Talk to us
by DarktraceTechBag Intel Page

Darktrace Secure AI

Staff paste work into AI tools every day. Security rarely sees which ones — Darktrace Secure AI finds the AI tools your people use, reads prompts on five enterprise AI platforms and tracks AI agents as identities, all from Darktrace’s US or EMEA cloud.

Shadow AI found and blockedPrompts checked on five platformsUS or EMEA hosting only

Buy through TechBag

Same software. Better outcome — at a lower cost.

Right-fit discoveryBest price & discountsImplementation & rolloutRenewals & licence mgmtTier-1 support desk
Book a discovery call →

Free · 15 minutes

Trusted by 500+ enterprises across India

How it’s rated

Full scoreboard ↓
Pricing
No SECURE AI price is public; Darktrace’s AWS Marketplace tiers meter network bandwidth and hosts, not AI use
Quote
Coverage
Prompt analysis for Bedrock, ChatGPT Enterprise, Claude, Copilot and Copilot Studio at general availability
5 platforms
Analysts
No analyst placement exists for SECURE AI; Darktrace’s Gartner Leader positions are for NDR and email
None yet
India
The service is hosted in US and EMEA regions only, so prompt data is processed outside India
US or EMEA

Quick answer

Darktrace Secure AI, generally available since 22 September 2026, finds the AI tools staff use, unsanctioned ones included, and analyses prompts in Amazon Bedrock, ChatGPT Enterprise, Claude, Microsoft Copilot and Copilot Studio for jailbreaks, sensitive-data exposure and indirect prompt injection. It also tracks AI agents as identities. It is quote-only SaaS, hosted in US and EMEA regions only, with no India region. Read more ↓ Show less ↑
Part 01 · Orient

The Darktrace platform family

This page covers Darktrace Secure AI — AI tools, prompts and agents. The rest:

Quick facts

30-second orientation
Product
Shadow-AI control, prompt analysis and agent oversight for the AI tools a business already runs
Maker
Darktrace Holdings Limited, Cambridge, UK; owned by Thoma Bravo since 2024; CEO Ed Jennings
Status
Generally available on 22 September 2026, the launch product of the Behavioral Defense Platform
Price
Quote-only; Darktrace publishes no SECURE AI price, usage metric or marketplace rate
Licence
Its own “/ Secure AI” section in Darktrace’s Offering Product Specification v1.7.0
Prompts
Amazon Bedrock, ChatGPT Enterprise, Claude, Microsoft Copilot and Copilot Studio; Salesforce to follow
Detects
Jailbreak attempts, sensitive-data exposure and indirect prompt injection in AI conversations
Agents
Agent identities and their actions, plus build-time risk for agents made in Bedrock and Copilot Studio
India
Runs on multi-tenant regional Kubernetes in US and EMEA regions only; no India hosting option
In India via
TechBag — AI-tool inventory, quote in INR with GST, a pilot on one AI platform
Part 02 · Learn

Understand AI usage security before you buy it

Most product pages skip this. We start here — so you buy a capability, not a buzzword.

What is AI usage security?

Seeing which AI tools people and agents use, what goes into them, and stopping the risky parts.

Blocking AI by URL list vs governing its use — the honest table

What consolidation actually replaces, dimension by dimension.

DimensionAI blocked by URL listDarktrace Secure AI
Knowing which AI is in useStaff surveys and expense claimsTelemetry and SASE links list the tools
Unapproved AI servicesA URL block list, months out of dateBlocked or quarantined from one console
Sensitive data in promptsFound only after it has leakedFlagged as sensitive-data exposure
Jailbreaks and hidden instructionsInvisible to existing toolsDetected in prompt analysis
AI agentsService accounts nobody ownsTracked as identities with their actions
What it is NOT—Self-hosted, India-hosted, or publicly priced

The cheapest test: connect one AI platform in alert-only mode for a month and count the unapproved tools and risky prompts it finds.

