# Broadcom’s VMware Private AI Cloud spans infrastructure, agents, data and security

> Source: <https://siliconangle.com/2026/08/31/broadcoms-private-ai-cloud-spans-infrastructure-agents-data-and-security/>
> Published: 2026-08-31 13:00:19+00:00

### Broadcom’s VMware Private AI Cloud spans infrastructure, agents, data and security

Broadcom Inc. today introduced VMware Private AI Cloud, an integrated software stack designed to enable enterprises to build and run artificial intelligence applications alongside conventional workloads while keeping their data, models and infrastructure under their control.

Announced at the VMware Explore 2026 conference this week in Las Vegas, the offering combines VMware Cloud Foundation infrastructure with a new VMware AI Factory, validated AI models, VMware Tanzu agent-development and data services, AgentMinder governance software and expanded security protections. Broadcom also unveiled TrueSource, a portfolio of commercially supported and verifiably built open-source software.

“It brings the private cloud infrastructure with the private AI services into one, enabling production inference and agentic AI with the data sovereignty, the compliance, and the cost predictability required for our customers,” said Prashanth Shenoy, chief marketing officer and vice president of marketing for VMware’s cloud platform, infrastructure and solutions organization.

The foundation is VCF 9, which supports virtual machines, containers, inference workloads and agentic applications on one platform. Broadcom said VCF 9 has more than 3,000 customer deployments representing over 19 million allocated processor cores. Its nonvolatile memory express memory-tiering technology can replace lower-cost flash storage for some dynamic random-access memory and has reduced per-host costs by up to 42% in customer deployments while maintaining performance, Shenoy said.

Cluster-wide storage deduplication is intended to further reduce capacity requirements, while token monitoring, graphics processing unit tracking and an AI metrics dashboard provide operators with visibility into resource consumption.

VMware AI Factory packages VCF with hardware, accelerators, AI software and models that Broadcom and its partners have tested together. Initial configurations include Advanced Micro Devices Inc.’s Instinct MI350-series graphics processors and servers from Cisco Systems Inc., Lenovo Group Ltd. and Super Micro Computer Inc. Integration with MetalSoft Cloud Inc.’s orchestration platform automates provisioning and lifecycle management across heterogeneous bare-metal systems through the VCF operations console.

The platform supports accelerators from AMD, Intel Corp. and Nvidia Corp. and uses vLLM as its default model for inference and LLM serving. Broadcom said customers can run more than 150 open-source and commercial models. Newly validated models include Nvidia’s Corp.’s Nemotron 3, Google LLC DeepMind’s Gemma 4, NEC Corp.’s Japanese-language cotomi, Alibaba Group Holding Ltd.’s Qwen 3.7-Max and GLM 5.2 from Jingsheng Hengxing Technology Pte. Ltd., better known as z.ai.

“Not every AI use case requires a frontier AI model and a large language model to be deployed,” Shenoy said. Model choice increasingly depends on the job, cost and governance requirements. New multitenant model sharing will let an organization deploy a model once and make it available to multiple business groups while isolating each tenant’s data.

Broadcom is designating Tanzu Platform as the agent layer of VMware Private AI Cloud. The Cloud Foundry-based platform-as-a-service that serves a pre-engineered AI application development platform will provide deny-by-default sandboxes. Agents cannot access application programming interfaces, networks, Model Context Protocol servers or the internet unless permission is explicitly granted. Credentials are kept in a separate store so agents can’t view or disclose them.

An out-of-the-box development harness will include approved skills, workflow buildpacks, human-review controls, and memory services. A curated marketplace will provide access to vetted models, tools, skills and data products, while an AI gateway will monitor, rate-limit and log agent actions.

The new AI-ready data foundations also address the other side of agent governance: controlling the information agents use. Tanzu will ingest and parse structured, unstructured and multimodal information inside the customer’s environment, add metadata and a semantic layer and turn it into governed data products. Those can then be published in the Tanzu marketplace with role-based access controls and lineage information.

“You simply give access to that curated data product that is consistently kept in sync,” said Purnima Padmanabhan, vice president and general manager of Broadcom’s Tanzu Division.

The Tanzu capabilities are scheduled to become generally available in fall 2026.

### Agentic fabric

AgentMinder, which is generally available immediately, provides an additional control plane independent of the agent runtime. It assigns agents identities and evaluates each attempted action against the agent’s owner, declared mission, intent, approved tools and authorized resources. A gateway can allow, deny, redirect or redact requests before they reach a model, MCP server, API or other enterprise resource.

“AgentMinder is what we call an agentic fabric,” said Clayton Donley, vice president and general manager of Broadcom’s Identity Management Security Division. “It’s sitting between the agents you have and the LLMs and PCs, MCP services, APIs and other kinds of tooling that those agents are going to be calling.”

Every time an agent makes a request AgentMinder verifies its identity and enforces least-privilege policies using certificate-based machine identities. It also integrates with existing authorization systems through the [AuthZEN](https://openid.net/wg/authzen/) standard. Its OpenTelemetry-based observability layer records prompts, tool calls and policy decisions to create an audit trail. Broadcom said it uses the technology internally to handle nearly 36 million customer-related and seven million workforce-related API calls daily.

Planned VMware vDefend enhancements will discover agents, models, MCP servers, datastores and tools by inspecting VCF traffic. The software will also identify unauthorized “shadow AI” activity and use an agentic pipeline to generate intrusion detection and prevention signatures. Forthcoming Avi Load Balancer features will inspect agent transactions for tool misuse, remote code execution, file injection and sensitive data exfiltration.

“Security is the middle name in agentic AI,” said Umesh Mahajan, vice president and general manager of Broadcom’s Application Networking and Security Division.

TrueSource extends the security strategy to software supply chains. It combines Spring Enterprise, TrueSource Trusted Artifacts and TrueSource Data Services. Trusted Artifacts adds clean-room builds for the broader Java, Python and Node.js ecosystems and hardened Bitnami container images. Data Services covers PostgreSQL, RabbitMQ, MySQL and Valkey.

Broadcom uses frontier models to scan Spring and more than 5,000 libraries in its dependency tree, but engineers review the fixes and contribute them upstream. “We are remediating not around maintainers, but with the maintainers,” Padmanabhan said. All three TrueSource offerings are available under tiered site licenses. Pricing was not disclosed.

##### Image: SiliconANGLE/ChatGPT

# A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. **Join theCUBE’s Alumni Trust Network**, where technology leaders connect, share intelligence and create opportunities.

**15M+ viewers of theCUBE videos**, powering conversations across AI, cloud, cybersecurity and more** 11.4k+ theCUBE alumni**— Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network

### Are you an AWS customer? Support SiliconANGLE financially by buying your AWS services from our Marketplace portal page and links: [https://siliconangle.com/aws-marketplace/](https://siliconangle.com/aws-marketplace/)

**About SiliconANGLE Media**

[SiliconANGLE](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fsiliconangle.com%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=SiliconANGLE&index=9&md5=646b1b564e2259100a2b8638aab0a552),

[theCUBE Network](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.thecube.net%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=theCUBE+Network&index=10&md5=7de2a85f95ab4a4a495cede20b8cb1da),

[theCUBE Research](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fthecuberesearch.com%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=theCUBE+Research&index=11&md5=7bb33676722925eb57d588ec343e4f6f),

[CUBE365](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.cube365.net%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=CUBE365&index=12&md5=d310fb35919714e66ad8d42c9c0c1bc6),

[theCUBE AI](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.thecubeai.com%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=theCUBE+AI&index=13&md5=b8b98472f8071b23ebb10ab9a8dd0683)and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.
