What happened
Portnox announced (Aug 18, 2026) a new Microsoft Defender integration alongside existing CrowdStrike/SentinelOne links, completing a three-partner detect-evaluate-enforce pipeline that lets Portnox automatically block, quarantine, or revoke network access for AI agents and other non-human identities when partner telemetry flags elevated risk.
Why it matters
Provides an independent, network-layer containment point for compromised or anomalous AI agents that doesn't wait on identity-platform permission changes, addressing a gap where 35% of orgs report they couldn't shut down a rogue agent.
Applicability
Enterprises running CrowdStrike/SentinelOne/Defender with growing agent fleets should evaluate as a fast-containment layer; available now.