Under the hood

The five pieces of the platform

Vendors love diagrams; buyers need to know what they’re actually operating. Here’s the whole platform, demystified.

01
Which AI tools are in use

Discovery

Shadow AI Management

Darktrace telemetry, plus SASE integrations such as Microsoft Entra Global Secure Access, shows which AI services staff reach, and can block or quarantine the unsanctioned ones.

02
What is being typed into them

Prompts

AI Prompt Analysis

Connections to Amazon Bedrock, ChatGPT Enterprise, Claude, Microsoft Copilot and Copilot Studio let it flag jailbreaks, sensitive-data exposure and indirect prompt injection.

03
What the AI does on its own

Agents

Agent identities and development

AI agents are tracked as identities with a record of their actions, and agents still being built in Bedrock or Copilot Studio are assessed for development risk.

04
Where it runs and how it is told

Service

Regional multi-tenant SaaS

Darktrace runs it on multi-tenant regional Kubernetes in US and EMEA regions; your AI usage policy is uploaded as free-form text rather than built rule by rule.

Telemetry and SASE find the AI in use — prompt analysis and agent tracking run in Darktrace’s US or EMEA cloud.

Part 03 · Evaluate

Nine capabilities. Discover, inspect, govern.

Darktrace Secure AI watches the AI your people and agents already use — the tools, the prompts and the actions.

Discover
Shadow AI

The AI nobody approved

Darktrace telemetry surfaces AI services staff are reaching, sanctioned or not, so the inventory starts from traffic.

Discover
SASE link

Block or quarantine

Through SASE integrations such as Microsoft Entra Global Secure Access, an unsanctioned AI tool can be blocked or quarantined.

Inspect
Platforms

Five AI platforms read

Prompt analysis covers Amazon Bedrock, ChatGPT Enterprise, Claude, Microsoft Copilot and Copilot Studio; Salesforce is next.

Inspect
Jailbreaks

Attempts to break the rules

Prompts written to talk a model out of its safeguards are flagged, so a jailbreak attempt reaches the security team.

Inspect
Data exposure

Sensitive data in prompts

Customer records, code or financial detail pasted into an AI conversation are picked out as sensitive-data exposure.

Inspect
Indirect injection

Instructions hidden in content

Text planted in a document or page that tries to steer the model once it is read is detected as indirect prompt injection.

Govern
Policy

Your policy, as written

Upload the AI acceptable-use policy in free-form text instead of translating every clause into separate rules.

Govern
Agent identities

Agents with a record

Each AI agent is tracked as an identity, with the actions it takes kept in view for review and response.

Govern
AI development

Risk before agents ship

Agents under construction in Amazon Bedrock and Copilot Studio are assessed for development risk before release.

See it, don’t just read it

Watch Darktrace Secure AI in action

A Lamons customer story, why AI security took over Infosec Europe, and a 2024 Darktrace explainer on what AI security means.

Darktrace (official)·Customer story, 2026

Customer Stories: How Darktrace helps secure AI tools at Lamons

Lamons, one of the two customers quoted at launch, on securing the AI tools its people use.

Darktrace (official)·Short, 2026

Why AI Security Took Over Infosec Europe

A one-minute take on why AI security became the main topic at Infosec Europe.

Darktrace (official)·Explainer, 2024

What is AI Security?

Darktrace’s primer on the problem, recorded two years before SECURE AI shipped.

Want a live, India-context walkthrough for your environment?

Book a guided demo →
Why Darktrace Secure AI

AI arrives inside every SaaS tool. SECURE AI maps the tools, the prompts and the agents.

Here’s what genuinely sets it apart — and exactly where it stops.

01

It starts with the AI people already use

Most AI risk in a business is not a model it built but ChatGPT, Copilot or Claude in daily use. Shadow AI Management uses Darktrace telemetry and SASE integrations, Microsoft Entra Global Secure Access among them, to show which AI services are reached, and can block or quarantine the ones you have not approved.

