Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Proofpoint: Why Intent Is the Missing Piece of AI Security

Proofpoint
07/05/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


What is the human or agent trying to accomplish? What data is involved and could the outcome create harm? A user or agent may be authorized to access data, but that does not mean every action is appropriate. Permissions are not the same as intent. Access is not the same as trust. Identity and permissions are important, but not sufficient. That is why AI runtime security has to not just see what happened. It has to also understand intent, context, and outcome. It has to help organizations know whether people and AI agents are acting within the guardrails of what business expects. Intent is the connective tissue between human behavior, AI activity, data context, and risk. And knowing and controlling intent is the only way to govern the risk of AI. That is what makes this different from traditional cyber risk. And this is where Proofpoint is uniquely positioned to help you, our customers.

TL;DR

  • Permissions and identity controls are necessary but not sufficient for governing AI risk — intent must also be understood and controlled at runtime.
  • Every AI prompt and agent action carries an intent that determines whether the outcome could create harm, regardless of whether access was authorized.
  • Proofpoint positions itself as uniquely capable of delivering AI runtime security that evaluates intent, context, and outcome — not just access.

Summary

In this short clip from Proofpoint's AI Security Summit, CEO Sumit Dhawan makes a pointed argument about the fundamental gap in how organizations are approaching AI governance today. The core thesis is that permissions and identity controls — the traditional pillars of access management — are necessary but insufficient when it comes to governing AI risk. Every AI prompt and every AI action, whether initiated by a human or an autonomous agent, is driven by intent. A user or agent may be fully authorized to access a dataset, but that authorization says nothing about whether a specific action is appropriate in context. Dhawan frames intent as the connective tissue linking human behavior, AI activity, data context, and risk — and argues that controlling intent is the only viable path to governing AI at runtime. This positions Proofpoint's AI security approach as distinct from traditional cybersecurity frameworks, which focus primarily on access control and identity verification. The clip serves as a positioning statement ahead of a full AI Security Summit recording, signaling Proofpoint's strategic push into the AI governance and runtime security market.

Chapters

0:00 - The Role of Intent in AI
0:19 - Permissions vs. Intent
0:30 - AI Runtime Security Defined
0:58 - Proofpoint's Unique Position

Key Quotes

0:19 "Permissions are not the same as intent."
0:22 "Access is not the same as trust."
0:47 "Intent is the connective tissue between human behavior, AI activity, data context, and risk."

FAQ

Why aren't permissions enough to secure AI systems?

According to Proofpoint CEO Sumit Dhawan, permissions confirm that a user or agent is authorized to access data, but they say nothing about whether a specific action is appropriate in context. AI runtime security must also evaluate intent, context, and outcome to determine whether behavior falls within expected business guardrails.


Categories:
  • » Cybersecurity » Data Security
  • » Cybersecurity » Identity & Access Management (IAM)
  • » Cybersecurity » Zero Trust
  • » AI & Machine Learning
  • » Data Protection
Channels:
News:
Events:
Tags:
  • AI & Machine Learning
  • Data Security
  • Security Operations
  • Zero Trust
  • Executive Briefing
  • short_form
  • AI security
  • AI governance
  • Intent-based security
  • AI runtime security
  • Access control
  • Agentic AI risk
  • Data security
  • Cybersecurity strategy
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Proofpoint: Why Intent Is the Missing Piece of AI Security

              XStreaminars (watch here)

              • Jul
                28

                Illumio + Netskope: Zero Trust in the Age of AI Autonomy

                07/28/202601:00 PM ET
                • Jul
                  29

                  Ask Your Cloud Anything: Unlocking Governance Silos in your Environments

                  07/29/202601:00 PM ET
                  More events

                  Industry Events (watch there)

                  • Jul
                    14

                    Crafting a Championship-Caliber Security Team for Lasting Defense

                    07/14/202601:00 PM ET
                    • Jul
                      14

                      Understanding the Crucial Role of Context in Safeguarding AI-Accessible Data

                      07/14/202602:00 PM ET
                      • Jul
                        22

                        Insights from Attackers During the FIFA World Cup: A HUMAN Dialogue

                        07/22/202601:00 PM ET
                        More events

                        Upcoming Webinar Calendar

                        • 07/14/2026
                          01:00 PM
                          07/14/2026
                          Crafting a Championship-Caliber Security Team for Lasting Defense
                          https://www.truthinit.com/index.php/channel/2025/crafting-a-championship-caliber-security-team-for-lasting-defense/
                        • 07/14/2026
                          02:00 PM
                          07/14/2026
                          Understanding the Crucial Role of Context in Safeguarding AI-Accessible Data
                          https://www.truthinit.com/index.php/channel/2037/understanding-the-crucial-role-of-context-in-safeguarding-ai-accessible-data/
                        • 07/21/2026
                          04:00 AM
                          07/21/2026
                          Strategies for Managing AI Governance and Securing App-to-LLM API Traffic
                          https://www.truthinit.com/index.php/channel/1967/strategies-for-managing-ai-governance-and-securing-app-to-llm-api-traffic/
                        • 07/22/2026
                          06:30 AM
                          07/22/2026
                          Insights and Strategies in Data Protection and Privacy Management
                          https://www.truthinit.com/index.php/channel/2000/insights-and-strategies-in-data-protection-and-privacy-management/
                        • 07/22/2026
                          01:00 PM
                          07/22/2026
                          Insights from Attackers During the FIFA World Cup: A HUMAN Dialogue
                          https://www.truthinit.com/index.php/channel/2029/insights-from-attackers-during-the-fifa-world-cup-a-human-dialogue/
                        • 07/28/2026
                          01:00 PM
                          07/28/2026
                          Illumio + Netskope: Zero Trust in the Age of AI Autonomy
                          https://www.truthinit.com/index.php/channel/2031/illumio-netskope-zero-trust-in-the-age-of-ai-autonomy/
                        • 07/29/2026
                          04:00 AM
                          07/29/2026
                          Real-Time Strategies for Safeguarding Against Prompt Injections
                          https://www.truthinit.com/index.php/channel/1968/real-time-strategies-for-safeguarding-against-prompt-injections/
                        • 07/29/2026
                          01:00 PM
                          07/29/2026
                          Ask Your Cloud Anything: Unlocking Governance Silos in your Environments
                          https://www.truthinit.com/index.php/channel/2048/ask-your-cloud-anything-unlocking-governance-silos-in-your-environments/
                        • 08/19/2026
                          12:00 PM
                          08/19/2026
                          Becoming Agent Ready: Insights from Cyera's Expertise
                          https://www.truthinit.com/index.php/channel/2036/becoming-agent-ready-insights-from-cyeras-expertise/
                        • 09/02/2026
                          12:00 PM
                          09/02/2026
                          Unified Data Security in Action: Uncover, Analyze, and Resolve Threats
                          https://www.truthinit.com/index.php/channel/2045/unified-data-security-in-action-uncover-analyze-and-resolve-threats/
                        • 09/30/2026
                          04:00 AM
                          09/30/2026
                          AI Command Center: Optimizing Visibility and Control in Your Operations
                          https://www.truthinit.com/index.php/channel/2024/ai-command-center-optimizing-visibility-and-control-in-your-operations/
                        Truth in IT
                        • Sponsor
                        • About Us
                        • Terms of Service
                        • Privacy Policy
                        • Contact Us
                        • Preference Management
                        Desktop version
                        Standard version