Zero Networks announced an expanded integration with Palo Alto Networks that introduces automated threat containment and controls designed specifically for AI agent traffic, pushing their joint zero-trust security solution beyond policy orchestration into active enforcement.
- Automated containment isolates compromised assets without segment-wide impact
- AI segmentation tied to Prisma AIRS inspects and controls AI agent traffic
- Dynamic tagging and enforcement unify firewall and zero-trust policies
What happened
Zero Networks has expanded its zero-trust security integration with Palo Alto Networks, adding the capability for automated threat containment and enhanced controls targeting AI agents. This follows their initial partnership launch in February 2025. The integration now extends from coordinating security policies to enforcing them directly, enabling more precise responses to detected threats within enterprise environments.
The upgraded integration allows Palo Alto Networks firewalls to leverage Zero Networks’ dynamic asset discovery and tagging for real-time containment of compromised devices. Instead of shutting down entire network segments, security teams can isolate only the affected asset. Additionally, selected internal traffic is redirected for deep Layer 7 inspection, enhancing protection of east-west communications that typically do not cross firewall boundaries.
Why it matters
AI agents pose unique security challenges because they typically operate with valid credentials and broad network permissions, making malicious activity difficult to distinguish from legitimate automation. The joint solution addresses this by applying zero-trust principles to AI traffic—strictly defining and enforcing which resources these agents can access and blocking unauthorized services entirely.
Integrating Zero Networks’ AI Segmentation with Palo Alto Networks’ Prisma AIRS product provides a unified visibility and control framework for AI interactions, inspecting the data and commands flowing between AI agents and backend resources. This prevents compromised AI-based workflows from moving undetected within networks and reduces risk without requiring costly network redesigns.
What to watch next
Current expanded enforcement features support Linux-based systems for traffic redirection, with plans to extend capabilities to Windows environments soon. The industry will be watching for how quickly Zero Networks and Palo Alto Networks deliver this Windows support, which will broaden protection across a majority of enterprise endpoint systems.
The integration’s ability to deliver dynamic asset management, automated microsegmentation, and synchronized policy enforcement across on-premises, cloud, operational technology, Kubernetes, and hybrid infrastructures is a major advancement. Market reception and adoption by enterprises handling complex AI workloads and threat landscapes will signal the effectiveness of this coordinated zero-trust approach.