Varonis Atlas
by Varonis Systems, Inc.
End-to-end AI security that ties every AI system back to the data it can reach.
Varonis Atlas is an AI security platform from data-security vendor Varonis. It finds every AI system in an enterprise, including shadow AI, custom agents and embedded copilots. It then tests those systems, enforces runtime guardrails and produces compliance evidence. It is built for security and GRC teams that need to govern AI using the data-access context Varonis already holds.
Varonis Atlas is an end-to-end AI security platform that Varonis Systems (NASDAQ: VRNS, headquartered in Miami) announced as generally available on March 17, 2026. Six weeks earlier, on February 4, 2026, Varonis agreed to acquire AllTrue.ai, a Vancouver-based AI trust, risk and security management startup founded in 2025. SecurityWeek, citing the Wall Street Journal, valued that deal at $150 million, while GovInfoSecurity reported $126 million. AllTrue co-founder Ron Bennatan, who also created Guardium and jSonar, now leads AI and data security strategy at Varonis and is the executive quoted on the Atlas launch. Atlas covers the AI lifecycle in eight modules: AI inventory and shadow-AI discovery across cloud accounts, code repositories, AI platforms and SaaS usage; AI security posture management (AI-SPM) for code, prompts, models, dependencies and configurations; automated AI penetration testing that runs prompt-injection, jailbreak and policy-bypass attacks against live LLM endpoints, agents and MCP servers; runtime guardrails delivered through an in-path AI gateway (reverse proxy or SDK) that inspects prompts, responses and agent actions; activity monitoring on a customer-owned data plane; AI detection and response with SIEM/SOAR integration; AI third-party risk management; and compliance mapping to the EU AI Act, NIST AI RMF and ISO/IEC 42001. Varonis lists support for Microsoft Copilot, ChatGPT Enterprise, Claude Enterprise, Salesforce Agentforce, custom LLMs and agent frameworks. What sets Atlas apart is that it enriches each finding with sensitivity and permission data from the Varonis Data Security Platform. Analysts at SoftwareReviews note that this advantage largely disappears if Atlas is bought on its own.
A CISO or AI-governance/GRC lead at an existing Varonis Data Security Platform customer who has to inventory, test and police copilots and custom agents ahead of EU AI Act or ISO 42001 audits.
One inventory of every AI system, with each finding ranked by the sensitive data that system can actually reach, plus audit-ready compliance evidence.
At a Glance
- Category
- Governance & Security
- Pricing
- Contact for pricing, Subscription
- Target Market
- CISOs, CIOs, GRC and Compliance Teams, Security Operations Teams, AI Platform Teams
- Deployment
- Cloud-first
- Founded
- 2005
- Headquarters
- Miami, United States
- Team Size
- 500+
Key Features
- ✓AI Inventory & Shadow AI Discovery
Continuously scans cloud accounts, code repositories, AI platforms and SaaS usage to find sanctioned tools, custom agents, embedded AI and unapproved shadow AI, and maps what data each one can reach.
- ✓AI Security Posture Management (AI-SPM)
Checks code, prompts, models, dependencies and configurations for vulnerabilities, misconfigurations and excessive permissions, and enriches each finding with data-sensitivity context from the Varonis Data Security Platform.
- ✓Automated AI Pen Testing
Runs scheduled adversarial prompt attacks, including prompt injection, jailbreaks and policy bypass, against live LLM endpoints, agents and MCP servers so that runtime weaknesses surface before attackers find them.
- ✓Runtime Guardrails via AI Gateway
An in-path gateway, deployable as a reverse proxy or through an SDK, inspects prompts, responses and agent actions in real time and blocks sensitive-data leakage without changes to the application.
- ✓AI Compliance, TPRM and Detection & Response
Maps AI systems to the EU AI Act, NIST AI RMF and ISO/IEC 42001, assesses third-party AI vendors, and streams real-time detections of unsafe AI behaviour to SIEM and SOAR tools.
Use Cases
- •Shadow AI discovery and remediation
Security teams find unapproved AI tools, agents and MCP servers running across cloud and SaaS, see what sensitive data each can access, and remediate the riskiest ones first.
- •Securing copilots and enterprise LLM assistants
Organisations rolling out Microsoft Copilot, ChatGPT Enterprise or Claude Enterprise monitor prompts and responses and use runtime guardrails to stop sensitive data from leaking through the assistant.
- •Hardening custom agents before production
AI platform teams run automated pen tests for prompt injection, jailbreaks and policy bypass against their agents and endpoints, then fix the misconfigurations AI-SPM flags before launch.
