Securing the Global AI Attack Surface

Cloudflare, Inc. announced a partnership with cloud and AI security leader Wiz, now part of Google Cloud, to give security teams……
Tom Evans - securitybuyer.com

Share this article:

Cloudflare, Inc. announced a partnership with cloud and AI security leader Wiz, now part of Google Cloud, to give security teams a unified way to analyze and protect AI-powered applications across their entire environment. By integrating the power of Cloudflare’s AI Security for Apps directly into the Wiz Security Graph, organizations will gain access to the most comprehensive map of their entire AI footprint, and the tools needed to secure it.

Potential attack surface

Organizations are shipping AI-powered features faster than security teams can track them. Every new chatbot, copilot, or AI-powered search endpoint is a potential attack surface vulnerable to prompt injection, sensitive data exfiltration, and abuse. The challenge is knowing which ones exist across your web properties, whether they have security guardrails in place, and whether those guardrails are actually working. To help organizations understand their AI footprint and whether they have the necessary guardrails in place, CISOs need a single source of truth where they can better understand and secure their AI and cloud infrastructure.

The integration helps customers autonomously eliminate AI blind spots across their infrastructure, allowing security teams to safely accelerate AI adoption. Cloudflare’s AI Security for Apps equips organizations with guardrails at the edge to secure AI endpoints from risks such as prompt injection and unsafe topics, while Wiz’s AI Application Protection Platform (AI-APP) simultaneously maps the complete AI application and surfaces the security gaps. By integrating Cloudflare’s security rules into the Wiz Security Graph, security teams can prioritize risks based on exploitability. As a result, CISOs gain visibility into the LLMs operating across their web properties and runtime controls to enforce policies. Cloudflare and Wiz are model and host-agnostic, protecting endpoints regardless of the LLM or cloud provider.

Tom Evans Comments:

“AI is the most transformative technology we’ve seen in a generation, powering countless capabilities. But for a majority of businesses, it can be a black box. When talking with CISOs today, they are struggling with the balance of being an enabler of innovation with AI, while combating uncontrolled shadow AI across their organization because their legacy security tools are effectively useless at this level,” said Tom Evans, Chief Partner Officer at Cloudflare. “The Cloudflare and Wiz partnership helps tackle this trade-off. Now, we are delivering a solution to allow innovation with AI at speed, without the worry that their most sensitive data will be exposed.”

“Security alignment isn’t just about reducing risk, it’s an enabler of AI application development,” said Oron Noah, VP of Product, Extensibility & Partnerships at Wiz. “By combining Wiz’s end-to-end visibility with Cloudflare’s edge protections, we close a critical gap in how AI risk is managed. This partnership gives organizations a unified view of AI application endpoints and shared risk context, helping them stop threats like prompt injection and shadow AI before they start.”

Cloudflare’s partnership with Wiz empowers customers to:

  • Discover Shadow AI: identify all LLM endpoints across your web properties, including ones deployed without security team involvement, and understand which are protected and which are exposed.
  • Inspect AI Traffic In Real Time: Cloudflare AI Security for Apps runs detections on every request to LLM endpoints to identify and mitigate PII leakage, prompt injection, and custom-defined topics. These detections run in parallel across Cloudflare’s global network, without adding latency to AI traffic.
  • Map Sensitive Data Flows: Wiz maps data flows between AI applications, models, and data stores onto its Security Graph, giving security teams visibility into where sensitive data interacts with AI workloads to help teams prioritize remediation.
  • Verify Guardrails: Wiz verifies that AI deployments are protected by Cloudflare’s AI Security for Apps. If guardrails are missing or misconfigured, Wiz alerts teams for direct remediation within the Cloudflare platform.
  • Prioritize Remediation: The integration surfaces which unprotected AI endpoints have access to sensitive data or production systems, so security teams fix the highest-risk gaps first.

The partnership delivers a seamless integration without needing custom workflows or additional agents to deploy. Cloudflare’s detections run inline on its global network, one of the largest and most interconnected in the world, so organizations gain AI security without architectural changes or performance trade-offs.

About Security Buyer

Security Buyer is the leading authority in global security content, delivering expert news, in-depth articles, exclusive interviews, and industry insights across print, digital, and event platforms. Published 10 times a year, the magazine is a trusted resource for professionals seeking updates and analysis on the latest developments in the security sector.

To submit an article, or for sponsorship opportunities, please contact our team below.

Rebecca Spayne Picture

Rebecca Spayne

Group Managing Editor

Georgina Turner Picture

Georgina Turner

Sales Manager

Afua Akoto Picture

Afua Akoto

Marketing Manager

Related News

PaxLock Pro2 - securitybuyer.com

Paxton officially launches PaxLock Pro2

Paxton the security technology manufacturer has launched a brand-new re-engineered PaxLock which is built to protect straight
KentixONE data centre - securitybuyer.com

Data centre security with KentixONE

Prior1 develops container data centers to meet the highest security and energy efficiency standards. Their containers require
Chubbsafes - securitybuyer.com

Chubbsafes explores certified storage for jewellery and precious metals

Chubbsafes, part of Gunnebo Safe Storage, has launched a new technical discussion guide examining when certified
Mercury trends report - securitybuyer.com

New Mercury Research Finds Growing Cybersecurity Gap

2026 Trends in Access Controllers Report finds interoperability, cloud connectivity and AI are reshaping long-term controller strategies.
Chris Carroll - securitybuyer.com

Comelit-PAC Promotes Chris Carroll as Sales Director

Comelit-PAC has appointed Chris Carroll as Sales Director, following an 18 year career with the company, seeing him progress
Jason Bezuidenhout - securitybuyer.com

Zygal Appoints Jason Bezuidenhout

Zygal has appointed Jason Bezuidenhout as Chief Revenue Officer (CRO), strengthening its leadership team as the company continues
Eun-Kyung-Hong_- securitybuyer.com

How AI Manages Mixed Surveillance Workloads

Eun-Kyung Hong, HDD Product Manager at Toshiba Electronics Europe GmbH discusses AI optimisation in mixed surveillance workloads
ASSA ABLOY - securitybuyer.com

ASSA ABLOY Door Group highlights importance of BS 8214:2026

ASSA ABLOY Door Group is supporting Fire Door Safety Week 2026 by raising awareness of the latest update to BS 8214:2026
OPTEX at Essen - securitybuyer.com

OPTEX to showcase perimeter solutions at Security Essen

OPTEX will present its latest perimeter and asset protection solutions at Security Essen 2026, one of Europe’s leading security trade fairs.
Dallmeier

Building Trust in Modern Video Security

Rebecca Spayne, Managing Editor of Security Buyer, speaks with Josua Braun, Chief Revenue Officer at Dallmeier electronic, about cyber resilience, trusted supply chains, the practical value of artificial intelligence and what security professionals should consider when investing in modern video technology. 
Scroll to Top