Fortifying the Future: Nutanix Expands Security Ecosystem and Simplifies Compliance

By Abbas Sura and John Dodds

Security is an ever changing landscape of known and unknown threats. Customers can rely on Nutanix to simplify IT operations while streamlining security operations.

The Nutanix Cloud Platform (NCP) includes built-in security controls aligned to NIST Cybersecurity Framework 2.0, compliance certifications and integrations with key cybersecurity partners. The result is a hybrid cloud platform that simplifies security, provides security confidence and allows customers to deploy security tools of choice. 

To help customers easily and safely adopt Nutanix Cloud Platform with the AHV hypervisor, Nutanix has been working with the security ecosystem to increase the breadth and depth of security integrations with NCP.

This expanded ecosystem helps organizations achieve a defense-in-depth posture across application, data, network, identity, and cloud security. And to complement these efforts, Nutanix is performing new validations against additional security standards to help customers streamline compliance.  

Strengthening Security Ecosystem for NCP 

NCP is designed with security at every layer. It’s augmented with over 120+ partnerships with leading companies in various aspects of cybersecurity. In addition to the secure-by-design aspect of the platform, Nutanix has recently added new capabilities and integrations to further empower our customers to deploy their most sensitive workloads on NCP. 

Vulnerability Management

Critical to all vulnerability programs is the ability to continuously monitor and mitigate risk. Nutanix has partnered with leading vulnerability management tools from Qualys and Tenable to release NCP native plug-ins with API integrations for Nutanix AOS and AHV. This provides customers with optimal vulnerability monitoring. Customers can now benefit from excellent risk visibility and mitigation with data from Nutanix that will inform customers, not only about risks, but also about remediation paths.

The API-based integrations allow Nutanix to augment the results with higher level metadata to guide the customers on exactly what these issues mean to NCP, and ways to resolve such issues, including via one-click patching with the Nutanix LCM Full-stack Update Manager tool.

Secure Access

Zero-trust access is a fundamental aspect of security. Nutanix is partnering with CyberArk Software Ltd. to strengthen the protection of privileged credentials. CyberArk enables secure, auditable access, enforces credential rotation policies, and potentially lowers the risk of credential misuse. This API-based integration with the Nutanix Prism control and management plane makes securing identities easy and adds traceability. 

Zero-Trust Networks

Nutanix is excited to announce that recent improvements in the Nutanix Flow Virtual Networking (FVN) solution have been integrated into our partner ecosystem.

Extending security to virtual private clouds (VPCs), customers leveraging partner solutions from Check Point Software Technologies Ltd. and Palo Alto Networks, Inc. can now use FVN Policy-Based Routing (PBR) capabilities to seamlessly enforce Layer 7 application security policies across their multitenant environments.

Customers can also take advantage of the recently validated Palo Alto SD-WAN solution with Nutanix AHV. The solution delivers optimized connectivity, intelligent traffic steering, and integrated security that are ideal for VDI, branch, and edge deployments. 

Nutanix is also happy to announce that customers leveraging our run-anywhere hybrid cloud capabilities can be confident that newly-validated solutions with the F5 BIG-IP and FVN enable customers to apply advanced security controls, such as SSL/TLS encryption, DDoS protection and web application firewalls (WAF), within their VPCs. The solution with F5 Distributed Cloud (XC) enables customers to extend networking and security policies across their on-premises and multicloud environments, including with the Nutanix Cloud Clusters (NC2) solution.

Data Security and Cyber Resilience

Nutanix is further extending its leadership in ransomware protection capabilities with its industry-leading partners, including Cohesity, HYCU, Rubrik, and Veeam, with support for immutable backup to the Nutanix Objects Storage solution using WORM (write once, read many) buckets.

To support visibility and threat correlation, Nutanix is launching an integration between the Nutanix Data Lens and CrowdStrike security solutions. This integration ingests file and security alerts into the CrowdStrike Falcon® Next-Gen SIEM, providing a unified view of potential threats across endpoints and domains. Security teams can accelerate threat detection and response by correlating alerts from Nutanix Data Lens along with other threat indicators in the Falcon console. Nutanix is planning to add a plug-in for this solution on the CrowdStrike Marketplace.

Data Lens is also announcing integration to provide content awareness. Content awareness is a powerful tool to ensure protected visibility required by an increasing number of regulatory frameworks. Nutanix has partnered with BigID, Inc., a leader in the sensitive data discovery space, to bolster data intelligence and discovery, and help customers pursue their objectives around regulatory compliance, data security and privacy, and data sovereignty. 