- •AI regulatory compliance evidence
GRC teams map every AI system to EU AI Act, NIST AI RMF and ISO/IEC 42001 controls and generate audit-ready reports from continuously collected evidence instead of manual questionnaires.
Ideal For
Best For
- ✓Discovering shadow AI, custom agents, MCP servers and embedded copilots across cloud accounts, code repositories and SaaS
- ✓Existing Varonis Data Security Platform customers who want to add data-sensitivity context to AI risk findings
- ✓Producing continuous EU AI Act, NIST AI RMF and ISO/IEC 42001 compliance evidence for AI systems
- ✓Putting inline runtime guardrails on prompts, responses and agent actions for in-house LLM applications
Not Ideal For
- ✗Organisations that will not adopt the Varonis Data Security Platform: SoftwareReviews says standalone Atlas loses its strongest capabilities, including full identity governance and sensitive-data classification
- ✗Teams whose AI use is limited to SaaS assistants such as ChatGPT or Copilot, which SoftwareReviews flags as a poor fit
- ✗Buyers following a best-of-breed strategy who want the deepest specialist AI red-teaming rather than one lifecycle platform
- ✗Air-gapped or fully sovereign environments, since competitor Prediction Guard describes Atlas as a cloud-connected platform that depends on external telemetry
Integrations
Deployment
Market Analysis
Pros
- ✓Data-security context from the Varonis platform enriches AI posture findings and ranks them by sensitive-data exposure
- ✓Covers the full AI lifecycle in one platform, from inventory through runtime guardrails and compliance
- ✓Continuous, behaviour-aware discovery of shadow AI, agents and MCP servers, plus policy-document ingestion for compliance gaps (per SoftwareReviews)
- ✓Built-in mappings to the EU AI Act, NIST AI RMF and ISO/IEC 42001
- ✓Backed by a public vendor, which lowers procurement-durability risk
Cons
- ✗Its strongest capabilities, including data classification and full identity governance, require the Varonis Data Security Platform; standalone Atlas is weaker (SoftwareReviews)
- ✗SoftwareReviews warns it 'produces sophisticated findings no one can act on' unless security teams invest in AI-security upskilling
- ✗Not a fit for SaaS-only AI estates or buyers who want the deepest specialist red-teaming
- ✗No published pricing, and competitor Prediction Guard says it is cloud-connected with no air-gapped deployment option
Pricing
Free trial
$0
- ✓Full access to AI inventory
- ✓Posture management
- ✓Security testing
- ✓Runtime guardrails
- ✓Compliance reporting
Varonis Atlas (modular licence)
Contact for pricing
- ✓Inventory/usage base module
- ✓Pen testing and AI gateway modules
- ✓Compliance and third-party risk modules
Varonis does not publish list prices. SoftwareReviews (July 2026) says Atlas is licensed per AI system, with an inventory/usage base and add-on modules for pen testing, the gateway, compliance and third-party risk. A free trial gives full access. Competitor Prediction Guard claims pricing can also scale with seats, data volume or prompt thresholds; that claim is unverified.
Security & Compliance
Sources
This page was written from 10 sources, 8 on domains other than varonis.com.
- 1.varonis.com — ai securityvendor
- 2.varonis.com — atlas ai securityvendor
- 3.globenewswire.com — Varonis Launches Atlas to Secure AI and the Data That Powers
- 4.softwarereviews.com — varonis atlas ai security platform end to end ai security an
- 5.bleepingcomputer.com — varonis atlas securing ai and the data that powers it
- 6.securityweek.com — varonis acquisition of alltrue ai valued at 150 million
- 7.govinfosecurity.com — varonis acquires alltrueai to extend security for ai agents
- 8.helpnetsecurity.com — varonis alltrue ai acquisition
- 9.predictionguard.com — varonis atlas vs. prediction guard
- 10.en.wikipedia.org — Varonis Systems
Stay Ahead of the Curve
Weekly enterprise AI insights for technology leaders. No spam, no vendor pitches—unsubscribe anytime.
SubscribeRelated Products
Baselayer
Business identity, risk and fraud infrastructure that now verifies AI agents before they transact
SAS AI Navigator
SaaS AI governance inventory for models, agents and use cases, sold through Microsoft Marketplace
Rein Security
Runtime security for enterprise AI agents, deployed as a sidecar inside your own cloud
Armadin
Autonomous offensive security: AI agent swarms that chain your weak spots into proven attack paths before an attacker does