AI Security Solutions Landscape

The landscape includes traditional and emerging security controls addressing LLM and Generative AI risks in the OWASP Top 10. It is not a comprehensive list or an endorsement but a community resource of open source and proprietary solutions. Contributions are open and reviewed for accuracy.

Watch the video
F5
F5 AI Gateway is an advanced security solution that protects, accelerates, and observes AI-powered applications.
Knostic
Knostic identifies data leakage from LLM-powered enterprise search and provides need-to-know based access controls, ensuring employees receive only the information necessary for their roles, thereby

Unstructured.io

Unstructured.io
Unstructured is the leading provider of LLM data preprocessing solutions, empowering organizations to transform their internal unstructured data into formats compatible with large language models
AIShield,Powered by Bosch
Pangea
Protect your users and application by redacting sensitive info from prompt inputs, prompt responses, and contextual data, using Pangea's Redact service.
EUNOMATIX
LLMInspect is an enterprise-level Generative AI Gateway to detect and block data leakages and data threats while ensuring the safe use of Commercial LLMs (like
GuardionAI
GuardionAI provides a realtime & adaptive LLM guardrails API against prompt attacks, data leaks, off-policy behavior, and content violations. The platform allows users to monitor,
Infosys
Infosys Responsible AI Toolkit is an API-based solution to build secure AI application addressing prompt injection, jailbreaks, identify model vulnerabilities and provide defense mechanism as
Lakera
Lakera is an AI Application Firewall that protects against prompt attacks, data loss, and inappropriate content. Lakera integrates with a single line of code and

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

Highflame RED

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

Citadel AI
Citadel Lens is a tool for multilingual, automated red teaming and evaluation of LLM applications.
Promptfoo
Open-source LLM testing solution that provides custom probes for your application that identify failures you actually care about, not just generic jailbreaks and prompt injections.
Straiker Inc
Secure AI Applications using two products. Ascend AI provides pentesting/red teaming across all layers of the applications. Defend AI provides visibility, guardrails for AI applications.

Flickling

Trail of Bits
Fickling can help securing AI/ML codebases by automatically scanning pickle files contained in models. Fickling hooks the pickle module and verifies imports made when loading
Dynamo AI
DynamoGuard offers real-time guardrailing for GenAI, customizable in natural language and capable of running in the cloud, hybrid, on-prem or fully on edge devices to
Aim Security
The Aim AI Security Platform enables enterprises to secure every AI interaction throughout their AI adoption journey, from AI applications used directly by employees to
AI Verify Foundation
AI Verify is an AI governance testing framework and software toolkit that validates the performance of AI systems against a set of internationally recognized principles

Lasso Secure Gateway for LLMs

Lasso Security
Lasso Security is a Secure Gateway for LLMs and provides Anomaly Detection, Insecure Output Handling, Prompt Injection Detection, Data & Knowledge Protection, Hallucination Detection, Supply-Chain
Unbound Security
Unbound AI gateways solves for guardrails, prompt injection, and jailbreaking attacks while helping customers create routing policies based on data sensitivity. For example, prompts containing
Apex Security AI
Apex Security leverages proprietary AI models to detect adversarial attempts in LLM inputs/outputs, identifying sensitive data exposure, leakage, complex manipulations, and risky agents. It integrates

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

EU Compliance MCP

Ansvar Systems AB

Open-source MCP server providing deterministic, structured access to 50 EU regulations and 2,700+ articles including GDPR, AI Act, NIS2, DORA, and CRA. Every provision hard-linked

Ansvar Intelligence Portal

Ansvar Systems AB

MCP-native compliance intelligence and threat modeling platform. 91 MCP servers deliver deterministic access to security frameworks, global legislation, and vulnerability data with hard-linked citations to

P.I.L.L.A.R.

