NTT DATA and Palo Alto Networks today announced a multi-year strategic alliance designed to help organizations securely adopt AI, modernize cybersecurity, simplify complex technology environments and build cyber resilience for the AI era.
As Palo Alto Networks first strategic alliance of this kind with a global systems integrator, the agreement, which targets $1 billion in joint business by the end of three years (2029), combines Palo Alto Networks AI-powered cybersecurity platforms with NTT DATA’s consulting, engineering and managed services.
Leveraging joint engineering, co-innovation and coordinated global delivery, the alliance will help clients assess cyber risk, deploy AI securely and continuously optimize security. Through these joint solutions, clients will gain a unified approach that seamlessly spans cybersecurity strategy, implementation and managed services.
Building on the companies’ Frontier AI collaboration, the alliance brings together Palo Alto Networks Unit 42® threat intelligence with NTT DATA’s global cybersecurity expertise, AI governance and managed services. Backed by joint investments, more than 2,000 certified experts, as well as dedicated Forward Deployed Engineers, the alliance will deliver a seamless approach to streamline deployments and speed client outcomes. Through direct engineering collaboration, NTT DATA will gain early access to new platform features — further accelerating the delivery of AI security services to clients.
Initial solutions will address the most pressing cybersecurity challenges facing clients in highly regulated and critical industries, including financial services, healthcare, manufacturing and the public sector, across six strategic transformation areas:
- Autonomous Security Operations Center (SOC) – Modernize security operations with Agentic AI and managed services that help organizations detect, investigate and respond faster to increasingly sophisticated, machine-speed cyber threats while reducing operational complexity.
- AI governance – Embed governance, security and risk management throughout the AI lifecycle, helping organizations manage emerging AI risks and confidently scale AI innovation with greater accountability, transparency and control.
- Identity security – Protect human, machine and AI agent identities, including workloads and devices, through an Identity Security Framework designed to discover, manage, secure and govern identities across the enterprise.
- Zero Trust & SASE – Helps secure users, applications and data across an increasingly complex attack surface through a unified Zero trust and secure edge architecture, leveraging AI-driven threat detection and prevention.
- Resilient cloud – Enables organizations to improve visibility, compliance and autonomous risk reduction across multi-cloud environments with AI-enabled security posture management and stronger governance.
- Firewall modernization – Modernize firewall environments to reduce complexity, improve visibility and strengthen enterprise security.
NTT DATA brings world-class cybersecurity expertise to the collaboration, backed by over 7,500 cybersecurity professionals, 70+ delivery centers and 20+ Autonomous Cyber Defense Centers. Paired with Palo Alto Networks AI-powered platforms and Unit 42 threat intelligence, the alliance delivers the technology, expertise and global reach enterprise organizations need to securely deploy AI across complex environments.
60% of critical infrastructure organizations hit by significant cyber incidents
Posted in Commentary with tags Palo Alto Networks on October 7, 2026 by itnerdNearly 60% of critical infrastructure organizations experienced a significant cybersecurity incident in the past year, while widespread gaps in OT visibility, legacy infrastructure and IT/OT integration continue to complicate security, according to Palo Alto Networks’ new State of Critical Infrastructure Cybersecurity Report.
The report surveyed more than 1,600 security leaders across manufacturing, healthcare and life sciences, energy and utilities, transportation, and government and public sector organizations in 11 countries. Among the findings:
The report also found that organizations use an average of seven disparate security systems and tools. Fifty-nine percent said multiple systems create operational complexity, 56% reported higher operating costs and 41% said tool sprawl contributes to delayed incident response.
Jacob Krell, Senior Director: Secure AI Solutions & Cybersecurity, Suzu Labs:
“Critical infrastructure security is constrained by assets that cannot be taken offline long enough to patch, while geopolitical tensions and expanding connectivity increase pressure on providers already working with limited resources.
“Palo Alto Networks’ 2026 State of Critical Infrastructure Cybersecurity Report connects that pressure to real operational consequences, including safety concerns, unplanned downtime, production disruption, and financial losses. The common thread is incomplete visibility across legacy systems, unmanaged devices, private 5G networks, and other connected assets. Separate IT and OT security teams, along with multiple disconnected tools, make the response slower and harder to coordinate.
“The burden is heavier for utilities, hospitals, manufacturers, transport operators, and government agencies because they cannot treat cybersecurity as a normal software-maintenance exercise. A security team may know that a programmable logic controller (PLC) is vulnerable, but still lack a reliable answer to the question that matters operationally, which pump, production step, or safety process does it control? Without that context, a vulnerability score cannot tell the team what to protect first.
“Time-to-protection is the meaningful measure for unpatchable OT. Passive asset discovery, network segmentation, strict remote access, and virtual patching can block exploitation while engineering teams test a vendor fix and schedule a safe maintenance window.
“AI will compress the attacker’s timeline while defenders are still establishing what a connected asset does, what it controls, and whether it can be safely changed. Constrained headcount makes that gap harder to close. AI can multiply a small team’s reach, but safe use still requires people who understand the model, the network, and the physical process. A facility without that technical talent could turn automation into another unmonitored dependency. For providers facing geopolitical pressure and constrained resources, connecting every alert to the physical process that asset controls is the priority.”
Damon Small, Board of Directors, Xcape, Inc.:
“Operational disruptions averaging nearly $290,000 per hour in downtime highlight the staggering financial risks of operational technology (OT) vulnerabilities. The convergence of OT and IT networks has been underway for nearly three decades, yielding tangible business efficiencies while simultaneously introducing severe cyber threats. Early examples of targeted OT attacks date back to the 2000s and have steadily escalated in frequency and sophistication. Today, legacy and unpatchable devices combined with fragmented security operations leave defenders blind to over two-thirds of their connected environments. Rather than chasing hype around emerging threat vectors, security leaders must prioritize foundational controls: continuous passive network monitoring to establish real-time asset inventories, strict network segmentation to isolate vulnerable systems, and unified identity enforcement across IT and OT boundaries.”
“Critical Takeaways:
“Buying a seventh security tool will not fix the fact that nobody knows what is plugged into the OT network.”
John Strand, Owner, Black Hills Information Security, Inc.:
“This is unfortunately what we should expect when we look at a lot of these organizations. What you’re seeing is technological spread. Organizations have a tremendous amount of legacy technology that can’t simply be ripped out and replaced. At the same time, newer and more secure technologies are being introduced, but that doesn’t mean they’re evenly distributed across the organization. There’s that great quote, ‘The future is already here. It’s just not evenly distributed.’ I think this story is a perfect example of that.
“What worries me even more is the coming age of AI, where people can create applications and SaaS services incredibly quickly without necessarily knowing how to code. I believe the technical complexity of these environments is going to increase, not decrease. And complexity is the enemy of computer security. Security teams are going to be dealing with new technologies being deployed incredibly quickly, legacy technologies that were never properly secured, and constant pressure to get things into production as fast as possible. All of those problems become even more pronounced when you get into SCADA, ICS, and OT environments.”
Critical infrastructure should be treated as critical. Which means that any and all measures should be taken to secure it 100% of the time. Otherwise adversaries will pwn it 100% of the time.
Leave a comment »