Cybersecurity & AI Safety Agentic AI & Enterprise Security

Inside Palo Alto Networks' Portkey Acquisition: Securing the Agentic AI Enterprise with a Unified Control Plane

TM
Techmediaglobal
| 6 min read
$120–140M
Portkey Est. Valuation
Trillions
Tokens/Month Processed
$25B
CyberArk Deal (Feb 2026)
Q4 FY26
Expected Deal Close

The autonomous AI agent is the most powerful — and the most dangerous — new participant in the modern enterprise. It reasons, decides, and acts across internal systems, external APIs, and sensitive data with minimal human oversight. And until now, it has operated largely ungoverned. Palo Alto Networks (NASDAQ: PANW) has moved decisively to close that gap — announcing its intent to acquire Portkey, a pioneer in AI Gateway technology, and integrate it into its Prisma AIRS platform to create the industry's first truly unified control plane for agentic AI security.

The Problem: AI Agents Are Privileged Insiders Without a Security Perimeter

The enterprise security landscape has fundamentally changed. The threat model of the past decade — centred on protecting networks, endpoints, and cloud infrastructure from external attackers — has been joined by a new category of risk that existing frameworks were never designed to address: AI agents operating as highly privileged insiders.

Unlike human employees, AI agents execute at machine speed and scale — making thousands of automated decisions across internal and external systems, invoking APIs, accessing sensitive databases, and communicating with other agents, all with minimal human oversight. As Nikesh Arora, Chairman and CEO of Palo Alto Networks, puts it: "AI agents have become privileged insiders, reasoning and executing on behalf of users and companies. With that power comes a new category of risk. You cannot build an agentic enterprise without a centralised control plane to secure it."

The consequences of this governance gap are concrete: fragmented security coverage, unauthorised data access, prompt injection attacks, model manipulation, and runaway token consumption that translates into operational cost spirals. Enterprises moving AI agents into production have been forced to choose between developer speed and enterprise safety. Palo Alto Networks intends to eliminate that trade-off entirely.

What Portkey Does: The AI Gateway as the Central Nervous System

Founded in 2023 by Rohit Agarwal and Ayush Garg, Portkey was built to solve exactly this problem. Its platform functions as a centralised AI Gateway — a unified control layer that sits between enterprise systems and all AI model interactions, routing, monitoring, and securing every interaction in real time. Rather than leaving AI traffic ungoverned across disparate tools and APIs, Portkey creates a single vantage point through which all agentic activity flows.

Crucially, Portkey is already battle-tested at genuine enterprise scale — processing trillions of tokens per month for Fortune 500 companies, with the ultra-low latency required for agent-to-agent communication. This is not a prototype or a research project. It is production-hardened infrastructure that major enterprises have already trusted to govern their AI workloads at scale.

The platform delivers five core capabilities that address the enterprise agentic AI security gap comprehensively:

  • Observability — complete visibility into all AI agent traffic across every model invocation, API call, and agent-to-agent interaction
  • Governance & Policy Enforcement — consistent security policies enforced at runtime across all models and agents, ensuring every interaction is identified, authenticated, and authorised
  • Semantic Routing — intelligent routing of AI traffic to the optimal model for each request, based on cost, latency, capability, and compliance requirements
  • Cost Control — management and optimisation of token consumption to prevent runaway spend without constraining agent performance
  • Agent Registry & Access Controls — a structured registry of all agents operating within the enterprise, with granular access controls that connect directly to identity security primitives
"As autonomous agents join the enterprise workforce, they also become a new, unmanaged attack surface. By integrating Portkey into Prisma AIRS, organizations will be able to confidently deploy and govern AI agents. With Portkey, we are providing enterprises with visibility into all their agentic traffic, and enabling them to control and protect against agentic threats."

— Lee Klarich, Chief Product & Technology Officer, Palo Alto Networks

Prisma AIRS 3.0: The Platform Portkey Is Joining

Prisma AIRS (AI Runtime Security) is Palo Alto Networks' dedicated platform for securing the agentic AI lifecycle — released as Prisma AIRS 3.0 earlier in 2026 with coverage spanning model scanning, runtime security, and automated red teaming. It was designed from the ground up to address the security challenges that emerge as enterprises move from isolated AI experiments to autonomous, production-grade agentic systems.

