SentinelOne (NYSE: S) announced an upcoming integration of its Prompt Security offering with Amazon Bedrock AgentCore to deliver runtime guardrails for organizations deploying AI agents at enterprise scale. The integration aims to extend existing security controls into agentic workflows, empowering enterprises to secure and scale their AI operations on AWS. By combining SentinelOne's detection capabilities with AgentCore's policy engine, the solution addresses the security risks associated with large-scale AI agent deployments.
Amazon Bedrock AgentCore serves as a platform to build, connect, and optimize agents at scale. Its policy engine enforces real-time, deterministic controls at the gateway across all agent traffic, including agent-to-tool, agent-to-LLM, and agent-to-agent communications. SentinelOne's Prompt Security will provide detection signals covering prompt injection detection, PII exposure, tool-use validation, LLM response monitoring, and data leakage prevention. These signals feed into the AgentCore policy engine, which acts on them at the gateway, outside the agent's reasoning loop.
The architecture ensures that while detection may be probabilistic, enforcement remains deterministic. This allows enterprise teams to apply SentinelOne's detection signals alongside automated enforcement consistently across all agent activity. Customers gain consistent allow-or-deny decisions on every agent action, enabling the adoption of agentic AI with the confidence that existing SentinelOne security controls apply automatically throughout every workflow.
"Agentic AI has become foundational to how enterprises operate," said Melissa K. Smith, SVP of Global Strategic Partnerships and Initiatives at SentinelOne. "Every organization building and running AI agents on AWS needs the same security controls they rely on across the rest of their infrastructure. This upcoming integration applies those guardrails at the AgentCore gateway, where all agent traffic is evaluated, giving every enterprise the confidence to deploy AI agents knowing their existing SentinelOne policies apply automatically, from day one."
The integration will be available in Amazon Bedrock AgentCore later this year. Customers with existing Prompt Security licenses will be able to apply them through a Bring Your Own License path. As enterprise AI agent deployments scale, consumption is expected to scale accordingly.
Key Features of the Integration
| Feature |
Description |
| Detection Signals |
Covers prompt injection, PII exposure, tool-use validation, LLM response monitoring, and data leakage prevention. |
| Policy Engine |
Enforces real-time, deterministic controls at the gateway across all agent traffic. |
| Enforcement |
Acts on detection signals outside the agent's reasoning loop for consistent allow-or-deny decisions. |
| Licensing |
Supports Bring Your Own License for existing Prompt Security customers. |