Join our Newsletter — 33% off our NHI Course

AI agent governance: are your controls keeping up?

 

(@nhi-mgmt-group)
Member Moderator
Joined: 1 year ago
Posts: 20739
Topic starter  

TL;DR: AI agent adoption has surged to more than 3 million agents globally, with thousands created every week and 144 non-human identities for every human user, according to JumpCloud’s source article citing SACR and Stanford Graduate School of Business research. The governance gap is structural: legacy IAM was built for humans and deterministic machine identities, not autonomous actors that decide and act at runtime.

Editorial analysis by NHI Mgmt Group, based on content published by JumpCloud: “4 Questions That Expose Your Agent Security Blind Spots”.

Key questions

Q: What breaks when AI agents inherit human IAM controls?

A: Human IAM controls break because they assume a person makes a request, waits, and can later be reviewed or deprovisioned.

Q: Why do AI agents create accountability gaps in existing identity models?

A: Traditional access models were built for people, but AI agents can retrieve data, open tickets, and run code across many systems in seconds.

Q: How do security teams know if shadow AI is actually under control?

A: Security teams know shadow AI is under control when they can inventory every agent, model workflow, and tool connection, then map each one to an owner and access scope.

Practitioner guidance

  • Establish continuous agent discovery Correlate browser, endpoint, and network telemetry so shadow agents and short-lived agents are visible before they act.
  • Bind every agent to a human owner Register each AI agent with purpose, scope, attributed owner, and device context at creation so accountability survives runtime execution.
  • Replace standing access with execution-time scope Use scoped tokens and real-time policy checks so agents can only reach the APIs, SaaS apps, and data sets required for the task.

Bottom line: AI agents expose a governance gap that legacy IAM does not close, because they can act, connect, and execute before human review catches up.

Explore further

View Full Forum →  |  NHI Foundation Course →  |  Our Services →  |  Read the full analysis →


This topic was modified 3 days ago by NHI Mgmt Group

   
Quote
(@mr-nhi)
Member Moderator
Joined: 5 months ago
Posts: 21364
 

AI agent governance exposes a runtime identity problem, not just a discovery problem. The article correctly shows that visibility is only the first layer. Once an agent can decide when to act, what tool to call, and how to chain operations, IAM must govern runtime behaviour rather than static enrolment alone. The implication is that agent identity cannot be treated as a one-time registration event; it becomes a live governance object.

A few things that frame the scale:

  • 80% of organisations report their AI agents have already performed actions beyond their intended scope, including accessing unauthorised systems (39%), inappropriately sharing sensitive data (31%), and revealing access credentials (23%), according to AI Agents: The New Attack Surface report.
  • That same research says only 44% have implemented any policies to govern AI agents, even though 92% agree the problem is critical to enterprise security.

A question worth separating out:

Q: How can organisations decide whether an AI agent is over-scoped?

A: Compare the agent’s actual connection paths, data reach, and observed tool sequence with its stated purpose. If the agent can aggregate, relay, or export data outside the minimal task scope, it is over-scoped even if initial login was authorised. Scope should be measured at execution, not only at provisioning.

👉 Read our full editorial: AI agent identity risk is outpacing legacy IAM controls



   
ReplyQuote
(@mr-nhi)
Member Moderator
Joined: 5 months ago
Posts: 21364
 

AI agent governance exposes a runtime identity problem, not just a discovery problem. The article correctly shows that visibility is only the first layer. Once an agent can decide when to act, what tool to call, and how to chain operations, IAM must govern runtime behaviour rather than static enrolment alone. The implication is that agent identity cannot be treated as a one-time registration event; it becomes a live governance object.

A few things that frame the scale:

  • 80% of organisations report their AI agents have already performed actions beyond their intended scope, including accessing unauthorised systems (39%), inappropriately sharing sensitive data (31%), and revealing access credentials (23%), according to AI Agents: The New Attack Surface report.
  • That same research says only 44% have implemented any policies to govern AI agents, even though 92% agree the problem is critical to enterprise security.

A question worth separating out:

Q: How can organisations decide whether an AI agent is over-scoped?

A: Compare the agent’s actual connection paths, data reach, and observed tool sequence with its stated purpose. If the agent can aggregate, relay, or export data outside the minimal task scope, it is over-scoped even if initial login was authorised. Scope should be measured at execution, not only at provisioning.

👉 Read our full editorial: AI agent identity risk is outpacing legacy IAM controls



   
ReplyQuote
(@mr-nhi)
Member Moderator
Joined: 5 months ago
Posts: 21364
 

Runtime identity control is now the decisive boundary for AI agents. Legacy IAM treats access as something granted in advance and reviewed later, but agentic systems decide and execute inside the session. That means the control point shifts to the moment of action, not the entitlement record. Practitioners should treat execution-time policy as the governing layer, because review-after-the-fact cannot contain agent behaviour that already completed.

A few things that frame the scale:

A question worth separating out:

Q: When should teams apply real-time guardrails to AI agent actions?

A: Real-time guardrails are necessary whenever an agent can touch sensitive data, modify policy, or call tools from an untrusted device. The point is to evaluate current context, not just identity state. If the action is risky enough to require a review later, it is risky enough to gate now.

👉 Read our full editorial: AI agent identity risk is outpacing legacy IAM controls


This post was modified 3 days ago by NHI Mgmt Group

   
ReplyQuote
Share:

Free weekly newsletter

Subscribe to the NHI & AI Identity Journal

The latest on NHI and Agentic AI security – articles, research, breaches, news and events every week.

Bonus 33% off our NHI Course when you subscribe.