The AI Security Vendor Directory.
60 vendors. 87 products. Eight categories. Categorized by primary positioning, not by marketing claims. Free to browse. Free for vendors to claim.
AI Runtime Security and Prompt Injection Defense
Inline protection for LLM applications. Inspects prompts and outputs in real time. Blocks prompt injection, jailbreak, and prompt leakage.
CalypsoAI
Dublin, IrelandInference platform for enterprise GenAI with policy, observability, and red teaming.
Lakera
Zurich, SwitzerlandReal-time AI security platform focused on prompt injection and content moderation.
Pillar Security
Tel Aviv, IsraelDiscovery, posture, and runtime protection for GenAI applications.
Robust Intelligence
San Francisco, USAValidation and runtime protection for AI applications. Acquired by Cisco in 2024.
WitnessAI
Mountain View, USAAI policy enforcement and observability for the enterprise.
AI Security Posture Management (AI-SPM)
Discovery, inventory, and posture grading for AI assets across cloud, SaaS, and codebase. The CSPM equivalent for AI.
Cranium
Short Hills, USAAI exposure management. Discovery and risk for ML and GenAI assets.
Protect AI
Seattle, USAEnd-to-end AI security platform covering inventory, scanning, and runtime.
Wiz
New York, USACloud security platform with native AI Security Posture Management.
AI Red Teaming and Adversarial Testing
Adversarial testing platforms for models, applications, and prompts. Continuous or scheduled red teaming. Ships findings with remediation guidance.
AdversaAI
Tel Aviv, IsraelAdversarial ML research and AI red teaming firm.
HiddenLayer
Austin, USAML model scanning and adversarial detection. Pioneered the AISec Platform category.
Mindgard
London, UKContinuous automated AI red teaming spun out of Lancaster University.
SplxAI
New York, USAAutomated red teaming for LLM applications and AI agents.
AI Governance and Risk Platforms
Inventory, policy, framework mapping, and lifecycle governance. Supports NIST AI RMF, ISO 42001, EU AI Act compliance workflows.
Credo AI
San Francisco, USAAI governance platform aligned to NIST AI RMF and EU AI Act.
FairNow
New York, USAPractical AI governance focused on hiring tech and HR systems.
Holistic AI
London, UKAI audit and governance platform with strong fairness assessment heritage.
Monitaur
Boston, USAAI governance with strong heritage in regulated insurance and financial services.
Saidot
Helsinki, FinlandEU AI Act compliance and AI transparency platform.
Securiti AI
San Jose, USAData + AI command center. Strong governance, mapping, and access controls for GenAI.
Trustible
Arlington, USAAI governance for fast-moving compliance landscapes (EU AI Act, NIST AI RMF).
LLM Output Filtering and AI DLP
Data-loss prevention purpose-built for GenAI. Detects sensitive data in prompts and outputs. Integrates with Copilot, ChatGPT, and proprietary LLM apps.
Aporia
Tel Aviv, IsraelML observability turned LLM guardrails platform.
Lasso Security
Tel Aviv, IsraelGenAI security platform with DLP, runtime, and developer-focused controls.
Nightfall AI
San Francisco, USACloud DLP with strong GenAI coverage including Copilot and ChatGPT.
Prompt Security
Tel Aviv, IsraelInline GenAI security platform spanning employee usage and developer tools.
Synthetic Data and Privacy for AI
PII redaction, synthetic data generation, and privacy vaults that let teams use AI without exposing regulated data.
Cloud-Native AI Security
AI security capabilities offered by hyperscalers and platform vendors as part of broader cloud or security suites.
Amazon Web Services
Seattle, USABedrock Guardrails and AWS-native AI safety controls.
Cisco AI Defense
San Jose, USACisco's productized AI security suite combining Robust Intelligence and Hypershield.
CrowdStrike
Austin, USAFalcon for AI Workloads and Charlotte AI for security operations.
Datadog
New York, USALLM Observability inside the broader Datadog platform.
Google Cloud
Mountain View, USASensitive Data Protection, Model Armor, and Vertex AI guardrails.
IBM
Armonk, USAGuardium AI Security and watsonx.governance for regulated industries.
