
Source: Fortune.com
Summary
Companies are struggling to govern the use of AI agents, which are being deployed faster than they can be managed. A recent survey found that 91% of organizations are using AI agents, but only 10% have a clear strategy to manage them. The growing use of shadow AI is exposing gaps in governance, particularly around identity and access management. AI agents are operating with broad, persistent access to critical systems, posing a significant risk to organizations.
Our Reading
The numbers tell one story.
AI agents are being treated as background software, rather than operational actors with real authority. Only 22% of organizations treat AI agents as independent identities, despite 90% reporting suspected or confirmed security incidents involving AI agents. The identity gap is a leadership problem, not just a technical one. Companies need to apply established workforce security disciplines to AI agents, including lifecycle management, continuous monitoring, and just-in-time credentials.
Executives are delegating authority to AI agents without clear governance, creating a risk of poorly governed autonomy.









