Fortinet has expanded FortiEndpoint with new capabilities to manage AI usage, data protection, and endpoint risk. This update introduces several security features to the company’s endpoint platform through a single agent, console, and license.
Add visibility and control of AI applications and agents used on endpoint devices, as well as built-in data loss prevention, endpoint risk scoring, and AI-assisted operational tools. This package is intended to provide a more integrated way for security teams to monitor devices, user activity, and access decision-making across distributed environments.
AI monitoring
A central element of the expansion is monitoring both sanctioned and unsanctioned AI tools. FortiEndpoint is designed to give organizations visibility into what AI applications, agents, and web-based tools are in use on endpoint devices, helping teams identify shadow AI and other unauthorized software.
Security teams can set policies to allow, restrict, monitor, or block these tools according to internal security, compliance, and data rules. This puts AI governance at the endpoint, rather than relying solely on network-level or cloud-level controls.
Fortinet announced this release as part of a broader effort to simplify security management as enterprises increasingly deploy AI-enabled software in their daily operations. This update also ties into the broader industry issue of fragmented tools across endpoint protection, secure access, and data security.
Michael Xie outlined the approach in comments published with the announcement.
“As environments become more complex and AI-enabled, organizations need simpler and more effective ways to manage security. Fortinet Security “The fabric is designed to unify critical security and networking capabilities across the enterprise, helping customers reduce complexity, increase visibility, and strengthen protection. At FortiEndpoint, we extend that strategy by consolidating security, secure access, data security, AI visibility, and operational assistance in a unified endpoint platform delivered through one agent, one console, and one license.” Michael Xie, Founder, President, and CTO of Fortinet.
data management
Fortinet has also added native data loss prevention to FortiEndpoint. This feature is designed to inspect sensitive information exchanged with AI applications, agents, and web services on endpoints to reduce the risk of data leakage and insider exploitation.
This system can provide in-product coaching to users in real time when policies are triggered. The goal is to guide acceptable usage of AI tools in all cases without interfering with daily operations.
The company highlighted data categories such as personally identifiable information, intellectual property, and financial information. By placing these controls on the endpoint platform itself, Fortinet aims to avoid the need for separate data security products in some use cases.
operation layer
Another part of the release is FortiAI-Assist, which is now integrated into FortiEndpoint. This tool allows security staff to investigate events using natural language prompts, generate summaries, identify high-risk devices, and troubleshoot issues.
The operational layer also provides contextual insights, policy recommendations, and risk guidance that help analysts process investigations and prioritize threats. These features work alongside adaptive zero trust measures that use changing device health, compliance, and risk data to influence access decisions.
This means that access to AI applications and protected resources can be enhanced or adjusted as the risk profile of the endpoint changes. This is intended to support more consistent policy enforcement based on real-time context.
market pressure
The announcement comes as security suppliers seek to respond to the rapid increase in the use of AI within enterprises, often using a combination of approved and unofficial tools. For many cyber teams, this poses both governance and data security issues, especially when employees paste sensitive information into external AI services.
At the same time, vendors are increasingly packaging endpoint protection, access control, and data protection capabilities into broader platforms rather than selling them as separate products. Fortinet’s latest move fits into this trend by reducing the number of management layers and focusing on tighter links between endpoint telemetry and other security controls.
Industry analyst Chris DePuy said this integrated approach reflects the immediate concerns of security leaders.
“Fortinet provides what many CISOs need today, including visibility into AI usage, control over sanctioned and unsanctioned tools, protection from sensitive data leaks, and real-time coaching to help employees use AI responsibly. “Delivering these capabilities through FortiEndpoint gives customers a practical way to manage their AI risks with the same agents and licenses they already rely on for endpoint security.”
New FortiEndpoint enhancements are expected to be available in Q3.
