Summary is AI-generated, newsdesk-reviewed
  • Rubrik announces AI-based Rubrik Agent Identity, enhancing agent access and permission management.
  • Agent Identity mitigates operational vulnerabilities, offering just-in-time permissions for enhanced security.
  • New capabilities harden agentic identity posture, integrating with Okta and Microsoft Entra ID.

At the Black Hat Conference today, Rubrik introduced Rubrik Agent Identity, an innovative AI-driven solution crafted to oversee and regulate AI agents' access and privileges. This comes as a strategic response to a major challenge in the deployment of enterprise AI agents.

The deployment of AI agents is advancing swiftly, capable of performing intricate, automated tasks throughout SaaS applications, databases, and APIs rapidly and extensively. However, many organizations struggle to manage and observe agent access and actions effectively at the necessary scale. Rubrik Agent Identity is created to address these operational vulnerabilities caused by agent identities. It empowers companies to monitor each agent and model context protocol (MCP) in real-time using AI and to provide just-in-time permissions for each tool call.

Redefining Traditional Security Models

"Agents are no longer just synthesizing information; they are acting on behalf of employees, requiring access models originally built for humans. Static credentials were never designed for autonomous actors," stated Dev Rishi, General Manager of AI at Rubrik. “Agent Identity permits enterprises to dictate agent actions and enforces controls per tool call, at the point of action, using brief, focused access and no static permissions.”

Modern AI has given rise to an unmonitored "shadow workforce," which can bypass traditional security barriers. These systems often depend on broad, static credentials, meaning a single compromised agent can lead to systemic destructive outcomes without detection.

Challenges Posed by Single Compromised Agents

Complementing Rubrik’s SAGE governance framework, it extends four key pillars

Rubrik Zero Labs reports that 86% of IT and security leaders worldwide expect AI agents will soon surpass their organizations' security barriers, with only 23% having comprehensive visibility over the agents in their environments. Rubrik Agent Identity, as part of the Rubrik Agent Cloud platform, implements a "Govern, Control, and Prove" structure throughout the agent lifecycle. Complementing Rubrik’s SAGE governance framework, it extends four key pillars:

  • Agent Observability: Real-time monitoring of each agent and MCP.
  • Agent Identity: Speedy and scalable access control per tool call through refined AI.
  • Agent Runtime Security: Enforcement of SAGE governance policies to detect real-time agent errors.
  • Agent Rewind: Quick reversal of agent-induced errors.

Enhancing Agentic Identity Security

This new architecture incorporates vital features to improve enterprises’ agentic identity security stance:

  • Building an Agent Identity Inventory: Discover and catalog all AI agents, MCPs, skills, and plugins to eliminate shadow AI.
  • Delegating Least-Privilege Access: Scoping access per user and group to specific MCP servers and tools using existing identity structures.
  • Enforcing with Just-In-Time Tokens: Removing standing permissions by minting short-lived tokens per tool call.

Operational Impact Mitigation

To mitigate potential harmful actions, every MCP tool call undergoes three checkpoints before execution:

  • Behavioral Analysis: Evaluation of tool calls, context, input parameters, and potential consequences.
  • Access Policy Enforcement: Verification of runtime security policies with SAGE context at the infrastructure layer.
  • Identity Verification: Authentication of agent sessions with tokens tailored for single tool calls.

If unauthorized actions are attempted, like unauthorized modifications, the transaction is blocked immediately. Unexpected behaviors are countered with Agent Rewind, addressing the concern of 88% of leaders about recovery times as agentic threats prove challenging.

Rubrik Agent Identity integrates with Okta and Microsoft Entra ID, expanding current enterprise identities to include autonomous machine actions without new directories. Through the MCP Gateway, comprehensive security checkpoints are provided for all API-based and MCP resources within an enterprise, thereby advancing Rubrik’s commitment to delivering Agentic Cyber Resilience in an era of advanced AI-powered attacks.

In case you missed it

Enhancing Security At Lincoln's Inn With KeyWatcher
Enhancing Security At Lincoln's Inn With KeyWatcher

The Honourable Society of Lincoln’s Inn is one of the four Inns of Court and operates as an active and thriving society of lawyers, sprawling across 11 acres in central Londo...

How Are New Technologies Reshaping Casino Surveillance And Security?
How Are New Technologies Reshaping Casino Surveillance And Security?

Casinos are tasked with monitoring vast gaming floors, cashier cages, and access points. The market for casino security and surveillance demands software and hardware that provide...

ASSA ABLOY Showcases At GSX 2026 In Atlanta
ASSA ABLOY Showcases At GSX 2026 In Atlanta

ASSA ABLOY will be exhibiting at Global Security Exchange (GSX) 2026 from September 14 - 16 at the Georgia World Congress Center in Atlanta, Georgia. The company invites attendees...