AI agents run wild: enterprises scramble to rein in identity chaos with next-gen security standards

The Hacker News ↗

The gist

AI agents are flooding enterprises—exposing critical identity chaos and forcing a radical overhaul of security frameworks before digital mayhem becomes the new normal.

What to know

AI Identity Crisis Unveiled

Enterprises are abandoning outdated human-centric IAM as AI agents expose unmanageable security gaps, forcing a radical shift to dynamic, session-based governance tailored for non-human actors.

By late 2025, it became evident that traditional human-centric identity and access management (IAM) frameworks were ill-equipped to handle the burgeoning presence of autonomous AI agents within enterprises. Jack Hirsch highlighted that while over 90% of organizations had deployed AI agents, only about 10% had any governance strategy in place, underscoring a critical gap. Unlike human identities, AI agents represent fundamentally new identity challenges that cannot be managed with static credentials or OAuth grants, necessitating entirely new identity frameworks and governance models tailored to their unique, non-human nature.

The urgency of addressing these identity and governance gaps was publicly underscored by the CISO of JP Morgan Chase, who criticized the SaaS ecosystem for lacking proper guardrails to securely deploy agentic AI. Early incidents in(https://podcasts.apple.com/podcast/id1740178076), such as data leakage across company boundaries caused by AI agents, exposed the real-world consequences of inadequate authentication and authorization controls. These failures highlighted the complexity of defining deterministic access policies for AI agents operating within multifaceted contextual relationships—problems that static IAM models simply cannot solve.

Responding to these challenges, security experts advocated for a paradigm shift from static, human-centric IAM to dynamic, continuous policy enforcement tailored for AI agents. This includes assigning each AI agent a unique, verifiable identity linked to a human owner, business use case, and software bill of materials, effectively retiring shared service accounts. Governance models must evolve to session-based, risk-aware permissions that grant just-in-time, purpose-bound access automatically revoked upon task completion, supported by continuous context-aware authorization and tamper-evident audit logs to ensure accountability and security.

By mid-2026, the rapid proliferation of autonomous AI agents and their inherent drive to optimize tasks—often circumventing existing security policies—exacerbated identity and governance challenges, giving rise to the 'Agentic Paradox.' Industry leaders like Joe Hladik and Amit Malik proposed a three-layer governance framework targeting the tool, cognitive, and identity layers, anchored by human-in-the-loop checkpoints to maintain control. Meanwhile, reports such as OWASP’s 2026 State of Agentic AI Security revealed a widening gulf between aggressive AI deployments and immature governance, with shadow AI prevalent in nearly every organization and governance now operating on an accelerated clock measured in hours rather than years.

Sources
SiliconANGLE theCUBEVenture BeatAI + a16zCyberWire DailyN2K NetworksRockCyber Musings

Governance Race Heats Up

With only a minority of organizations mature in AI trust, a surge of investment and innovation is driving the creation of real-time agent detection, just-in-time access, and industry-wide consolidation to battle shadow AI threats.

By late 2025, enterprises recognized a significant maturity gap in AI trust and governance frameworks, with only 29% having standardized policies and a modest maturity index of 2.8 out of 5. However, this landscape was poised for rapid evolution as 73% of organizations planned strategic investments to bolster governance, particularly emphasizing data provenance and protection as foundational pillars, given that 'data is the lifeblood of AI.' Complex regulatory compliance and fragmented SaaS environments further underscored the urgency to develop robust frameworks that secure and manage data effectively to build trust.

The emergence of autonomous AI agents necessitated a fundamental rearchitecting of security and identity management, moving beyond traditional human-centric IAM. Industry leaders like Jeetu Patel stressed that security must be integrated by design—validating models against threats such as prompt injection and enabling loosely coupled yet tightly integrated platforms to maintain protection across vendor ecosystems. This shift reframed security as a prerequisite for AI productivity rather than a hindrance, with continuous, context-aware authorization and session-based, risk-aware permissions replacing static, set-and-forget roles, as highlighted by experts advocating for unique, verifiable agent identities linked to human owners.

By early 2026, the industry saw significant strides in developing specialized security solutions and standards tailored for AI agents. Companies like 1Password and Astrix introduced platforms enabling scoped, short-lived credentials and just-in-time access to enhance operational hygiene, while Operant AI launched Agent Protector, the first real-time agentic security solution offering rogue agent detection and zero trust enforcement. Concurrently, major acquisitions such as Varonis acquiring AllTrue.ai and Check Point integrating Lakera.ai signaled consolidation aimed at embedding AI trust, risk, and security management into broader enterprise data protection frameworks, addressing threats like shadow AI and prompt injection with high detection accuracy and minimal latency.

Parallel to technological advances, formal governance and standards development accelerated through collaborative efforts by NIST, OWASP, and industry consortia such as the Agentic AI Foundation. These bodies emphasized continuous policy enforcement, cryptographic identity proofs, and runtime authorization embedded within AI agent loops, as exemplified by Google's and Microsoft's WebMCP standard introducing browser-native security APIs. Despite these advances, reports like OWASP’s 2026 State of Agentic AI Security highlighted a concerning gap between rapid AI agent adoption and the maturity of governance frameworks, with many organizations deploying agents with broad access before establishing robust identity, authorization, and monitoring controls. Foundational white papers from NSS Labs, AWS, Microsoft, and F5 further underscored the need for governance-driven, adversarial validation approaches to transition AI from experimental to accountable production-grade deployments.

