Building on the momentum of NVIDIA GTC Taipei at COMPUTEX 2026, the conversation has moved beyond AI experimentation to the industrialization of intelligence. Organizations are rapidly deploying AI Factories – high-performance, purpose-built computing infrastructures designed to manufacture intelligence at an unprecedented scale. AI’s next phase is agentic. Autonomous AI agents are reshaping enterprise operations—and demand security architectures that can keep pace with the speed and scale of innovation. We are proud to announce the integration of Palo Alto Networks Cortex XSIAM with the NVIDIA DOCA Argus framework, a breakthrough that brings real-time, AI-powered security operations directly into the heart of the NVIDIA AI factory.
By operating on the NVIDIA BlueField data processor, DOCA Argus provides situational awareness through real-time memory analysis at the silicon level. This allows Cortex XSIAM to detect kernel-level rootkits and "living-off-the-land" attacks without installing security agents on the host system.
This innovation builds upon our proven foundation with Palo Alto Networks Prisma AIRS, where AI Runtime Security is deployed natively on NVIDIA BlueField, and powered by NVIDIA DOCA, bringing defense in depth. This integration enables offload , isolation and acceleration of security in AI factories.
Purpose-Built Observability for the AI Factory
Deployed consistently across the AI factory, DOCA Argus monitors and correlates AI application processes, network telemetry, and data access to detect sophisticated anomalies that traditional tools miss. With this integration, Cortex XSIAM recognizes the high-fidelity data from DOCA Argus as a native Palo Alto Networks sensor, allowing for better decisions with the new intelligence gathered directly from the host.
By integrating Cortex XSIAM with the NVIDIA DOCA Argus framework, we leverage the innovations of two industry leaders to deliver a seamless, high-performance SecOps ecosystem for your most valuable AI assets.
Why This Integration Is a Game-Changer for SecOps
- Process Introspection: Residing on NVIDIA BlueField, DOCA Argus has the unique ability to correlate network telemetry with deep process inspection.
- Anomaly Detection: By analyzing traffic and host behavior simultaneously, XSIAM can detect sophisticated anomalies (e.g., lateral movement or data exfiltration) that traditional tools miss.
- Unified Intelligence: Cortex XSIAM recognizes the security and alert information in this high-fidelity data, providing security teams with end-to-end visibility and dedicated security dashboards specifically for their AI infrastructure.

Native integration of DOCA Argus with XSIAM
Palo Alto Networks Prisma AIRS Across the NVIDIA AI Factory
The inclusion of Prisma AIRS in NVIDIA AI Factory validated design delivers a unified security platform, providing proactive, defense-in-depth security across critical layers of the AI ecosystem.
Serving as the network enforcement engine for this architecture, Prisma AIRS secures the infrastructure of the modern AI Factory. By unifying protection and visibility into a single automated fabric, it eliminates the traditional trade-off between security and agility, allowing organizations to innovate at machine speed without compromising performance or governance.
Beyond enforcement, the broader Prisma AIRS platform acts as the security blueprint for the entire enterprise AI ecosystem—consolidating fragmented point-tools to slash total cost of ownership while providing end-to-end observability from the data plane to the model layer. The platform scales dynamically alongside your AI clusters to safeguard raw datasets, build Layer 7 micro-perimeters around autonomous agents, and protect proprietary model weights from external threats—all without throttling mission-critical performance.
By deploying the AI Runtime Firewall directly on NVIDIA BlueField, we establish a foundational network security layer that is fully offloaded, isolated, and accelerated. This provides pervasive protection across the Enterprise AI Factory without sacrificing critical compute resources.
Securing the NVIDIA AI factory requires the entire Prisma AIRS suite, which secures the AI lifecycle through five specialized pillars:
- AI Model Security: Protects against model tampering, malicious scripts and data exfiltration attacks before deployment.
- AI Red Teaming: Advanced threat simulation and vulnerability discovery to enable the safety, security and integrity of your AI and Agents deployments.
- AI Runtime Security Firewall: Protects against prompt injection, data leakage, abuse and AI-specific runtime threats across distributed inference flows.
- AI Agent Gateway acts as the control plane for the AI enterprise – governing tool calls, model access and external connections. Every agent interaction is enforced through centralized policies.
- Agent Identity Security assigns each agent a governed identity with precise permissions and full traceability, ensuring actions are attributable and enforceable.
A Forward-Looking Architecture: Embracing Vera NVIDIA BlueField-4 STX
Looking ahead to the next frontier of enterprise-scale agentic AI, Palo Alto Networks is closely aligning its platform approach with the NVIDIA Vera BlueField-4 STX architecture, extending protections to AI data storage infrastructure. As AI data demands surge, high-throughput, large-scale environments require a move toward hardware-isolated, performance-neutral protection to support the rapid growth of critical AI applications.
Operating within an isolated trust domain on future BlueField-4 silicon, our inline security capabilities will maintain strict, policy-driven controls independently of the host operating system and storage systems. This co-design enables critical forward-looking innovations for data, agents, and context memory, ensuring security is offloaded, isolated and accelerated to support the next generation of the AI Factory.

NVIDIA BlueField-4
Key Takeaways
Our ongoing collaboration with NVIDIA focuses on these essential pillars for reimagining AI security:
- Deliver the industry-leading security platform reinvented for the unique demands of the AI factory. High-throughput, large-scale environments require a move toward hardware-isolated and performance-neutral protection to support the rapid growth of critical AI applications. By offloading AI Runtime Firewall directly to the NVIDIA BlueField, we enable zero-latency protection and strict data governance that neutralizes threats (like model theft) while maintaining peak performance and the integrity of your proprietary models.This architecture embeds security directly into the infrastructure, out of the way of app developers.
- Transform the SOC and achieve deep visibility across AI environments by leveraging Cortex XSIAM to provide real-time detections and automated response. By connecting infrastructure protection with this centralized intelligence, you can secure the AI journey, from development in the factory to operations at the secure industrial edge.
- Zero-Trust for AI Infrastructure: This helps ensure that as your operations scale toward multi-agent architectures, your security footprint is fully offloaded, isolated, and accelerated to protect advanced inference flows, autonomous agents, and data pipelines without throttling performance.
- Unified Platform Architecture: Beyond standalone point tools, the Prisma AIRS platform serves as a unified security fabric that spans the entire AI lifecycle—from safeguarding raw data to autonomous agents.
Deploy Bravely
The Palo Alto Networks platform approach delivers a comprehensive solution to secure an enterprise's entire AI ecosystem. By integrating Cortex XSIAM with the NVIDIA DOCA Argus framework, we are extending this comprehensive, deep visibility and protection to the very heart of the AI Factory. With this integration, security teams can leverage an agentless approach via DOCA Argus to gain deep visibility into AI systems hosts by simply downloading the content pack from the Cortex Marketplace.
The Palo Alto Networks platform secures the entire AI journey, protecting the infrastructure, intelligent applications, agents and data it produces. With the inclusion of Prisma AIRS in NVIDIA Enterprise AI Factory Validated Design, we have delivered the blueprint for secure AI.
Palo Alto Networks and NVIDIA are redefining security for the AI factory. Together, we are ensuring your security architecture is as fast, scalable and innovative as the intelligence it protects, empowering you to scale AI production with reduced latency and stronger governance.
Discover more through the Palo Alto Networks partner directory, or read the official press release from NVIDIA for more details.