TrendAI, the AI-focused enterprise security business of Trend Micro, says it has surpassed $1 billion in global sales through AWS Marketplace, becoming the first Asia-Pacific-and-Japan-based AI security partner to reach the threshold. The milestone is notable not only for the scale of the transaction volume, but for what it says about how enterprises are buying cloud security: increasingly through the same marketplaces, cloud commitments and procurement channels they already use for infrastructure and AI.
The economics of enterprise AI are changing quickly. Security procurement is changing with them.
TrendAI’s AWS Marketplace milestone comes as companies move generative AI and agentic systems from experiments into production, creating a security problem that is broader than protecting a conventional application or model. AI agents can access data, invoke tools, interact with other systems and make decisions across cloud environments. That expands the attack surface—and makes fragmented security dashboards harder to manage.
TrendAI says its $1 billion AWS Marketplace sales milestone reflects more than customer demand for its cybersecurity products. It also demonstrates the growing importance of cloud marketplaces as an enterprise software distribution and procurement channel.
The company, which operates as an enterprise business unit of Trend Micro, says customers can purchase TrendAI Vision One through AWS Marketplace using existing AWS committed spending, consolidate the transaction on their AWS bill and work through channel partners. The announcement was made August 20, 2026.
That purchasing model matters because security teams increasingly have to justify AI investments alongside existing cloud budgets. Removing a separate procurement cycle does not eliminate the technical work involved in deployment, but it can reduce one of the barriers between security requirements and implementation.
TrendAI says it has supported AWS Marketplace capabilities including consumption-based billing, SaaS trials, Pay-As-You-Go and Buy With AWS since the early development of the marketplace. It also says the platform now integrates with more than 80 AWS services and has 12 AWS Competencies and five AWS field-engagement designations.
The bigger shift is AI security
The more strategically significant part of the announcement is what TrendAI is building around Amazon Bedrock and enterprise AI workloads.
TrendAI Vision One is positioned as a broader AI security and observability layer rather than simply a content filter. The company says its platform can map AI models, applications and agents, monitor activity, correlate AI-specific signals with conventional security telemetry and identify risks such as prompt injection, data exposure, unauthorized model access and agent hijacking.
One announced capability is what TrendAI calls “agentic AI memory.” Built using Amazon Bedrock and Amazon Neptune graph databases, the system is designed to retain short- and long-term context from previous security interactions. TrendAI claims this improves answer quality and contextual threat response by 20%, although the announcement does not provide independent testing methodology for that figure.
That distinction is important. Enterprise AI security is moving beyond the question of whether a model produces an unsafe response. Security teams increasingly need to understand what the AI system can access, which identity is operating it, what tools it can invoke and what happened before and after a suspicious interaction.
AWS itself recognizes that prompt injection is an application-level security concern and says customers remain responsible for securing applications and resources built on Amazon Bedrock. Bedrock Guardrails provides configurable controls for prompt attacks, harmful content and sensitive information, but organizations still need application-level security and monitoring around their AI workloads.
That leaves room for third-party platforms such as TrendAI Vision One to compete on visibility across the wider environment rather than only on model-level safeguards.
Competition is moving up the stack
TrendAI is entering an increasingly crowded AI security market.
AWS has native Bedrock Guardrails for filtering content, detecting prompt attacks and protecting sensitive information. Google Cloud offers Model Armor, which screens prompts, responses and agent interactions for prompt injection, data leakage and other risks and can operate across different LLM environments.
The competitive question, therefore, is less about whether enterprises need AI guardrails—they clearly do—and more about where security enforcement should live.
Cloud-native controls have an obvious advantage when organizations standardize heavily on one hyperscaler. Independent security platforms can make a stronger case when enterprises operate across multiple clouds, on-premises systems and operational technology environments.
TrendAI is emphasizing the latter proposition. Its pitch is essentially that AI security should connect model activity with the rest of the enterprise security graph rather than create another isolated console.
That approach resembles the broader direction of enterprise cybersecurity, where vendors increasingly compete around unified visibility, identity, telemetry and automated response.
Enterprise AI adoption is raising the stakes
The market backdrop is favorable for AI security vendors.
Gartner forecasts worldwide AI spending will reach $2.59 trillion in 2026, up 47% year over year, with AI cybersecurity spending projected at $51.3 billion.
McKinsey’s 2025 global AI survey provides another important signal: 88% of respondents said their organizations regularly use AI in at least one business function, while 62% said they were at least experimenting with AI agents. Yet most organizations remain in experimentation or pilot phases rather than enterprise-wide scaling.
That gap creates a governance problem. Companies are simultaneously expanding AI use and discovering that the infrastructure for monitoring, access control and risk management has not necessarily matured at the same speed.
For enterprise technology leaders, the TrendAI announcement therefore points to a broader procurement trend: AI security is increasingly becoming part of the cloud platform conversation rather than a separate cybersecurity project.
The practical test will be whether platforms can provide meaningful visibility without creating another layer of operational complexity. Security teams will need to evaluate coverage across models, agents, identities, APIs and data; determine how detections integrate with existing SIEM and SOC workflows; and establish clear ownership for AI risk.
TrendAI’s AWS Marketplace milestone shows that the buying infrastructure is already evolving. The next phase will determine whether AI security platforms can evolve quickly enough to match it.
Market Landscape
The AI security market is splitting into several overlapping layers:
- Cloud-native controls: AWS Bedrock Guardrails and Google Cloud Model Armor provide native protections around prompts, responses, sensitive data and AI interactions.
- Enterprise security platforms: Vendors such as TrendAI increasingly connect AI telemetry with broader cloud, endpoint, identity and threat-detection data.
- AI application security: This category focuses on protecting LLM applications, APIs, agents, prompts and model outputs from attacks such as prompt injection and data leakage.
- AI governance and compliance: Enterprises need inventories, ownership, audit trails and controls aligned with frameworks such as the NIST AI Risk Management Framework and EU AI Act.
- Agentic AI security: As agents gain permission to execute actions, security shifts from monitoring generated text toward controlling identities, tools, permissions and autonomous behavior.
The strategic battleground is likely to be integration. Microsoft, Google, Amazon and specialist cybersecurity vendors all have opportunities to make AI security part of broader enterprise security architectures. For buyers, the differentiator may ultimately be less about the number of AI-specific detections and more about how effectively those detections connect to existing SOC, identity and cloud-security workflows.
Top Insights
- TrendAI has surpassed $1 billion in AWS Marketplace sales, highlighting how cloud marketplaces are becoming major procurement channels for enterprise cybersecurity and AI infrastructure.
- Vision One targets AI-native threats including prompt injection, data exposure and agent hijacking while correlating AI activity with broader AWS security signals.
- AWS Bedrock already provides native guardrails, making cross-environment visibility and enterprise-wide security correlation important differentiators for third-party AI security platforms.
- Gartner projects $51.3 billion in AI cybersecurity spending during 2026, reflecting rapidly expanding demand for protection around enterprise AI workloads.
- Enterprise AI adoption is accelerating faster than governance maturity, creating demand for platforms that combine AI visibility, identity, observability and automated security response.
Power Tomorrow’s Intelligence — Build It with TechEdgeAI









