The company’s innovative capabilities enable organizations to safely deploy AI agents

Proofpoint, a global leader in human and agent cybersecurity, has announced the Proofpoint Agentic Data and AI Security system, built to secure AI and data as one connected risk.
Its innovative capabilities enable organizations to safely deploy AI agents with access to only the data they need based on intent, while translating existing business policies into runtime controls and continuously uncovering emerging risks across human and autonomous AI activity.
AI agents now discover, access, transform, and act on sensitive data at a scale no manual review can match. AI tools often see intent but not data access, and data tools see sensitive data but not agent intent. As those interactions multiply, seeing only half the picture leaves critical risk unseen. Securing AI and data separately is no longer enough; it takes a system that can act as fast as the risk appears.
AI run-time protections
“Bringing AI run-time protections and AI data governance together gives organizations that context, and the ability to act on risk at the speed AI now moves,” weighed in Mayank Choudhary, Executive Vice President and General Manager, Data Security and Governance Group, Proofpoint.
The agentic system reasons at the agent level, using the same identity, access, and data context that already secures more than 14,000 enterprises’ data today.
It is built on the Proofpoint Knowledge Graph, which is the foundation, connecting AI activity with data sensitivity, identity, access, behavior, and intent through Nexus models. On top of it, three new agents work from one shared understanding of risk instead of three partial ones:
Zero-Touch Detection: The Detection Agent sees intent and access as a single signal, surfacing the handful of actions that matter instead of the flood of anomalies traditional tools can’t stop generating.
Instant Investigation: The Investigation Agent reconstructs what happened across data, identity and behavior automatically, turning an investigation that once took days of manual correlation into minutes.
Protection Optimization: The Remediation Agent turns that understanding into action, from access remediation to DLP policy optimization, with a human in the loop for governance.
“Organizations have spent decades defining how their businesses should operate. The challenge now is making those rules enforceable as AI takes on more consequential work. Business intent needs to become part of the security control itself, with the ability to identify new risks and adapt as AI behavior evolves,” concluded Ryan Kalember, Chief Strategy Officer, Proofpoint.
