AI to work properly.

#m541 · 2026-05-02 · Rick McConnell · STATED

We recently announced significant advancements in our platform, evolving its ability to serve as the knowledge, reasoning, planning and actioning framework of agentic AI and provide trustworthy precision and adaptability.

CVLT3 statements

Mirchandani cited a Gartner forecast that by 2028, 25% of enterprise breaches will trace back to AI agent abuse. [m1927] Mirchandani framed policy enforcement and observability for LLMs and training data as essential as customers train and implement AI internally. [m1946] DiRico stated that Satori can help Commvault accelerate its vision of helping customers responsibly utilize AI in production environments. [m1938]

Show the 3 verbatim statements
#m1938 · 2026-04-28 · Jennifer DiRico · STATED

We believe there are extensive opportunities to help customers responsibly utilize AI in their production environments, and Satori can help Commvault accelerate this vision.

#m1927 · 2026-04-28 · Sanjay Mirchandani · STATED · by by 2028

At the Gartner Security and Risk Management Summit in June, analysts reported that by 2028, 25% of enterprise breaches will be traced back to AI agent abuse from both external and malicious internal actors.

#m1946 · 2026-04-28 · Sanjay Mirchandani · STATED

As our customers start training models and implementing AI internally, having policy enforcement and observability for large language models and the training data becomes essential.

QLYS3 statements

Qualys says it is building the first Agentic AI Risk Operations Center, aiming to centralize threat response before business impact occurs. [m2058] CEO Sumedh Thakar describes ETM as integrating CRQ, CTEM, and native remediation to address critical risks at scale, unlike conventional tools. [m2059] Thakar highlighted TruConfirm as an upcoming ETM feature that will validate whether vulnerabilities are exploitable before customers face a breach. [m2061]

Show the 3 verbatim statements
#m2059 · 2025-11-04 · Sumedh Thakar · STATED

In contrast to conventional continuous threat exposure management tools that merely highlight vulnerabilities without sufficient remediation capabilities, our unique ETM solution integrates CRQ, CTEM, and native remediation operations to rapidly address the most critical risks at scale.

#m2061 · 2025-11-04 · Sumedh Thakar · STATED

Next in line for our ETM solution, I am particularly excited about a new groundbreaking feature, TruConfirm. This feature harnesses the power of our platform to validate whether vulnerabilities are exploitable before customers face a breach.

#m2058 · 2025-11-04 · Sumedh Thakar · STATED

While traditional security operations centers work to identify breaches post-occurrence, Qualys is leading the creation of the first Agentic AI Risk Operations Center, ROC, which aims to centralize an organization's threat response before any business impact occurs.

OPEN is an unresolved commitment on the clock; STATED is on the record without a checkable bar and is never counted or scored. Method: methodology.