Prior to the Portkey acquisition, Prisma AIRS had a critical gap: it could scan models and monitor runtime behaviour, but lacked a production-hardened gateway capable of intercepting, routing, and governing AI traffic at the volume and latency required by real enterprise agentic workloads. Portkey fills that gap precisely — bringing a battle-tested component that has already proven it can operate at Fortune 500 scale without introducing latency that would impair agent-to-agent communication. Once integrated, Portkey will serve as the AI Gateway for Prisma AIRS — inspecting every AI interaction and enforcing security and governance policies across the entire agentic lifecycle.

Platformisation in Action: CyberArk + Portkey = A Unified Security Stack

The Portkey acquisition is Palo Alto Networks' second major acquisition of 2026 — and the strategic logic connecting them is unmistakable. In February 2026, Palo Alto Networks completed the $25 billion acquisition of CyberArk, bringing best-in-class identity security capabilities into the platform. CyberArk's core strength is managing and governing privileged access for human users — ensuring that the right people have the right access to the right systems at the right time.

Portkey's agent registry and access controls connect directly to those same identity primitives — extending the same governance philosophy that CyberArk applies to human users to the new category of AI agent "users" that are now operating with equivalent or greater privileges within enterprise environments. The combined architecture creates a unified control plane spanning network security, cloud security, identity, and now AI agent governance — a stack explicitly designed to appeal to large enterprises consolidating their security vendor relationships under a single, integrated platform.

Portkey's estimated valuation of $120–140 million — reportedly double its February 2026 valuation, according to the Economic Times — reflects the speed at which the AI gateway market has repriced. Founded only in 2023 by Rohit Agarwal and Ayush Garg, the company's rapid ascent to enterprise-scale production deployment and a nine-figure acquisition reflects the extraordinary urgency of the agentic AI security problem it is solving.

What This Means for Enterprise Security Teams

For CISOs and enterprise security leaders, the Portkey integration into Prisma AIRS represents a concrete answer to one of the most pressing questions of 2026: how do we govern AI agents operating at machine speed, across systems we cannot fully enumerate, without slowing down the AI initiatives that drive business value?

Following the close of the acquisition, expected in Palo Alto Networks' fiscal Q4 2026, existing Portkey customers will continue to receive full support — while also gaining access to tighter integration with Palo Alto Networks' broader security portfolio, including CyberArk for identity security. The unified architecture will allow organisations to move autonomous AI workloads into production with built-in security, reliability, and management — removing the trade-off between agent autonomy and security governance that has slowed enterprise AI deployment.

As Rohit Agarwal, CEO and Co-Founder of Portkey, summarises the joint vision: "By joining Palo Alto Networks, we will establish the AI Gateway as the foundational layer of the secure AI enterprise. Together, we will provide the infrastructure that allows every organisation to deploy autonomous agents with the confidence that their data and operations are fully protected."

Key Takeaways

  • Palo Alto Networks has announced its intent to acquire Portkey — an AI Gateway pioneer processing trillions of tokens monthly — to close the agentic AI security and governance gap in enterprise environments
  • Portkey will become the AI Gateway for Prisma AIRS — the centralised control plane that monitors, routes, and secures every AI agent interaction across enterprise systems in real time
  • The platform delivers observability, governance, semantic routing, cost control, and agent access management — without sacrificing the low latency required for production agent-to-agent communication
  • Combined with the $25B CyberArk acquisition (closed February 2026), Portkey completes a unified control plane spanning network, cloud, identity, and AI agent security — the industry's most complete enterprise security stack
  • Portkey was founded in 2023, is estimated at $120–140M — double its February 2026 valuation — and the deal is expected to close in Palo Alto Networks' fiscal Q4 2026
  • The acquisition signals the emergence of the AI Gateway as foundational enterprise infrastructure — as essential to the agentic enterprise as firewalls were to the network era
Tags: Palo Alto Networks Portkey AI Gateway Prisma AIRS Agentic AI Security Cybersecurity M&A NASDAQ: PANW