P.I.L.L.A.R.
"P.I.L.L.A.R. (Privacy risk Identification with LINDDUN and LLM Analysis Report) is a tool which helps developers to identify privacy threats in their software. It uses
SpiceDB
Open source, Google Zanzibar-inspired permissions database for scalably storing and querying fine-grained authorization data.
Microsoft
Defender for Cloud AI-SPM identifies vulnerabilities and misconfigurations in generative AI apps on Azure OpenAI, Azure Machine Learning, and Amazon Bedrock, providing actionable recommendations and

Seezo Security Design Review

Seezo.io
Seezo leverages LLMs to provide context-specific security requirements to developers before they start coding

StrideGPT

Stride GPT
A threat model helps identify and evaluate potential security threats to applications / systems. It provides a systematic approach to understanding possible vulnerabilities and attack

Mitre ATLAS

Mitre
ATLAS (Adversarial Threat Landscape for Artificial-Intelligence Systems) is a globally accessible, living knowledge base of adversary tactics and techniques against Al-enabled systems based on real-world
Pillar Security
Pillar enables teams to rapidly adopt AI with minimal risk by providing a unified AI security layer across the organization
Securiti
Securiti Data Command Center provides unified intelligence, controls, and orchestration for enabling the safe use of data and AI across hybrid multi-clouds. Enterprises rely on

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

Highflame RED

Highflame AI

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

Highflame RED

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

Decisionbox
Decisionbox makes LLM applications learn from data by transforming zero-shot prompts into fine-tuned machine learning classifiers.
Pillar Security
Pillar enables teams to rapidly adopt AI with minimal risk by providing a unified AI security layer across the organization

Unstructured.io

Unstructured.io
Unstructured is the leading provider of LLM data preprocessing solutions, empowering organizations to transform their internal unstructured data into formats compatible with large language models
Securiti
Securiti Data Command Center provides unified intelligence, controls, and orchestration for enabling the safe use of data and AI across hybrid multi-clouds. Enterprises rely on

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

Highflame RED

Highflame AI

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

TrojAI

TrojAI helps secure AI models, applications, and agents across both AI build time and AI runtime

AIandMe
AIandMe provides an end-to-end platform for testing, securing, and monitoring LLM-based AI systems—combining automated adversarial testing, real-time protection, and human-in-the-loop audits to ensure reliable, compliant,
SpiceDB
Open source, Google Zanzibar-inspired permissions database for scalably storing and querying fine-grained authorization data.
TrojAI
TrojAI Detect secures AI behavior at build time. The AI security platform continuously red teams AI models to find security weaknesses in AI, ML, and

Operant 3D Runtime Defense

Operant AI
Operant provides runtime application defense with threat detection and remediation, automated policy enforcement, and in-line PII redaction. It secures cloud-native environments, protecting APIs, data flows,
Pangea
Utilize Pangea's Sanitize service to ensure that malicious scripts, malicious links, profanity, and regulated PII are not submitted in prompt inputs, prompt responses, or in
Pangea
Pangea's Authorization service is an access control engine that integrates with any AI application through easy-to-use APIs and SDKs. It is used to enforce access
Pangea
Secure authentication, with support for adaptive threat intelligence, built specifically to protect access to your AI application, protect your users, and your organization.
Pangea
Protect your users and application by redacting sensitive info from prompt inputs, prompt responses, and contextual data, using Pangea's Redact service.
Pangea
Prompt inputs, responses, and data ingestion from external sources can all be evaluated for malicious content with Pangea's Data Guard to protect LLMs and users

PurpleLlama CodeShield

Meta
CodeShield is an effort to mitigate against the insecure code generated by LLMs. CodeShield is a robust inference time filtering tool engineered to prevent the
Pangea
Pangea's Prompt Guard service utilizes a deep understanding of prompt templates, heuristics and trained models to detect direct or indirect prompt injection attacks and jailbreak
Cisco Systems
Cisco AI Validation assesses AI applications and models for security and safety vulnerabilities. We automatically analyze a model’s risk across hundreds of attack techniques and
Mend AI
Mend AI provides a shift-left solution for securing AI-driven applications. It enables discovery of shadow AI, security and compliance analysis through code scanning and red-teaming,
Aqua Security
Aqua facilitates secure application development and runtime protection by addressing vulnerabilities outlined in the OWASP Top 10 for LLM applications.