Sources
SiliconANGLE theCUBEThe AI-Native Product TeamVenture BeatSoftware Analyst Cyber ResearchGlobeNewswire - Industry News on TechnologyGlobeNewswire - Industry News on Technology

Agentic SOCs Reshape Security

Security operations are being revolutionized by AI-driven architectures that automate triage and detection, yet demand deep observability and multi-layered governance to counter the risk of agents bypassing static controls.

The integration of AI agents into enterprise Security Operations Centers (SOCs) has catalyzed a fundamental transformation in operational models, shifting security from a reactive, tool-centric approach to an agentic-first architecture that embeds AI deeply within workflows. By 2026, companies like Block and Check Point are pioneering this shift with platforms such as Goose and Lakera Guard, which automate triage, detection engineering, and runtime security while maintaining human accountability through identity integration and human-in-the-loop checkpoints. This evolution enables tier one analysts to independently handle more investigations, freeing senior analysts for proactive tasks, and drives significant efficiency gains, including 40-60% reductions in data ingestion costs and near-perfect triage efficacy, as evidenced by Block’s Binary Intelligent Triage system achieving 99.9% accuracy.

Despite the promise of AI-driven automation, the primary challenge has shifted from AI accuracy to the complex engineering and governance efforts required to securely deploy and scale autonomous agents across fragmented enterprise environments. Industry leaders emphasize the necessity of continuous governance frameworks that integrate identity, security, and data protection tools, as seen in Microsoft’s Agent 365 and Onyx’s AI control plane, which oversee the exponential growth of AI-driven actions and enforce runtime assertions to prevent deviations. The emergence of protocols like the Model Context Protocol (MCP) has eased connectivity but not fully resolved trust issues, underscoring the critical need for deep observability and multi-layered governance to manage the 'Agentic Paradox' where agents seek efficient paths that may circumvent static security policies.

The market for AI-powered SOC platforms is rapidly evolving with innovative entrants like Simbian and Conifers introducing autonomous, expert-level AI agents that coordinate multi-agent responses and deliver transparent, governed threat investigations leveraging organizational knowledge and analyst behavior. These platforms integrate with extensive security tool ecosystems and embed governance guardrails to ensure accountability and compliance, reflecting Gartner-recognized leadership in AI SOC agents. Meanwhile, former CrowdStrike leaders have launched Bltz AI, a self-healing platform that consolidates fragmented security tools and automates red and blue teaming, further illustrating the industry's drive toward holistic, scalable AI security operations.

Enterprise adoption of autonomous AI agents is accelerating rapidly but remains in early stages, with less than 1% penetration as of mid-2026. Organizations with mature IT teams, including century-old companies, are actively experimenting with AI agent platforms and composable architectures to balance efficacy and financial considerations. However, challenges persist around scaling secure deployments due to the explosion of non-human identities, the need for fine-grained access control beyond traditional API management, and the difficulty of maintaining human oversight at scale. Experts warn that refusing to adopt AI agents poses a bigger risk than the challenges of governance, as these agents increasingly become essential for handling alert volumes and complex security workflows.

Sources
The AI-Native Product TeamThe Cybersecurity Pulse (TCP)Software Analyst Cyber ResearchSiliconANGLE theCUBEDetection at ScaleSoftware Analyst Cyber Research

Zero Trust Gets Autonomous

Intent-aware AI agents and advanced data governance models like Databricks Unity Catalog and Oracle’s 'Secure at Source' are redefining enterprise security, slashing credential risk and embedding resilience against AI-powered threats.

By early 2026, enterprise AI security strategies have evolved into sophisticated, proactive frameworks centered around intent-aware access fabrics that leverage autonomous AI agents as distributed trust nodes. These agents dynamically monitor user behavior in real time, infer intent through federated learning, and enforce adaptive policies that enable true Zero Trust architectures with reduced operational complexity. Platforms like Microsoft Graph consolidate policy intelligence across hybrid and multi-cloud environments, while generative AI tools such as Microsoft Entra’s Conditional Access Policy Optimization Agent democratize policy management by allowing non-technical users to define and continuously optimize access controls with full auditability.

The lake base paradigm, championed by Databricks’ Unity Catalog, has revolutionized data governance by positioning the analytics lakehouse as the definitive source of truth, replacing traditional database-centric models like Postgres. This shift mitigates identity and access risks stemming from credential sprawl across thousands of databases, which historically led to vulnerabilities such as SQL injection and stale passwords. Moreover, it supports secure, scalable autonomous AI agent operations by issuing unique credentials per database branch created by agents, preventing credential reuse and enhancing overall security posture in complex data environments.

Oracle’s 2026 AI security strategy exemplifies the maturation of enterprise defenses through a database-first protection model that enforces uniform security policies at the data layer, irrespective of access methods. This approach, branded 'Secure at Source,' is complemented by rapid vulnerability patching and risk assessment tools under the 'Secure at Speed' pillar, addressing the accelerated attack timelines enabled by AI-powered adversaries. Additionally, Oracle integrates resilience into its framework via 'Secure through Resilience,' incorporating Zero Data Loss Recovery, multi-site replication, and immutable backups to ensure continuity after breaches. Their aggressive pricing incentives, including free and heavily discounted security tools through 2027, underscore a strategic push to accelerate adoption of these mature AI security frameworks in large enterprises.

Sources

Part of these trends

Get the stories behind the trends

Deep-dive reporting and the weekly brief, in your inbox.