AI agents are reshaping enterprise identity security, experts say
Security teams built for people are now being asked to govern software that acts like an employee
AI agents are quietly becoming some of the busiest accounts inside enterprise systems, logging in, configuring access and touching sensitive data without ever showing up on a human org chart.
Security teams built for people are now being asked to govern software that acts like an employee but doesn't behave like one.
Autonomous agents act as new forms of digital employees; this implies that companies should be aware of their existence, monitor them, and control them throughout their life cycle.
In conventional identity and access management, the identification and authentication process was static and occurred once per user request. However, agentic systems challenge this approach because now there are continuous requests from software performing actions for the human.
The shift runs both directions. Machine-native interfaces let agents help administer human users' access, troubleshoot problems and support security workflows directly.
That can cut costs and speed up operations, but only when strong guardrails are already in place; without them, efficiency gains turn into new blind spots.
Identity systems developed for humans cannot just be generalised to include machines as well. Agentic businesses require one identity system for human agents as well as machines in order to circumvent the problems posed by tool proliferation that results from using separate systems.
Each agent must have an identifiable human owner, policies, and auditability, as well as audit trails to ensure all actions taken by the agent can be traced back to their owner.
Agents need sufficient access for them to accomplish their tasks, but direct exposure of the agent to credentials or secret keys poses risks that offer no benefits. This problem is solved using just-in-time privileged access where access is brokered on an as-needed basis.
-
Google launches Gemini Omni 1.1 flash with major video creation upgrades
-
Meta eyes major annual spending on Anthropic AI tools: Here’s what to know
-
OpenAI, Nvidia CEOs set to speak at tech-focused G20 meeting: What to expect
-
UK airports hit by major cyberattack: What customers need to know
-
700 OpenAI agents secretly teamed up to hack rival
-
Bill Gates reveals tech industry’s chilling AI secret
-
Russian hackers turn Cursor AI coding tool into cyber weapon, target 7 companies
-
Apple's September 9 invite may leak iPhone 18 Pro camera