Flickling

Trail of Bits
Fickling can help securing AI/ML codebases by automatically scanning pickle files contained in models. Fickling hooks the pickle module and verifies imports made when loading
Pillar Security
Pillar enables teams to rapidly adopt AI with minimal risk by providing a unified AI security layer across the organization

Python Risk Identification Tool for generative AI (PyRIT)

The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to proactively identify risks

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

EU Compliance MCP

Ansvar Systems AB

Open-source MCP server providing deterministic, structured access to 50 EU regulations and 2,700+ articles including GDPR, AI Act, NIS2, DORA, and CRA. Every provision hard-linked

Highflame RED

Highflame AI

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

DryRun Security
DryRun Security helps engineering teams identify risky code before it ships using contextual security analysis. It surfaces subtle security flaws by understanding code behavior, not

TrojAI

TrojAI helps secure AI models, applications, and agents across both AI build time and AI runtime

AIandMe
AIandMe provides an end-to-end platform for testing, securing, and monitoring LLM-based AI systems—combining automated adversarial testing, real-time protection, and human-in-the-loop audits to ensure reliable, compliant,
Eroun&Company
RedTeam solution to automate detection of malicious prompt attack vulnerabilities against LLM
KELA
AiFort by KELA is an automated, intelligence-led red teaming platform designed to protect GenAI applications. AiFort allows organizations full protection through test simulations of their
Straiker Inc
Secure AI Applications using two products. Ascend AI provides pentesting/red teaming across all layers of the applications. Defend AI provides visibility, guardrails for AI applications.
AIM Intelligence
AIM Supervisor integrates AIM RED for automated AI vulnerability testing, AIM GUARD for real-time threat detection and mitigation, and AIM Benchmark for comprehensive safety evaluations,

Adversa AI Red Teaming Platform

Adversa AI
Adversa AI's Red Teaming platform provides automated security testing of Generative AI systems, identifying all possible vulnerabilities like jailbreaks, prompt injections, and adversarial attacks to
Dynamo AI
DynamoGuard offers real-time guardrailing for GenAI, customizable in natural language and capable of running in the cloud, hybrid, on-prem or fully on edge devices to
AIShield,Powered by Bosch
AIShield,Powered by Bosch
AIShield Watchtower automates model and notebook discovery, performing thorough vulnerability scans to identify risks like hard-coded secrets, PII exposure, outdated libraries, serialization attacks, and unsafe
Mindgard
Continuous security testing of AI across an organization. Our product is a DAST solution that finds and remediates AI vulnerabilities only detectable at run time.
TrojAI
TrojAI Detect secures AI behavior at build time. The AI security platform continuously red teams AI models to find security weaknesses in AI, ML, and
AIFT
Vulcan is an LLM risk and vulnerability testing solution that enables AI project teams to perform automatic red teaming at scale.

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

Highflame RED

Highflame AI

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

Lasso Security
Lasso for Applications provides continuous protection and comprehensive control for all GenAI applications, agents, and models used or developed by your organization. With advanced monitoring
Lasso Security
Lasso for employees is an easy-to-install Browser Extension that provides organizations with a holistic view and comprehensive protection of GenAI usage in under 10 minutes

TrojAI

TrojAI helps secure AI models, applications, and agents across both AI build time and AI runtime

Preamble
Preamble provides runtime guardrails for RAG, LLMs, and AI agents by enforcing safety, privacy, security, and compliance policies while mitigating real-time risks to ensure secure,
TrojAI
TrojAI Defend protects AI models from evolving threats at runtime, including prompt injection, jailbreaking, DoS attacks, data leakage and loss, and toxic or offensive content.

Operant 3D Runtime Defense

Operant AI
Operant provides runtime application defense with threat detection and remediation, automated policy enforcement, and in-line PII redaction. It secures cloud-native environments, protecting APIs, data flows,
Palo Alto Networks
Palo Alto Networks AI Runtime Security provides continuous discovery, protection, and monitoring for genAI applications, preventing security risks such as prompt injections, sensitive data leakage,

PurpleLlama CodeShield

Meta
CodeShield is an effort to mitigate against the insecure code generated by LLMs. CodeShield is a robust inference time filtering tool engineered to prevent the
Cisco Systems, Inc.
Cisco AI Runtime secures GenAI apps to address threats like prompt injections, sensitive data loss, and compliance concerns. Deploy guardrails around safety, privacy, relevancy, and
Aqua Security
Aqua facilitates secure application development and runtime protection by addressing vulnerabilities outlined in the OWASP Top 10 for LLM applications.

