July 28, 2026 — Snowflake today introduced Cortex AI Gateway and several AI security innovations that establish the foundation for trusted agent interoperability, enabling organizations to securely scale their agentic enterprises. Cortex AI Gateway addresses two of the biggest barriers to enterprise AI adoption today by helping organizations secure AI agents, while providing centralized visibility and control over AI consumption costs.
Credit: Michael Vi/Shutterstock
As AI agents increasingly collaborate across enterprise data, apps, and platforms, they introduce unprecedented security and governance risks, while driving growing AI consumption across models and workloads. Traditional security architectures were not designed for this level of cross-system agent activity, and organizations often lack a centralized way to govern AI usage. This requires a new security and cost model where trust enables interoperability across every AI interaction. Today, Snowflake is solidifying the foundation for a secure agent ecosystem where agents can interoperate across the enterprise with the trust, visibility, control, and cost oversight businesses need.
Snowflake is unveiling Cortex AI Gateway, a major advancement that enables enterprises to securely control, orchestrate, and govern both first-party AI agents built within Snowflake, such as Snowflake CoWork and Snowflake CoCo, and third-party AI agents developed on external platforms such as Claude Code and Cursor. Cortex AI Gateway gives enterprises a unified foundation to govern how agents access models, tools, MCP servers, and enterprise systems; intelligently route agent requests; and optimize AI consumption across models and workloads. As a result, teams gain greater visibility and control across AI access, agent activity, and token usage to help prevent runaway AI costs.
Cortex AI Gateway builds on Snowflake’s acquisition of Natoma (May 2026), bringing Natoma’s enterprise MCP platform capabilities directly into the Snowflake platform for secure, enterprise-grade agent interoperability. Snowflake also announced new secure third-party agent access integrations4 with Aembit, 1Password, Linx Security, Okta, SailPoint, and Saviynt, setting a new standard for how enterprises govern and audit AI agents across the security ecosystem.
“Enterprise AI is moving from data interoperability to agent interoperability, and security has to be at the center of that shift,” said Mayank Upadhyay, Chief Security and Trust Officer, Snowflake. “Agent interoperability only works when enterprises can trust how agents from different platforms access data, invoke tools, and take action on behalf of users. Snowflake provides the visibility, governance, and control capabilities needed to make that interoperability secure for production AI. The future of the agentic enterprise will not be built in closed agent ecosystems, and Snowflake is the trusted control plane that enables secure enterprise work.”
Powering the Centralized AI Gateway for the Agentic Enterprise
For AI agents to deliver real business value, they need secure access to the models, data, applications, and tools that provide the full context of the enterprise. Today, those resources are fragmented across systems and providers, forcing teams to build and maintain custom connections while managing access, activity, and costs through disconnected controls.
Cortex AI Gateway advances Snowflake’s role as a secure AI interoperability layer for the agentic enterprise by establishing the gateway that helps enterprises centrally govern how AI agents access and use models, data, applications, and tools. For organizations like Meltwater, Cortex AI Gateway offers a path to make agents more useful, observable, and production-ready.
“At Meltwater, we help organizations make sense of fast-moving external data and turn insights into action. As AI becomes more embedded in that work, security and trust are critical to delivering value,” said Chief Technology Officer, Aditya Jami, Meltwater. “We see Cortex AI Gateway as a step towards ensuring our agents can securely connect to the right data and tools, helping us deliver trusted AI-powered insights faster while maintaining the security and control our customers expect.”
Cortex AI Gateway enables enterprises to:
- Govern Every Agent Connection: Enterprises need a consistent way to control which models, data, applications, MCP servers, and tools each agent can access. With support for more than 100 MCP servers, Cortex AI Gateway centralizes agent access policies, authentication, permissions, and controls.
- See and Understand Every Agent Action: As agents take action across enterprise systems, organizations need visibility into what each agent did, which systems and tools it accessed, and the sequence of steps it took. Cortex AI Gateway provides a centralized, end-to-end record of agent activity, giving teams the visibility needed to operate agents safely at scale.
- Keep AI Consumption Costs Under Control: Fragmented AI usage across models, teams, and workloads makes AI consumption costs difficult to track and control. Cortex AI Gateway gives IT and finance teams a unified view of AI consumption, attributes costs to the teams, agents, or workloads driving them, and enforces spending limits to help prevent runaway costs before they occur.
- Optimize Model Selection and Performance: Enterprises need the flexibility to use multiple models while ensuring each request is routed to the right model for the task. Cortex AI Gateway intelligently routes requests to enterprise-approved models, optimizing quality, cost, latency, and availability while maintaining centralized governance.
Advancing Secure Third-Party Agent Access with Ecosystem Partners
For AI agents to deliver meaningful impact, they need to work securely across platforms. Yet many vendors still default to closed ecosystems, making it difficult for third-party agents to operate across organizational boundaries. Security is the key to unlocking that interoperability by establishing the trust, identity, and access controls agents need to work safely across platforms.
Snowflake is laying the foundation for secure third-party agent access across the security ecosystem, with the first wave of integrations from leading security vendors including 1Password, Aembit, Linx Security, Okta, SailPoint, and Saviynt.
To enable enterprises to deploy third-party agents with consistent security and control, these integrations are designed to:
- Make Third-Party Agents Governable: Enterprises can now move beyond the blind spot of agents acting under broad user credentials. With the new integrations, security teams have a clearer view into which agent accessed what data, through which platform, and under whose authority.
- Enable Task-Scoped Agent Access: Third-party agents should not inherit every permission a user has just because they are acting on the user’s behalf. Snowflake’s approach limits agent access to only what the task requires, creating a safer model for using agents across an enterprise’s data ecosystem.
- Extend Consistent Governance Across Agent Ecosystems: These integrations represent an important milestone for the security industry by helping unlock a pathway toward secure cross-platform agent interoperability.
Expanding AI Security for the Agentic Era
Snowflake is advancing enterprise security foundations across the areas that matter most for production-ready AI. This includes new advancements that enable security teams to better understand their AI risk posture, provide agents with a verified identity, protect sensitive data from improper use, apply more context-aware controls, and limit agent sessions to the scope required for the task. By bringing zero-trust security to the agentic enterprise, Snowflake is helping enterprises like BlackRock and Thomson Reuters strengthen security, visibility, and control as they scale AI.
“At Thomson Reuters, building trusted AI for professionals requires strong security, governance, and visibility into how AI systems access data, use tools, and take action,” said Caitlin Halferty, Head of Data & Analytics, Thomson Reuters. “As AI becomes more deeply embedded in professional workflows, organizations need the ability to protect sensitive information and maintain clear controls without limiting innovation. Snowflake’s continued investment in AI security and governance supports the kind of trusted foundation enterprises need as they move agentic AI into production.”
About Snowflake
Snowflake is the platform for the AI era, making it easy for enterprises to innovate faster and get more value from data. More than 13,900 customers around the globe, including hundreds of the world’s largest companies, use Snowflake’s AI Data Cloud to build, use and share data, applications and AI. With Snowflake, data and AI are transformative for everyone. Learn more at snowflake.com (NYSE: SNOW).
Source: Snowflake
The post Snowflake Advances the Trusted Agentic Enterprise Era with Unified Monitoring and Cost Management appeared first on AIwire.

