Rubrik Agent Identity secures agentic actions in real-time
Rubrik, the security and AI operations company, has announced Rubrik Agent Identity, an AI-based solution to manage and control AI agents' access and permissions.
Rubrik explained that AI agent deployments can execute complex, automated workflows across software-as-a-service (SaaS) applications, databases, and application programming interfaces (APIs) at unprecedented speed and scale. At the same time, most organisations lack the capability to monitor and control agent access and actions at the necessary speed and scale.
Rubrik Agent Identity is designed to reduce operational vulnerabilities that stem from agent identities by allowing customers to both monitor every agent and Model Context Protocol (MCP) server at runtime using AI, and to deliver just-in-time permissions per tool call.
"Agents are no longer just synthesising information, they are acting on behalf of employees, and the access models we built for humans. Static credentials were never designed for autonomous actors," said Dev Rishi, GM of AI at Rubrik.
"Agent Identity lets enterprises decide who can do what with agents and enforces it per tool call, at the moment of action, with scoped, short-lived access and no standing permissions. With Rubrik Agent Cloud, enterprises can govern agent activity, enforce identity-aware policies, and apply semantic policy evaluation before sensitive actions execute. By using audit logs to prove what happened, agent adoption can scale with confidence, avoiding potential blast radius."
Blast radius refers to the extent of damage resulting from an incident.
Modern AI creates an unmonitored "shadow workforce" that bypasses traditional security boundaries, Rubrik said. Because these systems often rely on broad, static credentials, a single compromised agent can trigger destructive, system-wide actions with zero visibility.
According to recent data from Rubrik Zero Labs, 86% of global IT and security leaders expect AI agents to outpace their organisation's security guardrails within the next year, while only 23% report full visibility into the agents operating in their environments.
Rubrik Agent Identity, delivered as an expansion of the Rubrik Agent Cloud platform, establishes a unified Govern, Control, and Prove model across the entire agent lifecycle. The new solution operates alongside Rubrik's established SAGE governance framework.
Rubrik Agent Identity integrates seamlessly with Okta and Microsoft Entra ID. An MCP Gateway provides a unified security checkpoint for all API-based and MCP resources across the enterprise.
Comments
Post a Comment