IronCore Labs Cloaked AI

IronCore Labs
Encrypts vector embeddings stored in databases while still allowing kNN/aNN searches and preventing vector inversion attacks.
Securiti
Securiti Data Command Center provides unified intelligence, controls, and orchestration for enabling the safe use of data and AI across hybrid multi-clouds. Enterprises rely on

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

Infosys
Infosys Responsible AI Toolkit is an API-based solution to build secure AI application addressing prompt injection, jailbreaks, identify model vulnerabilities and provide defense mechanism as
Skyrelis
Skyrelis provides runtime policy enforcement and agent behavior monitoring for multi-agent systems, enabling fine-grained visibility, risk scoring, and adaptive controls to mitigate misuse and ensure
Trend Micro
Trend Vision One™ is an AI-powered cybersecurity platform that centralizes risk management, security operations, and protection layers across your entire digital estate, helping predict and
Infotect Security
IWS scans outbound response traffic in real time for undesirable content and confidential data at layer 4. It is a paradigm shift in web security.
Microsoft
Microsoft Security provides capabilities to discover, protect, and govern AI applications. Data Security, AI Security Posture Management, AI Threat Protection, AI governance and more.
Preamble
Preamble provides runtime guardrails for RAG, LLMs, and AI agents by enforcing safety, privacy, security, and compliance policies while mitigating real-time risks to ensure secure,
Cloudsine Pte Ltd
WebOrion® Protector Plus is a GenAI firewall, built to protect GenAI applications against cyber threats. Its ShieldPrompt™ add-on offers an advanced level of protection, including
Straiker Inc
Secure AI Applications using two products. Ascend AI provides pentesting/red teaming across all layers of the applications. Defend AI provides visibility, guardrails for AI applications.
Dyana
Dyana is a sandbox environment using Docker and Tracee for loading, running and profiling a wide range of files, including machine learning models, ELF executables,
F5
F5 AI Gateway is an advanced security solution that protects, accelerates, and observes AI-powered applications.
Dynamo AI
DynamoGuard offers real-time guardrailing for GenAI, customizable in natural language and capable of running in the cloud, hybrid, on-prem or fully on edge devices to
Knostic
Knostic identifies data leakage from LLM-powered enterprise search and provides need-to-know based access controls, ensuring employees receive only the information necessary for their roles, thereby
TrojAI
TrojAI Defend protects AI models from evolving threats at runtime, including prompt injection, jailbreaking, DoS attacks, data leakage and loss, and toxic or offensive content.
Palo Alto Networks
Palo Alto Networks AI Runtime Security provides continuous discovery, protection, and monitoring for genAI applications, preventing security risks such as prompt injections, sensitive data leakage,
Blueteam AI
Blueteam AI Gateway is a network-layer appliance that intercepts traffic to AI models and discovers AI use, safeguards data from leaking, and governs safe and
Aim Security
The Aim AI Security Platform enables enterprises to secure every AI interaction throughout their AI adoption journey, from AI applications used directly by employees to

Llama Guard

Meta
Llama Guard is a set of LLM system safeguards designed to support developers to detect various common types of violating content across multiple use cases
Cisco Systems, Inc.
Cisco AI Runtime secures GenAI apps to address threats like prompt injections, sensitive data loss, and compliance concerns. Deploy guardrails around safety, privacy, relevancy, and

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

Highflame RED

Highflame AI

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

Apex Security AI
Apex Security leverages proprietary AI models to detect adversarial attempts in LLM inputs/outputs, identifying sensitive data exposure, leakage, complex manipulations, and risky agents. It integrates
EUNOMATIX
LLMInspect is an enterprise-level Generative AI Gateway to detect and block data leakages and data threats while ensuring the safe use of Commercial LLMs (like
Fiddler AI
The Fiddler AI Observability and Security platform offers the industry's fastest guardrails, with response times <100 ms, to protect LLM applications from hallucinations, safety violations,
Skyrelis
Skyrelis provides runtime policy enforcement and agent behavior monitoring for multi-agent systems, enabling fine-grained visibility, risk scoring, and adaptive controls to mitigate misuse and ensure
GuardionAI
GuardionAI provides a realtime & adaptive LLM guardrails API against prompt attacks, data leaks, off-policy behavior, and content violations. The platform allows users to monitor,
Trend Micro
Trend Vision One™ is an AI-powered cybersecurity platform that centralizes risk management, security operations, and protection layers across your entire digital estate, helping predict and

TrojAI

TrojAI helps secure AI models, applications, and agents across both AI build time and AI runtime