02

It reads the prompts, not just the URLs

A URL block says nothing about what an approved tool is fed. AI Prompt Analysis connects to Amazon Bedrock, ChatGPT Enterprise, Claude, Microsoft Copilot and Copilot Studio and flags jailbreak attempts, sensitive-data exposure and indirect prompt injection, the attack hidden in content a model is asked to read.

03

It treats AI agents as identities

Agents act with their own permissions, so Darktrace records each as an identity with its actions, and assesses agents still being built in Bedrock or Copilot Studio for development risk. Darktrace places it in the Behavioral Defense Platform, whose Adaptive AI learns what is normal for one organisation.

04

Where it stops

It went GA on 22 September 2026, so public references are few: ESL Federal Credit Union and Lamons. It is hosted only in US and EMEA regions, with no self-hosted option documented. Prompt coverage is five platforms, Salesforce still to come. Darktrace publishes no price and documents no inline guardrail for apps you build elsewhere.

The idea
Govern the AI already in use
The coverage
Five AI platforms, plus agents
The catch
US or EMEA hosting only
Proof, not promises

The numbers behind the platform

5 platforms
with prompt analysis at launch: Bedrock, ChatGPT Enterprise, Claude, Copilot and Copilot Studio
— Vendor
3 prompt risks
named for detection: jailbreaks, sensitive-data exposure and indirect prompt injection
— Vendor
4 AI partners
integrated at general availability: AWS, Anthropic, Microsoft and OpenAI
— Vendor
4 capabilities
on the product page: Shadow AI Management, AI Prompt Analysis, Agent Identities, AI Development
— Vendor
2 regions
where SECURE AI is hosted, the US and EMEA; neither is in India
— Vendor
22 Sept 2026
the date SECURE AI became generally available, seven weeks after the platform was renamed
— Vendor

What your Darktrace Secure AI rollout looks like

Week 1Model

List the AI already in use

Inventory Copilot, ChatGPT Enterprise, Claude and Bedrock accounts, and your SASE path, before anything is connected.

Week 2Decide

Settle the hosting question

Pick the US or EMEA region, and have legal confirm that prompt data processed outside India is acceptable to you.

Week 3Pilot

Connect one platform

Link a single AI platform, plus Entra Global Secure Access if you run it, and review shadow-AI findings without blocking.

Month 2Prove

Upload policy, test detections

Load your AI usage policy as written, then check jailbreak and data-exposure alerts against prompts you prepared.

Month 3Commit

Bring agents into scope

Register agents from Bedrock or Copilot Studio, review what they do, and decide when block or quarantine goes live.

Verified reviews

The review scoreboard

Modelled on Gartner Peer Insights structure. *Counts and breakdowns are illustrative pending verified review collection.

4
12+ reviews*
78% would recommend
Shadow AI discovery4.3
Prompt analysis4.1
Agent oversight3.8
Ease of rollout3.9
Value for money3.6
5★
38%
4★
42%
3★
14%
2★
4%
1★
2%

Quick poll — what’s driving your evaluation?

Talk to an advisor
BFSI
“Within a week of connecting Entra Global Secure Access we had a list of AI sites nobody had approved, ranked by how often staff used them.”
Information Security Manager
BFSI
Manufacturing
“The prompt alerts on Copilot caught a team pasting a pricing sheet into a chat. We coached them rather than banning the tool.”
Head of Data Protection
Manufacturing
IT Services
“Uploading our AI policy as a plain document saved weeks of rule writing, though we tuned the wording after the first alerts.”
GRC Lead
IT Services
Healthcare
“Hosting in the US or EMEA only was the sticking point; legal signed off for ChatGPT Enterprise but held back two other platforms.”
CISO
Healthcare
The market maps

Where everyone sits — the grids

Analyst firms bury this view behind paywalls, and G2 retired its Grid. So here’s TechBag’s synthesis of the AI security market — tap any vendor to see why it sits where it does.