Microsoft
Redmond, USAPurview AI Hub and Defender for Cloud cover Copilot security and AI workloads.
Palo Alto Networks
Santa Clara, USAPrisma AIRS — runtime AI security and Protect AI capabilities consolidated.
LLM Evaluation, Observability and Quality
Test, monitor, and grade LLM outputs in development and production. Hallucination detection, regression testing, traceability, and continuous quality measurement.
Arize AI
Berkeley, USAML and LLM observability with the open-source Phoenix framework.
Comet (Opik)
New York, USAML experiment platform Comet with the Opik open-source LLM eval tool.
Confident AI (DeepEval)
SingaporeDeepEval open-source eval framework plus a hosted regression-testing platform.
Galileo
San Francisco, USAGenAI evaluation, observability, and protection for enterprises.
Helicone
San Francisco, USAOpen-source LLM observability with one-line proxy integration.
HoneyHive
New York, USAContinuous evaluation and observability for AI products.
Langfuse
Berlin, GermanyOpen-source LLM engineering platform. Observability, evals, and prompt management.
LangSmith
San Francisco, USALangChain's hosted observability and evaluation platform for LLM apps.
Openlayer
New York, USAContinuous evaluation and monitoring for AI systems and LLM applications.
Patronus AI
San Francisco, USAAutomated AI evaluation with research-grade benchmarks.
Traceloop
Tel Aviv, IsraelOpenLLMetry-based observability for LLM apps.
WhyLabs
Seattle, USAML and LLM observability with strong open-source roots (whylogs, langkit).
AI Agent and Non-Human Identity Security
Identity, authorization, and lifecycle controls for AI agents and non-human identities (NHIs). Critical as agentic AI moves into production.
Astrix Security
Tel Aviv, IsraelNon-human identity threat detection and posture for SaaS, cloud, and AI agents.
Britive
Glendale, USAJust-in-time access for cloud, SaaS, and AI workloads.
Entro Security
Tel Aviv, IsraelSecrets security and non-human identity for AI and engineering.
Oasis Security
New York, USANon-human identity (NHI) management — increasingly the AI agent identity layer.
Token Security
Tel Aviv, IsraelMachine-first identity security for non-human identities and AI agents.
Deepfake and Synthetic Media Detection
Detection, attribution, and provenance for AI-generated content. Voice, image, video, and document deepfakes. Used in fraud, KYC, and content authenticity workflows.
Hive AI
San Francisco, USAAI moderation, content classification, and AI-generated content detection.
Reality Defender
New York, USAMulti-modal deepfake detection for voice, image, video, and document.
Sensity AI
Amsterdam, NetherlandsDeepfake detection and identity-fraud prevention.
Truepic
San Diego, USAContent provenance and authenticity at the point of capture.
Open-Source and Frameworks
Notable open-source projects and reference frameworks used by enterprises and consultancies to harden AI deployments.
Garak
Open-sourceOpen-source LLM vulnerability scanner.
Giskard
Paris, FranceOpen-source LLM testing framework with hosted hub.
LLM Guard
Open-sourceOpen-source security toolkit for LLM-powered applications.
NVIDIA NeMo Guardrails
Santa Clara, USAOpen-source toolkit for adding programmable guardrails to LLM apps.
Promptfoo
San Francisco, USAOpen-source LLM evaluation, red teaming, and security testing.
PyRIT
Open-sourceMicrosoft's open-source Python Risk Identification Toolkit for GenAI.
Claim your listing.
If you represent a vendor in this directory, you can claim the listing — submit corrections, update your product line, or add capability detail. Listings are free. Claimed listings get a verified badge.
Claim a listingSubmit a vendor.
If a notable AI security vendor or product is missing, send it in. Editorial review for fit. Independent — CWS is a services firm, not a vendor.
Submit a vendorEditorial note. Listings are categorized for editorial clarity. Product names belong to their respective owners. Categorization reflects primary positioning at time of writing. CWS is independent and does not accept payment for inclusion or ranking. Categorization is best-effort and based on primary positioning at time of writing.
Choosing among 60 vendors is hard.
The AI Posture Check tells you which dimensions you actually need to address — so you can shortlist vendors that fit your gaps, not the buzziest demo.
Take the AI Posture Check