Summary is AI-generated, newsdesk-reviewed
  • Only 33% of enterprises ensure AI agents have least-privilege access despite high confidence.
  • 65% of organizations faced AI agents acting beyond scope; 29% experienced business impact.
  • Governance gaps exist with AI agent deployment, impacting production and customer-facing applications.

Recent research from Cequence Security and Enterprise Management Associates (EMA) reveals a significant governance gap in the deployment of AI agents within enterprises.

Although 94% of IT and security leaders are confident that their AI agents operate within necessary access limits, only 33% have ensured such limits are implemented effectively. The remaining enterprises operate with broad standing permissions that often go unreviewed, leaving them vulnerable to risks. The comprehensive report, titled "Agents Without Guardrails: The Agentic AI Governance Gap in the Enterprise," is now available for download.

Broad Standing Permissions in Practice

The study highlights that the discrepancy between confidence and actual governance is impacting enterprises significantly. Of those surveyed, 65% reported AI agents acting beyond their intended scope, with 29% encountering severe repercussions such as data breaches, financial losses, operational interruptions, or damage to reputation.

Additionally, 36% managed to intercept potential threats before they could cause harm. Alarmingly, only 32% of organizations can swiftly manage deviations using automated processes, while 55% require hours to address issues manually. In a small number of cases, external entities identified problems before the internal systems did.

Challenges in Customer-Facing Applications

Furthermore, only 34% review AI agents' access at the time of a specific action

The investigation underscores that governance mechanisms have not kept up with the fast-paced deployment of agentic AI, revealing flaws at every stage from provisioning to decommissioning. 

Nearly half of the organizations surveyed are already scaling AI across multiple sectors, with 79% running both generative and agentic AI simultaneously. An overwhelming 92% report a surge in AI and bot traffic targeting customer-facing applications and APIs. Furthermore, only 34% review AI agents' access at the time of a specific action, with most relying on outdated policies that allow AI agents to maintain access long after their original tasks conclude.

The Risk of Abandoned AI Initiatives

The research indicates a growing concern around pilot AI agents that never progress to production. Approximately 31% of AI agent projects are halted indefinitely, canceled, or abandoned, often leaving sensitive system credentials exposed without oversight.

Meanwhile, 14% of organizations allow AI agents unrestricted access to external tools and data sources through the Model Context Protocol (MCP), posing additional security risks. Even among those who restrict such access, less than half have dedicated teams to continuously update and review these limitations effectively.

Insights from Industry Experts

Christopher M. Steffen, CISSP, CISA, VP of Research at EMA, commented, “This research shows enterprises have moved well past experimentation with agentic AI right into production, and governance has not kept pace with that shift. The gap isn't a lack of awareness; most organizations have policies in place and express real confidence in them. The gap is between what's written down and what's enforced when an agent takes an action nobody approved. That disconnect shows up most clearly in how organizations authorize agent actions and monitor them once they're live, and it's the reason incidents are happening at a rate the industry hasn't fully reckoned with.”

Shreyans Mehta, Co-founder and CTO at Cequence, noted, “The number that jumped out to me is the 92% being confident in their governance frameworks. Confidence like that is a trap; it's exactly why organizations stop looking for problems, stop investing in monitoring, and let authorization checks lapse until an incident forces the conversation. This is the exact blind spot Cequence is built to close, giving security teams real-time visibility into what AI agents are actually doing and enforcing authorization at the moment an agent acts, not after the fact.”

Attendees interested in gaining deeper insights can participate in the "Agents Without Guardrails" webinar, featuring Christopher M. Steffen from EMA and Randolph Barr, Chief Information Security Officer at Cequence.

In case you missed it

How Are New Technologies Reshaping Casino Surveillance And Security?
How Are New Technologies Reshaping Casino Surveillance And Security?

Casinos are tasked with monitoring vast gaming floors, cashier cages, and access points. The market for casino security and surveillance demands software and hardware that provide...

HID Enhances Mobile Access For Digital Transformation
HID Enhances Mobile Access For Digital Transformation

HID, a pioneer in trusted identity solutions, announces new enhancements that help organizations fast-track their mobile access adoption as part of their broader digital transforma...

Fifth Third Bank Security Strategy With March Networks
Fifth Third Bank Security Strategy With March Networks

The challenge: Fifth Third Bank is one of America’s largest and fastest-growing financial institutions, with more than 1,500 financial centers and approximately 80 high-rise,...