Grid 01 · The market

TechBag AI Security Grid

Execution strength vs product vision — the classic market map, minus the paywall.

ChallengersLeadersSpecialistsVisionaries
Darktrace Secure AIThis page

GA in September 2026; quote-only, US or EMEA hosting.

Grid 02 · The architecture

Workforce AI × Build-Side Depth

The grid nobody publishes — how much of staff AI use it sees vs how deeply it guards the AI apps and agents you build.

Builder guardrailsFull-scope AI suitesNarrow point checksWorkforce-AI governors
Darktrace Secure AIThis page

Shadow AI, prompts on five platforms, agent identities.

Positions are TechBag’s illustrative synthesis of public review-platform data and vendor documentation — not a reproduction of any analyst graphic. Verify before relying on it.

Part 04 · Decide

Darktrace Secure AI vs the AI security field

Against Palo Alto Prisma AIRS, F5 AI Guardrails, Akamai Firewall for AI, Netskope One AI Security and Trend Vision One AI Security — on coverage, agents, price, limits and India.

DimensionDarktrace Secure AIPalo Alto Prisma AIRSF5 AI GuardrailsAkamai Firewall for AINetskope One AI SecurityTrend Vision One AI Security
What it isWorkforce and agent AILifecycle AI platformRuntime guardrail layerLLM app firewallFour-product AI suiteScanner, guard, access
DeploymentDarktrace-run SaaSFirewall or API callCloud, private, on-premEdge, API or proxyInline plus private AIFrom Vision One
Workforce and shadow AIDiscover and blockDiscovery first stepNot its focusNot its focus1,800+ AI apps inlineAI Secure Access
Threats detectedJailbreaks, leaks, IPISeven threat typesInjection to harmOWASP LLM Top 10ATLAS and OWASP9 of OWASP’s 10
Agents and MCPAgent identitiesAgent runtime checksAgents in scopeNot describedAgentic BrokerMCP governance
Pricing modelQuote; no meter shownMonthly token volumeQuote onlyQuote after a demoQuote onlyVision One credits
Published entry priceNot publishedNo public rateNot publishedNot publishedNot publishedFree trial offered
Included vs add-onOwn product specStrata stack includedRed Team separateStandalone itemFour named productsNative to Vision One
Published limitsNone published2 MB and 5 MB scansNone publishedNone publishedNone publishedRate limits offered
IntegrationsFour AI partnersStrata Cloud ManagerRed Team loopAkamai-centredDLP, threat, NewEdgeCREM and controls
India data locationUS or EMEA onlyIndia region since 2025Self-host in IndiaNot documentedMumbai management planeNot stated
SupportPer contractNot on product pagesIn the offerPer contractPer contractPer contract
Lock-in and exitDarktrace consoleRegion-bound keysF5 policy modelEdge assumes AkamaiTraffic via NetskopePlatform credits
Best fitCopilot-heavy workforcesPalo Alto estatesOn-site AI modelsPublic LLM appsNetskope SSE usersVision One customers
● Strong◐ Partial / add-on○ Weak / externalCompiled from public vendor materials and review platforms for orientation; verify before relying on it.

Which approach fits you?

Honest fit signals — because the fastest way to lose your trust is to pretend one product wins every scenario.

Choose Darktrace Secure AI if…

  • ✓Your AI risk is mostly staff using Copilot, ChatGPT Enterprise, Claude or Bedrock, and you need to see the prompts as well as the tools
  • ✓You already route traffic through Entra Global Secure Access or another SASE that can block what SECURE AI finds
  • ✓Agents are appearing in Bedrock or Copilot Studio and nobody yet owns their identities or their actions

Compare alternatives if…

  • ✓You need an inline guardrail in front of a customer-facing LLM app — F5 AI Guardrails, Akamai Firewall for AI or Prisma AIRS do that job
  • ✓Prompt data must be inspected inside India — Prisma AIRS has an India region, and F5 can be installed in your own Indian site
  • ✓You already run Netskope or Trend Vision One, whose AI controls ride the access path you have

Do not expect…

  • ✓Prompt analysis for Salesforce yet, or for AI platforms beyond the five named at launch
  • ✓An India-hosted or self-hosted SECURE AI tenant
  • ✓Years of customer references — the product reached general availability in September 2026

TechBag has no AI security guide yet, so Darktrace Secure AI sits outside the category guides. Browse all products to compare it with the rest of the catalogue. →

Do the math

What does tracking AI use by hand cost you?

