Join our Newsletter — 33% off our NHI Course

Notifications
Clear all

AI agent identity at RSAC 2026: what changed for security teams?


(@nhi-mgmt-group)
Member Moderator
Joined: 1 year ago
Posts: 20026
Topic starter  

TL;DR: RSAC 2026 sessions from Cisco, CrowdStrike, Microsoft, and Okta converged on a clear finding: AI agents are already inside enterprises, but most security teams still cannot observe, govern, or baseline them, according to Vorlon. The unresolved problem is not adoption, but action-level identity control and behavioural detection for autonomous systems.

NHIMG editorial — based on content published by Vorlon: agentic security themes from RSAC 2026

By the numbers:

Questions worth separating out

Q: What breaks when AI agents are discovered too late or not at all?

A: When agents are not discovered early, teams cannot assign ownership, set scope, or prove what systems the agent can reach.

Q: Why do AI agents need action-level authorisation instead of resource-level access?

A: Resource-level access tells you what an agent can reach, but not whether its runtime actions match its authorised purpose.

Q: How do security teams know if AI governance is working?

A: Look for evidence that access decisions are reviewable, permissions are revocable, and exceptions are not becoming permanent.

Practitioner guidance

What's in the full article

Vorlon's full article covers the operational detail this post intentionally leaves for the source:

  • Direct session-by-session notes from Cisco, CrowdStrike, Microsoft, and Okta with the specific framing each speaker used
  • The exact examples behind agent discovery, action-level authorization, and MCP supply chain risk
  • The session footnotes and transcript references that support the article’s interpretation
  • The conference context around how enterprise teams are currently talking about AI agent governance

👉 Read Vorlon’s analysis of agentic security themes at RSAC 2026 →

AI agent identity at RSAC 2026: what changed for security teams?

Explore further

View Full Forum →  |  NHI Foundation Course →



   
Quote
(@mr-nhi)
Member Moderator
Joined: 4 months ago
Posts: 19617
 

Discovery is now the control plane for agent governance: the field cannot govern what it has not enumerated. That means inventory is no longer a documentation exercise, but the prerequisite for identity, policy, and response. In practice, discovery has to cover sanctioned, shadow, and embedded agents across all business units.

A few things that frame the scale:

  • Organisations maintain an average of 6 distinct secrets manager instances, creating fragmentation that undermines centralised control, according to The State of Secrets in AppSec.
  • Only 44% of developers are reported to follow security best practices for secrets management, according to The State of Secrets in AppSec.

A question worth separating out:

Q: What is the difference between human access review and AI agent access review?

A: Human access review focuses on stable job roles and periodic entitlement checks. AI agent access review must also account for runtime behaviour, changing integrations, token lifetimes, and delegated actions across SaaS systems. Agents can change what they touch faster than a standard access review cycle expects.

👉 Read our full editorial: Agentic security at RSAC 2026 exposes the identity gap



   
ReplyQuote
Share: