Fortinet Buys Virtue AI to Put Guardrails on Autonomous Agents
AI & ML

Fortinet Buys Virtue AI to Put Guardrails on Autonomous Agents

Fortinet is folding an AI red teaming startup into its security platform, betting that agent governance becomes as standard a line item as endpoint protection once was.

PublishedAugust 23, 2026
Read time5 min read
Share

What Fortinet is actually buying

Virtue AI built its business around a specific and increasingly urgent problem: once an autonomous agent has tool access, a company loses the visibility it used to have over a human employee's actions. The startup's platform runs continuous red teaming against deployed agents across dozens of sandboxed environments and more than a dozen high stakes domains, simulating prompt injection attacks and abuse of the Model Context Protocol connections agents use to reach external tools. It also discovers agents nobody signed off on, scans the tools those agents can call for hidden risk, and blocks malicious tool calls before they execute.

Fortinet's CEO Ken Xie described the deal as advancing the company's vision for what it calls continuous AI assurance, folding agent specific defenses into a platform built for network and endpoint security. Financial terms were not disclosed, and Fortinet has said the purchase price is immaterial to its overall business, which tells you this was bought for capability and speed to market rather than as a headline transaction. That is consistent with how security vendors have historically bought their way into a new attack surface rather than building it from scratch.

The gap this closes for enterprises running agents

Ask most security leaders today which autonomous agents are running inside their company, what tools those agents can call, and what data those tools can touch, and the honest answer is often incomplete. Agents get spun up inside a developer's sandbox, a marketing team's automation platform, or a customer service tool, frequently without a formal security review. That is the same shadow IT problem that plagued cloud adoption a decade ago, except an agent can take autonomous action rather than just store data, which raises the stakes considerably.

Virtue AI's discovery and governance layer is built to answer exactly that visibility question, then extend into ongoing validation as models and policies change. That continuous piece matters because a model update or a fine tuning pass can silently shift an agent's behavior in ways a one time security review would never catch. Buying that capability from an established platform vendor rather than a standalone startup gives CISOs an easier procurement path, since it slots into a Fortinet contract many already have rather than requiring a new vendor relationship and a new integration project.

Why the market timing lines up

Gartner's forecast for the AI ecosystem security market, growing from 2.8 billion dollars this year to 16.4 billion dollars by 2030, reflects a straightforward reality: enterprises are deploying agents faster than they are building governance for them. That gap is exactly where security incidents come from. A model can be well aligned and well tested, and an agent built on top of it can still be manipulated through a poisoned tool description or a crafted prompt injection that the underlying model was never evaluated against.

Security vendors have watched this pattern before, most recently with cloud misconfiguration and the identity sprawl created by SaaS adoption. In both cases, the market rewarded whoever could turn a fast moving new attack surface into a manageable, auditable control plane fastest. Fortinet is positioning itself to be that vendor for agentic AI, and the size of the projected market suggests several of its competitors will make similar acquisitions before this year is out.

What this means for the build versus buy decision

Companies running a handful of internal agents have generally handled security with policy documents and manual review, an approach that scales poorly once agent count moves into the dozens or hundreds. The Fortinet-Virtue AI deal gives those companies a commercial alternative to building red teaming and governance tooling in house, which is a meaningful shift. Building this kind of continuous validation internally requires security engineers who understand both traditional application security and the specific failure modes of language model driven systems, a combination that remains hard to hire for.

Buying the capability instead means a faster path to answering basic governance questions: which agents exist, what can they touch, and what happened the last time one was tested against a known attack pattern. It does not remove the need for an internal AI governance function, since no vendor tool replaces a policy decision about which agents should exist in the first place. But it does remove the excuse that proper agent security requires a multi quarter internal build before an enterprise can start deploying agents with any confidence.

The open questions worth tracking

Integration is the real test here, not the announcement. Fortinet has a strong track record folding acquisitions into its FortiGuard platform, but agent security tooling needs to work across a much more fragmented set of environments than traditional network security ever did, spanning cloud AI platforms, internal agent frameworks, and third party tools an agent might call. How quickly Virtue AI's capabilities show up as a genuinely integrated product, rather than a separately licensed add on, will determine whether this deal delivers the consolidated governance story Fortinet is selling.

Enterprise buyers evaluating this or a competing offering should ask for a live demonstration against their actual agent stack, not a generic sandbox. Ask how the tool handles an agent built on a model from a different vendor than the security tool's own partners, since most enterprises run a mix of OpenAI, Anthropic, and open source models rather than a single vendor's stack. The acquisition signals where the market is heading. Whether any single vendor's implementation is ready for a specific enterprise's mixed environment still needs to be verified deal by deal.

Tagged#news#ai-ml#ai#llm#agents#agentic-ai#openai#anthropic#regulation#Fortinet#Virtue-AI#agent-security#red-teaming#AI-governance#cybersecurity-ma