Proofpoint Expands Data Security Capabilities across Asia Pacific and Japan as Data Sovereignty Demands Accelerate

Lock

Expanded regional infrastructure, data access governance and compliance mapping help organisations control sensitive data as AI adoption accelerates

  • New local data centre infrastructure and solution capabilities to enhance data security in the age of AI across Singapore, India and Japan.

  • Support compliance efforts by mapping data risk to controls aligned with local regulations, including Singapore's PDPA, India's DPDP Act, Japan's APPI and Australia's Privacy Act.

SINGAPORE — 1 September 2026 — Proofpoint, Inc., a global leader in human and agent cybersecurity, today announced an expansion of its data security capabilities across Asia Pacific and Japan (APJ), helping organisations safeguard data as AI transforms how sensitive information is accessed and used. The expansion brings Proofpoint's unified intent-based data security platform closer to the region to meet increasingly complex local sovereignty and compliance mandates. 

AI adoption is raising the stakes for data governance across APJ. Proofpoint's 2026 AI and Human Risk Landscape report found that 86% of organisations in the APJ region have moved AI assistants beyond pilot and 74% are advancing autonomous agents. Yet 51% describe their security posture as catching up, inconsistent or reactive. As AI systems gain access to more enterprise information, existing data exposure and excessive permissions can be amplified at machine speed. 

"Data loss has always primarily been a people problem; however, as AI adoption accelerates, that problem is compounding within the APJ region. In this new agentic workspace, enterprises are increasingly facing new challenges like shadow AI and AI over-permissioning, which lead to data loss issues that are already challenging to manage," said George Lee, Senior Vice President, Asia Pacific and Japan, at Proofpoint. "That governance gap is arriving at the same time as compliance requirements across the region are getting stronger, which means organisations can no longer treat data protection and regulatory compliance as separate problems. Closing both requires intent-based protection that understands how data is actually being used, paired with local capability to keep that data hosted where regulations require it." 

Proofpoint's expanded APJ capabilities include: 

  • Local Data Centre Expansions: Proofpoint already supports locally delivered Email Data Loss Prevention (DLP), Endpoint Data Loss Prevention (DLP)/Insider Threat Management (ITM) SaaS and Cloud Data Loss Prevention (DLP) capabilities in India, Japan and Australia. Additional capability delivered via local data centre rolling out later this year in India to include DSPM (Data Security Posture Management), and in Japan to include Cloud DLP and DSPM in Q1 2027. 

  • New Local Data Centre: Singapore is planned to support locally delivered capabilities for Email DLP, Endpoint DLP/ITM SaaS and Cloud DLP by the end of this year, with DSPM planned for Q2 2027. 

  • AI Data Access Governance: Security teams can understand which people and AI agents can access sensitive data and remediate excessive access before it is inherited or amplified by AI systems. 

  • Compliance Mapping: Data risk findings can be mapped to recommended controls aligned with APJ regulatory requirements and more than 25 compliance and regulatory frameworks. 

The scale of the challenge is stark: in Proofpoint's latest Voice of the CISO report, 99% of CISOs in India and 91% in Singapore reported experiencing material data loss in the past year, well above the 66% global average, even as DLP tool adoption is near-universal across the region.  

Unlike fragmented approaches that address data and users in isolation, Proofpoint connects data sensitivity with user behaviour and threat context, giving security teams the visibility to focus protection where risk is greatest. Its intent-based unified data security platform brings together Data Security Posture Management (DSPM), Enterprise DLP and Adaptive Email DLP, and Insider Threat Management (ITM), enabling organisations to discover and classify sensitive data, prevent its loss across the channels where people and AI work, and detect risky behaviour by careless, compromised or malicious users.  

This unified breadth gives organisations a direct path from identifying sensitive data exposure to reducing it, as AI adoption accelerates across APJ and data governance requirements grow more complex under regulations including Singapore's PDPA, India's DPDP Act, Japan's APPI and Australia's Privacy Act.  

Availability 

  • Proofpoint currently supports locally delivered Email DLP, Endpoint DLP/ITM SaaS and Cloud DLP in India, with DSPM planned for Q3 2026.  

  • Email DLP, Endpoint DLP/ITM SaaS and Cloud DLP are currently supported locally in Australia. 

  • In Singapore, Email DLP, Endpoint DLP/ITM SaaS and Cloud DLP are planned for Q4 2026 and DSPM for Q2 2027.  

  • Cloud DLP and DSPM are planned for Japan in Q1 2027.  

About Proofpoint, Inc.  

Proofpoint, Inc. is a global leader in human and agent cybersecurity, securing how people, data and AI agents connect across email, cloud and collaboration tools. Proofpoint is a trusted partner to over 80 of the Fortune 100, over 14,000 large enterprises, and millions of smaller organisations in stopping threats, preventing data loss, and building resilience across people and AI workflows. Proofpoint's collaboration, data and AI security platform helps organisations of all sizes protect people, defend data and adopt AI securely and confidently. Learn more at www.proofpoint.com.

Connect with Proofpoint on LinkedIn.

Proofpoint is a registered trademark or tradename of Proofpoint, Inc. in the U.S. and/or other countries. All other trademarks contained herein are the property of their respective owners.