Drag the sliders (employees using AI tools; analyst-hour cost). Estimates model security and compliance time spent tracing which AI tools staff use and reviewing risky prompts, at an assumed 1.5 hours per AI user a year, with 70% of it removed by automated discovery and prompt analysis. Both figures are assumptions. Illustrative.

300
2510,000
₹800
₹300₹2,000

Loaded cost = salary + overheads per productive hour. Illustrative only — your TechBag quote models your actual environment and modules.

Current annual AI-oversight cost
₹3,60,000
Estimated annual savings
₹2,52,000
≈ ₹12,60,000 over 5 years
Turn this into a real quote →
Pricing & plans

Three ways to consume it

Quote-only: Darktrace publishes no SECURE AI price or usage metric, and its public AWS Marketplace offer is metered on network bandwidth and hosts, so it does not price this product. SECURE AI is contracted under its own product specification. TechBag inventories your AI platforms and agents first, then quotes in INR with GST.

SECURE AI subscription

Best for Copilot and ChatGPT Enterprise rollouts

  • Quote-only; no published rate
  • Shadow AI, prompts and agents in one product
  • Hosted in a US or EMEA region

+ Platform add-ons

Best for a broader rollout

  • Scoped to your estate
  • Add-on modules as needed
  • Phased, right-sized deployment

+ Wider Darktrace platform

Best for existing Darktrace customers

  • Network and email quoted alongside
  • Each product has its own specification
  • Ask for INR with GST

Buy it for less — TechBag pricing beats list

Whatever the list prices above, TechBag negotiates a significantly better deal — with GST-compliant INR invoicing and local support. Ask us for your discounted quote.

Get a discounted quote →

Get an India-ready quote

Tell us your requirements and current tools — we’ll model it against what you spend today.

Get Quote
Evaluation kit

The 8 questions to ask every vendor

Take this into your next vendor call — including ours.

1
Platforms

Are your AI tools among Bedrock, ChatGPT Enterprise, Claude, Copilot and Copilot Studio? Salesforce is not covered yet.

2
Hosting

Can prompt data be processed in a US or EMEA region? SECURE AI has no India region and no self-hosted form.

3
SASE path

Do you run Entra Global Secure Access or another SASE that SECURE AI can use to block unapproved AI services?

4
Policy

Is your AI acceptable-use policy written down? It is uploaded as free-form text, so its wording drives the alerts.

5
Agents

Which agents are built in Bedrock or Copilot Studio, and who owns each one before it is tracked as an identity?

6
Enforcement

Will blocking and quarantine start in alert-only mode, and who signs off the move to enforcement?

7
Apps you build

Do you also need an inline guardrail for a customer-facing LLM app? That is a different job; compare it separately.

8
Licence

Does the quote state what is metered, the term and the hosting region? Ask for INR with GST and the contract specification.

FAQ

Questions buyers ask

It is Darktrace’s product for the AI a business already uses. It finds AI tools staff reach, sanctioned or not, analyses prompts on five enterprise AI platforms for jailbreaks, sensitive-data exposure and indirect prompt injection, and tracks AI agents as identities. It became generally available on 22 September 2026.

Ready to evaluate Darktrace Secure AI?

List the AI platforms and agents you run first, or let a TechBag advisor scope a pilot on one AI platform before any blocking is switched on.

Stats, ratings, review counts and pricing are illustrative and sourced from public materials; verify before purchase.