Cisco Transforms Security for the Agentic AI Era, Further Fusing Security into the Network
via Cisco
News Summary:
- Cisco is building secure infrastructure for the AI era, further embedding zero trust and observability into the fabric of the network, from silicon to security operations centers (SOCs).
- Cisco's market-leading Hybrid Mesh Firewall portfolio adds a new generation of firewalls, expands segmentation, and enhances security visibility and policy management to further fuse security into the network.
- Cisco is redefining Zero Trust for the AI era with its Universal Zero Trust Network Access (ZTNA) offering that ensures seamless, identity-driven access for users, devices and AI agents, simplifying secure connectivity and providing visibility across hybrid environments.
- Cisco and Splunk deliver powerful integrations across Cisco's network, firewall and threat detection capabilities to enhance visibility, accelerate detection, and streamline response across infrastructure and applications.
CISCO LIVE, SAN DIEGO, Calif., JUNE 10, 2025 — Cisco (NASDAQ: CSCO) today announced innovations to help enterprises reimagine security for the AI era. Security teams are racing to securely adopt AI throughout their enterprises, while threat actors are using AI to increase the frequency and reduce the cost of launching sophisticated cyber attacks. To overcome this unprecedented challenge, Cisco is fusing security capabilities deeper into its networking infrastructure, helping companies implement zero trust architectures, innovating on security for AI apps and models, and delivering breakthrough AI tools that improve threat detection and remediation.
Key advancements announced at Cisco Live include solutions for Hybrid Mesh Firewall and Universal Zero Trust Network Access (ZTNA) that simplify policy management, enhance visibility, and enable enterprises to scale securely without adding complexity to their security stack. In addition, Cisco announced further Splunk integrations that unify data across platforms, helping security teams automate tasks and respond faster to threats.
"Safety and security are the defining challenges of the AI era—and agentic AI multiplies the risk, as every new agent is both a force multiplier and a fresh attack surface," said Jeetu Patel, President and Chief Product Officer, Cisco. "At the same time, threat actors are already leveraging AI tools to launch more sophisticated attacks than ever. To help IT and security teams fight back, Cisco is reimagining how we secure networks, protect AI apps and models, manage identity, and equip security teams with the AI tools they need to meet the moment."
Splunk Integrations Unlock New Threat Detection, Investigation, and Response Capabilities
As security challenges become more complex, organizations need integrated solutions that enhance visibility, accelerate detection, and streamline response. Advancements between Cisco and Splunk strengthen interoperability across key security workflows. By unifying and enriching data across platforms, these enhancements help security teams respond faster, reduce manual effort, and extract greater value from their security operations. This expanded functionality includes:
- Surface Insights from Cisco Secure Firewall integrated with Splunk: Customers using Cisco Secure Firewall will be able to unlock deeper threat insights within Splunk by ingesting firewall log data. This enables advanced detections and helps security teams maximize the value of their Cisco and Splunk investments.
- Expanded Threat Detection, Investigation and Response (TDIR) Coverage with Enhanced Detection Integration with Cisco Secure Firewall Threat Defense: The Cisco Security Cloud App for Splunk now delivers deeper support for Cisco Secure Firewall Threat Defense (FTD), enabling enriched correlation and detection content aligned to TDIR workflows. Combined with telemetry from Cisco AI Defense, Cisco XDR, Cisco Multicloud Defense, Cisco Talos, and other sources, Splunk accelerates detection use cases across hybrid environments.
- Streamlined TDIR with Security Orchestration, Automation and Response (SOAR) integrations for Cisco Secure Firewall: Expanded SOAR integrations now include Cisco Secure Firewall-specific actions to support containment and response within TDIR workflows. This is in addition to the currently available Cisco Talos Threat Intel integration. Playbooks can automatically isolate hosts, block outbound connections, and apply policy controls, reducing manual effort and accelerating resolution.
- Connected Application Risk Signals from Splunk AppDynamics: By forwarding Secure Application events into Splunk, security teams gain visibility into application-layer vulnerabilities and threats, helping to contextualize findings within broader business risk.