AIandMe
AIandMe provides an end-to-end platform for testing, securing, and monitoring LLM-based AI systems—combining automated adversarial testing, real-time protection, and human-in-the-loop audits to ensure reliable, compliant,
KELA
AiFort by KELA is an automated, intelligence-led red teaming platform designed to protect GenAI applications. AiFort allows organizations full protection through test simulations of their
Preamble
Preamble provides runtime guardrails for RAG, LLMs, and AI agents by enforcing safety, privacy, security, and compliance policies while mitigating real-time risks to ensure secure,
Straiker Inc
Secure AI Applications using two products. Ascend AI provides pentesting/red teaming across all layers of the applications. Defend AI provides visibility, guardrails for AI applications.
Dynamo AI
DynamoGuard offers real-time guardrailing for GenAI, customizable in natural language and capable of running in the cloud, hybrid, on-prem or fully on edge devices to
AISheild,Powered by Bosch
AIShield Guardian functions as an AI firewall and guardrail, providing secure access control, sensitive data protection, and live monitoring. It safeguards interactions between applications and
TrojAI
TrojAI Defend protects AI models from evolving threats at runtime, including prompt injection, jailbreaking, DoS attacks, data leakage and loss, and toxic or offensive content.

Operant 3D Runtime Defense

Operant AI
Operant provides runtime application defense with threat detection and remediation, automated policy enforcement, and in-line PII redaction. It secures cloud-native environments, protecting APIs, data flows,
Palo Alto Networks
Palo Alto Networks AI Runtime Security provides continuous discovery, protection, and monitoring for genAI applications, preventing security risks such as prompt injections, sensitive data leakage,

Cisco AI Defense

Cisco

Could you please update your Cisco offering on the page to the proper product name: Cisco AI Defense? You are currently referring to it as

EU Compliance MCP

Ansvar Systems AB

Open-source MCP server providing deterministic, structured access to 50 EU regulations and 2,700+ articles including GDPR, AI Act, NIS2, DORA, and CRA. Every provision hard-linked

Ansvar Intelligence Portal

Ansvar Systems AB

MCP-native compliance intelligence and threat modeling platform. 91 MCP servers deliver deterministic access to security frameworks, global legislation, and vulnerability data with hard-linked citations to

Highflame RED

Highflame AI

Highflame RED provides autonomous adversarial testing of AI Agents using research backed attack engines that generate novel & real-life adversarial testing scenarios. The RED teaming

Pomerium
Pomerium adds per request authentication and authorization with verbose logging for AI Agents and LLMs accessing MCP Servers.
Skyrelis
Skyrelis provides runtime policy enforcement and agent behavior monitoring for multi-agent systems, enabling fine-grained visibility, risk scoring, and adaptive controls to mitigate misuse and ensure
Cranium
Whether organizations are builders and/or consumers of AI, Cranium offers a comprehensive platform that enables complete security, compliance, and trust across the entire AI supply
Dynamo AI
DynamoGuard offers real-time guardrailing for GenAI, customizable in natural language and capable of running in the cloud, hybrid, on-prem or fully on edge devices to
Unbound Security
Unbound AI gateways solves for guardrails, prompt injection, and jailbreaking attacks while helping customers create routing policies based on data sensitivity. For example, prompts containing
Palo Alto Networks
Palo Alto Networks AI Runtime Security provides continuous discovery, protection, and monitoring for genAI applications, preventing security risks such as prompt injections, sensitive data leakage,
Blueteam AI
Blueteam AI Gateway is a network-layer appliance that intercepts traffic to AI models and discovers AI use, safeguards data from leaking, and governs safe and
Aim Security
The Aim AI Security Platform enables enterprises to secure every AI interaction throughout their AI adoption journey, from AI applications used directly by employees to
Cisco Systems
Cisco AI Validation assesses AI applications and models for security and safety vulnerabilities. We automatically analyze a model’s risk across hundreds of attack techniques and
Pillar Security
Pillar enables teams to rapidly adopt AI with minimal risk by providing a unified AI security layer across the organization
AI Verify Foundation
AI Verify is an AI governance testing framework and software toolkit that validates the performance of AI systems against a set of internationally recognized principles
Securiti
Securiti Data Command Center provides unified intelligence, controls, and orchestration for enabling the safe use of data and AI across hybrid multi-clouds. Enterprises rely on

Lasso Secure Gateway for LLMs

Lasso Security
Lasso Security is a Secure Gateway for LLMs and provides Anomaly Detection, Insecure Output Handling, Prompt Injection Detection, Data & Knowledge Protection, Hallucination Detection, Supply-Chain
Scroll to Top

Solutions Landscape