Menlo Security Closes Zero-Day and AI Agent Attack Gaps with Google Security Operations Integration
Menlo Security, a leader in Browser Security for human and agentic workforces, today announced an integration between Menlo HEAT Shield Agent and Google Security Operations. A security operations (SecOps) analyst can now approve a response to a browser-based threat and have Menlo enforce it automatically, helping to close the gap between threat detection and response. The announcement, made at Google Cloud’s Security Innovations Forum 2026, also includes expanded AI agent protection through Menlo Agent Runtime Security (MARS).
Also Read: Modern Data Architecture in 2026: Building an AI-Ready Enterprise Data Foundation
Enterprise work happens in the browser, for employees and increasingly for the AI agents acting on their behalf, and attackers have followed. Security teams often catch these threats only after damage is done, and even when they catch them in time, investigation happens in the security operations center (SOC) while enforcement lives in a separate console.
“Security teams have spent years relaying decisions between the SOC and whatever tool actually enforces them,” said Ramin Farassat, Chief Product Officer at Menlo Security. “With this integration, an analyst approves a response in Google Security Operations and Menlo carries it out in the browser automatically. No relay required.”
Menlo HEAT Shield Agent inspects live page content with Google’s Gemini models and blocks zero-day phishing at the point of click, ahead of any reputation feed. Each detection can now stream into Google Security Operations, where a customer’s playbook can correlate it against existing telemetry and propose a response. Once a SecOps analyst approves it, Google Security Operations returns the instruction to Menlo’s control plane, which carries out whatever the customer has built it to do, whether that’s a policy change, a blocklist update, or a session containment, or any other action supported by Menlo API.
Also Read: IT Tech Pulse Exclusive Interview with Craig Patterson, SVP of Global Channels & Marketing, Exabeam
MARS applies the same real-time inspection to AI agents, stripping hidden prompt injection, sanitizing files with Level 3 CDR and enforcing data loss prevention as agents browse, authenticate, and handle files inside the Menlo Cloud. MARS detections can already stream into Google Security Operations today, just like any other Menlo service.
Menlo Orchestrator Agent, included with HEAT Shield Agent and built on Google Cloud Gemini Enterprise, gives administrators a conversational path to the same forensic investigation and enforcement, letting them ask what happened, see who else was exposed, and apply a fix without needing to learn or use the traditional Menlo Admin UI.
Write to us [wasim.a@demandmediaagency.com] to learn more about our exclusive editorial packages and programmes.