Cloud Native Application Protection

The Nutanix Kubernetes Platform (NKP) solution represents one of the fastest growing segments of cloud native development. In this segment, integrated security is even more important than ever. NKP now offers security solutions for containerized workloads with new partnerships with AccuKnox, Aqua Security Software Ltd. and Sysdig, Inc..

Customers looking for end-to-end security in containerized workloads now find capabilities such as auto-discovered behavioral policies, compliance enforcement and deep visibility into cloud-native applications. These integrations complement NKP by delivering comprehensive workload security, compliance and runtime protection without compromising developer agility.

Strengthening NCP Security and Compliance Posture

Nutanix provides the platform and tools for securing workloads and data. But, all these powerful zero-trust concepts often have to be implemented in ways that can be trusted by third-party auditors, insurance underwriters or regulated industries. Nutanix has expanded efforts to help implement additional tools to guide our customers on their journey to secure workloads and data.

Recently Nutanix has been working on renewing certifications and expanding with published articles showing the Nutanix Cloud Infrastructure (NCI) solution’s performance against other industry standards. Beginning with the secure by default baseline NCI configuration used for the U.S. Department of Defense Approved Product Listing, we have recently published our performance against the CIS Benchmarks published by the Center for Internet Security.

Soon to be published will be a guide on how NCI can be implemented in secure configurations as required by PCI-DSS version 4. This guide is being authored and audited by an approved Qualified Security Accessor (QSA), in an effort to provide our customers with trusted information they can use in designing boundaries and security controls.

Nutanix delivers comprehensive certifications for secure and compliant infrastructure. Building on the USGv6 IPv6 certification that was recently achieved, Nutanix continues to develop its complete stack to support IPv6 dual stack networks. 

The NIST Cybersecurity Framework is based on the concept of layers of tools to identify risk, protect workloads and data, detect threats, respond to risk/threats, recover functions, and ultimately govern risk overall. Nutanix is focused on promoting that customers have the features and choice of partners to implement a complete cybersecurity program to operate in today’s constantly evolving threat landscape.

Join us at Nutanix .NEXT this May, or visit our security solutions page to discover how Nutanix, together with its robust security partner ecosystem, is delivering a secure and compliant cloud platform for modern enterprises.

©2025 Nutanix, Inc. All rights reserved. Nutanix, the Nutanix logo and all Nutanix product and service names mentioned are registered trademarks or trademarks of Nutanix, Inc. in the United States and other countries. Kubernetes is a registered trademark of The Linux Foundation in the United States and other countries. All other brand names mentioned are for identification purposes only and may be the trademarks of their respective holder(s). Certain information contained in this content may link or refer to, or be based on, studies, publications, surveys, and other data obtained from third-party sources and our own internal estimates and research. While we believe these third-party studies, publications, surveys, and other data are reliable as of the date of publication, they have not independently verified unless specifically stated, and we make no representation as to the adequacy, fairness, accuracy, or completeness of any information obtained from a third-party. Our decision to publish, link to or reference third-party data should not be considered an endorsement of any such content.

This content contains express and implied forward-looking statements, including but not limited to statements regarding the security features of Nutanix products and those of third party companies, our plans and expectations relating to new product features and technology under development, the capabilities of such product features and technology, and our plans to release product features, technology, and publications. Such statements are not historical facts and are instead based on our current expectations, estimates and beliefs, including statements about The accuracy of such statements involves risks and uncertainties and depends upon future events, including those that may be beyond our control, and actual results may differ materially and adversely from those anticipated or implied by such statements, including, among others: failure to develop, or unexpected difficulties, delays or disruptions in developing, releasing or distributing, new products, services, product features or technology in a timely or cost-effective basis. Any forward-looking statements included speak only as of the date hereof and, except as required by law, we assume no obligation to update or otherwise revise any such forward-looking statements to reflect subsequent events or circumstances. Certain products and features or functionalities described herein remain in varying stages of development and will be offered on a when-and-if-available basis. The development, release, and timing of any such products, features or functionalities are subject to change. Nutanix will not have any liability for any failure to deliver or delay in the delivery of any such products, features or functionalities. Any future product or product feature information is intended to outline general product directions, and is not a commitment, promise, or legal obligation for Nutanix to deliver any functionality. This information should not be used when making a purchasing decision.