
What happened
Palo Alto Networks is expanding its work with NVIDIA to control what AI agents can access and do, covering agent activity, network traffic and identity management under NVIDIA's Open Agent Safety Platform reference design. Anand Oswal, Palo Alto's EVP of AI and network security, wrote: "Security must control what an agent can do."
Why it matters
The collaboration targets AI agents that write code, retrieve company data and use software tools with limited human input, so companies would gain one place to inspect interactions, limit tools, remove sensitive data and track usage and costs.
What to watch
Availability differs sharply — Prisma AIRS AI Runtime Security on NVIDIA BlueField DPUs and NVIDIA OpenShell are generally available, but the Prisma AIRS AI Gateway on NVIDIA Vera CPUs is described as part of a future architecture.
WHO IT HITSEnterprise security teams managing AI agents that touch company data and internal tools stand to gain centralized inspection, access limits and cost tracking, while identity and secrets management for agent sandboxes remains a planned integration rather than a shipping product.
Summaries like this, in your inbox every morning.
Palo Alto Networks already worked with NVIDIA, and this expansion pushes that relationship into a specific problem: AI agents that can write code, retrieve company data and use software tools with limited human input. Because those agents act rather than just answer, the security question shifts from what a model says to what an agent is allowed to reach.
The body lays out several distinct pieces rather than one product. Prisma AIRS AI Runtime Security on NVIDIA BlueField data processing units runs security controls on a processor separate from the host, so network policy can be enforced independently of the application running the agent. NVIDIA DOCA Argus can monitor agent execution paths and tool calls, enforce access rules for networks and external APIs, and send telemetry to Cortex XSIAM for analysis and response. A planned OpenShell and Idira integration would add identity and secrets management for agent sandboxes.
The stakes appear to hinge on timing and maturity rather than ambition. OpenShell and the BlueField deployment are generally available, while the Vera deployment is described as forward-looking, so how quickly companies can standardize on this design may depend on when that future architecture arrives and how the planned Idira integration lands.
Pick your industry and the AI tools you use, and get news related to your work every day.
Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.
Ascerta Inc. raised $18 million in a Series A led by Dell Technologies Capital, with Hitachi Ventures, BGV and…
Netlist has begun legal proceedings against Micron and downstream customers Nvidia, Broadcom, and Google over…

Anthropic filed a confidential draft prospectus with a 2025 revenue of $4.6 billion, up from $400 million in 2…

On Anthropic's ExploitBench, GLM-5.3 built a working Chrome V8 exploit in 50 of 410 attempts versus Mythos Pre…

Google is paying about 100 digital publishers for content used in AI Overviews, AI Mode, and Gemini, with paym…

A Qiita walkthrough trained a five-label car-damage classifier on Gemini Enterprise Agent Platform AutoML usin…
