AI agent identity security demands layered defenses, Omdia says

Associated Writers

AI Agent Identity Security Under Scrutiny as Consolidation Takes Shape

The emergence of AI agent identity security is placing significant demands on consolidated platforms to safeguard an expanding array of machine identities. This trend is highlighted by Palo Alto Networks Inc.’s recent acquisition of CyberArk Software Ltd., which underscores a broader consolidation trajectory within the identity security sector.

In a notable move, Okta Inc. has introduced an AI agent runtime gateway and has formed the Blueprint Alliance alongside Amazon Web Services Inc. and CrowdStrike Holdings Inc. However, despite these advancements, many enterprises express uncertainty regarding the origins of potential agent attacks and which security layers should respond to these threats, as noted by Todd Thiemann, principal analyst specializing in identity and access management and data security at Omdia, a division of Informa TechTarget Inc.

Thiemann conducted a survey asking 400 professionals about the primary barriers they face in implementing identity security for AI agents. According to him, the predominant response was confusion and uncertainty surrounding the sources of potential attacks. “I asked about 400 people, ‘What’s the primary inhibitor for you implementing identity security for AI agents?’ The number one answer that came back was basically confusion and also an uncertainty about where the attacks are going to come from,” Thiemann remarked.

During an interview with theCUBE’s Krista Case and co-host Rebecca Knight at the Oktane event, Thiemann elaborated on why AI agent identity security necessitates coordinated controls across various layers of the technology stack. His insights reveal that security leaders are divided on which platform should take the lead in managing AI agent identity security.

Challenges in Defining Responsibility for AI Agent Identity Security

In Omdia’s survey, Thiemann asked security leaders which platform should be responsible for AI agent identity security. The most common response was that it should be handled by their data security platform—represented by Palo Alto Networks and its acquisition of CyberArk. The second most popular response pointed to existing identity platforms.

The Blueprint Alliance aims to standardize gateway functions such as authentication, authorization, and visibility. Nonetheless, data security and associated risks still necessitate controls from multiple providers, which can complicate policy coordination for enterprises and create potential gaps in security measures. Thus, Thiemann emphasizes a ‘defense in depth’ strategy rather than relying on a single dominant platform.

Thiemann characterized the current landscape for AI agents as somewhat chaotic, describing it as “a bit of the Wild West— a lot of change happening.” He underscored the importance of ongoing adaptation in addressing the evolving challenges surrounding AI agent identity security.

For further insights, the complete video interview is available as part of SiliconANGLE’s and theCUBE’s coverage of Oktane.

[gspeech type=full]

Share This Article
Leave a comment