New Solution Continuously Validates Security Coverage and Intent, Reducing Exposure, Simplifying Compliance, and Strengthening Cyber Resilience
Tufin, the leader in agentic AI network security, today announced Segmentation Intelligence, a new AI-powered solution that enables enterprises to continuously validate that critical segmentation policies are operating as intended across today’s complex hybrid environments.
Security teams are accountable for ensuring that segmentation controls remain effective, not only to support Zero Trust initiatives, but to meet regulatory requirements, reduce cyber risk, and withstand increasingly sophisticated AI attacks. It’s core to almost every part of modern enterprise security. However, these same teams often find themselves with limited visibility into whether the solutions, policies and controls they’ve put into place are working as intended. In fact, recent research indicated that over half (54%) of enterprise cybersecurity leaders have no clear understanding of whether their controls are in place and working at any given time. This lack of visibility - combined with an increased need to prove compliance faster than ever before - puts critical data and proprietary information at risk, while increasing the risk of audit failures, penalties, and reputational damage.
Organizations that continuously understand and reduce exposure are better positioned to adapt to rapidly changing environments, while still strengthening their security and compliance outcomes. Yet, as enterprise environments evolve across cloud, on-premises infrastructure, SASE, firewalls, and distributed networks, both security intent and proper application of policies and controls can drift from their intended targets. Teams trying to validate that intent is properly aligned with segmentation need quickly discover that the use of periodic, manual processes are no longer sustainable.
Tufin Segmentation Intelligence continuously analyzes an organization’s segmentation policies to understand segmentation intent, identify policy gaps and drift, and recommend how to close those gaps. Rather than relying on point-in-time audits, manual validation exercises, or point solutions which only see a small portion of an enterprise’s network and policies, the AI-powered solution enables teams to ensure that there are no exploitable flaws or neglected coverage areas that need to be addressed.
Segmentation Intelligence analyzes policies, zones, subnets, and objects to understand how an organization’s environment is intended to be segmented and where controls should be enforced. This enables organizations to validate that segmentation remains aligned with their intended strategy as the environment evolves. The solution makes it easy to prioritize risk in a business context, and focus remediation efforts where exposure is greatest.
“Enterprise environments change constantly, yet verification remains largely manual and periodic. It’s a real struggle for security teams to prove segmentation is still working,” said Raymond Brancato, CEO of Tufin. “Segmentation Intelligence gives organizations continuous confirmation that their strategy is protecting the business as intended: reducing risk, improving compliance, strengthening resilience, and building confidence in their security posture.”
Turning Security Intent into Continuous Assurance
For many organizations, segmentation validation occurs only before audits, after major infrastructure changes, or following a security incident. As cloud adoption accelerates and AI drives infrastructure change at machine speed, hybrid environments are becoming increasingly dynamic. At the same time, frontier AI models such as Mythos are raising the ceiling on what automated reconnaissance and exploitation can do, putting capabilities that were once limited to well-resourced actors within the reach of a far wider set of adversaries. As networks evolve and threats accelerate, periodic validation cycles leave security teams with limited visibility into whether their intended segmentation policies still reflect current security requirements, or have drifted over time.
At the same time, industry momentum around Continuous Threat Exposure Management (CTEM) continues to accelerate. Regulatory frameworks such as NIS2 and DORA increasingly emphasize continuous controls and operational resilience, while organizations face growing pressure to secure rapidly changing AI-driven infrastructure and defend against increasingly sophisticated AI-enabled attacks without expanding security headcount. Verizon’s 2026 Data Breach Investigations Report found that vulnerability exploitation has become the leading initial access vector for breaches, with AI helping attackers accelerate exploitation from months to hours.
Tufin Segmentation Intelligence transforms segmentation validation from a periodic compliance exercise into continuous, AI-driven assurance. By continuously analyzing intended segmentation policies for gaps and drift, organizations gain confidence that their segmentation strategy continues to reflect business and security requirements as infrastructure—and the attack surface—evolves, helping reduce the risk that exploitable gaps go undetected as threats move faster.
Unlike point products that validate segmentation within a single technology domain, by combining continuous visibility and AI-driven analysis within a single platform, security teams can:
- Continuously identify segmentation policy gaps and drift across policies, zones, subnets, and the entire network
- Detect unintended vulnerabilities and exploitable coverage gaps before they weaken critical security controls
- Prioritize remediation based on business risk and likely exposure
- Generate continuous affirmation that supports compliance, operational resilience, and Zero Trust initiatives
“Organizations don’t need more dashboards, they need assurance,” continued Brancato. “With Tufin, security leaders can gain continuous insight into whether the controls protecting their business are working as intended. Segmentation Intelligence represents a significant step toward making continuous security assurance a reality.”
Tufin’s new Segmentation Intelligence solution is available now. For more information, please click here.
About Tufin
Tufin helps enterprises govern and secure connectivity across today’s complex multi-vendor networks. As the leader in agentic AI network security, Tufin provides the trusted control layer organizations need to understand exposure, automate policy changes safely, and maintain continuous security posture across on-premises, cloud, SASE, microsegmentation, and hybrid environments. Built on customer-proven network automation playbooks and the industry’s only Dynamic Network Connectivity Graph, Tufin is bringing Multi-Vendor Agentic Network Security to the enterprise—helping organizations move from visibility to governed, AI-driven action. For more information, please visit www.tufin.com or follow us on LinkedIn.
View source version on businesswire.com: https://www.businesswire.com/news/home/20260819497421/en/
Tufin Segmentation Intelligence continuously analyzes an organization’s segmentation policies to understand segmentation intent, identify policy gaps and drift, and recommend how to close those gaps.
Contacts
Jeff Drew
Tufin Public Relations
P: +1.617.233.5109
E: jeff.drew@tufin.com