Zscaler Blog
Erhalten Sie die neuesten Zscaler Blog-Updates in Ihrem Posteingang
ZPA and AI Guard in Action
In a previous blog, we discussed how AI models too often have broad, unsecured lateral access to company resources. Zscaler Private Access (ZPA) solves this problem by brokering direct, identity-verified connections to specific applications rather than the entire network. This is critical for organizations to safely deploy and run private on-premises AI infrastructure without exposing adjacent environments, which cannot be achieved with VPNs.
Want to see how it works?
Check out the below video, which details how Zscaler Private Access (ZPA) and AI Guard secure organizations as they adopt artificial intelligence and machine learning (AI/ML) technologies.

ZPA & AI Guard in Action
The video demonstrates the interaction between ZPA and AI Guard using a private LLM hosted on Amazon Bedrock:
- Segmentation: Administrators can tag sanctioned AI applications, enabling them to apply specific access policies and guardrails based on business context, user groups, and risk levels.
- Real-time Blocking: If a user attempts to input restricted data, such as PII or prohibited formats, AI Guard triggers a block.
- Diagnostics: ZPA diagnostics allow administrators to view traffic details and confirm that policies were correctly applied, while the AI Guard dashboard provides visibility into why specific transactions were blocked.
ZPA provides the necessary application-level categorization and access control, while AI Guard handles content-level security and policy enforcement to enable safe AI adoption.
This approach provides multiple benefits:
- Visibility and Classification: ZPA uses an application fingerprinting engine to identify and classify AI/ML applications without requiring deep packet inspection. This allows administrators to discover usage, segment applications, and monitor user activity.
- Access Control: By treating AI models as private application segments, organizations can use zero-trust policies to restrict access, reducing the overall attack surface.
- Content Security: Once access is granted, AI Guard inspects traffic for risks such as data leakage, PII exposure, and prompt injection.
To learn more, visit our website or request a custom demo.
War dieser Beitrag nützlich?
Haftungsausschluss: Dieser Blog-Beitrag wurde von Zscaler ausschließlich zu Informationszwecken erstellt und wird ohne jegliche Garantie für Richtigkeit, Vollständigkeit oder Zuverlässigkeit zur Verfügung gestellt. Zscaler übernimmt keine Verantwortung für etwaige Fehler oder Auslassungen oder für Handlungen, die auf der Grundlage der bereitgestellten Informationen vorgenommen werden. Alle in diesem Blog-Beitrag verlinkten Websites oder Ressourcen Dritter werden nur zu Ihrer Information zur Verfügung gestellt, und Zscaler ist nicht für deren Inhalte oder Datenschutzmaßnahmen verantwortlich. Alle Inhalte können ohne vorherige Ankündigung geändert werden. Mit dem Zugriff auf diesen Blog-Beitrag erklären Sie sich mit diesen Bedingungen einverstanden und nehmen zur Kenntnis, dass es in Ihrer Verantwortung liegt, die Informationen zu überprüfen und in einer Ihren Bedürfnissen angemessenen Weise zu nutzen.
Erhalten Sie die neuesten Zscaler Blog-Updates in Ihrem Posteingang
Mit dem Absenden des Formulars stimmen Sie unserer Datenschutzrichtlinie zu.


