Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
Critical Azure DevOps and Kubernetes Flaw Exposes Cloud Environments
September 30, 2026
Vectra AI Now Monitors Claude AI Chats, Files, and Agent Activity
September 30, 2026
RSA Secures AI Agents, MCP Servers with New Agent ID Platform
September 30, 2026
Home/CyberSecurity News/RSA Secures AI Agents, MCP Servers with New Agent ID Platform
CyberSecurity News

RSA Secures AI Agents, MCP Servers with New Agent ID Platform

Key Takeaways RSA has introduced RSA Agent ID, a new identity security platform designed to manage and secure AI agents within regulated organizations. The platform addresses the growing challenge of...

Emy Elsamnoudy
Emy Elsamnoudy
September 30, 2026 4 Min Read
3 0

Key Takeaways

  • RSA has introduced RSA Agent ID, a new identity security platform designed to manage and secure AI agents within regulated organizations.
  • The platform addresses the growing challenge of “shadow AI” by providing discovery, security, and governance capabilities for AI agents and Model Context Protocol (MCP) servers.
  • It aims to prevent data loss, operational disruption, and regulatory penalties by treating AI agents as distinct identities requiring robust access controls and lifecycle management.
  • RSA Agent ID will be released in modules, with Discover and Secure available in November 2026, and Govern following in the first half of 2027.

RSA Unveils Agent ID Platform to Secure Enterprise AI Agents

RSA has announced the launch of RSA Agent ID, an innovative identity security platform engineered to help regulated organizations identify, secure, and manage their artificial intelligence (AI) agents. This new offering targets sectors such as financial services, government entities, and critical infrastructure operators, where stringent controls over AI agent access and actions are paramount.

Table Of Content

  • Key Takeaways
  • RSA Unveils Agent ID Platform to Secure Enterprise AI Agents
  • Addressing the Risks of Shadow AI
  • What You Should Do

The platform directly confronts a significant challenge emerging with widespread enterprise AI adoption: AI agents frequently operate with credentials and access to internal systems, performing automated tasks without the rigorous registration, ownership, and access review processes typically applied to human users. RSA emphasizes that AI agents, by virtue of holding credentials and entitlements, should be treated as distinct identities. Organizations often struggle with the sheer scale of identifying, assigning ownership to, and revoking access for every deployed agent.

This issue is projected to escalate dramatically. Gartner anticipates that by 2028, a typical Global Fortune 500 enterprise could be managing approximately 150,000 AI agents, a stark increase from fewer than 15 in 2025. Compounding this, research cited by RSA indicates that only 13% of organizations feel adequately prepared with the necessary governance for AI agents. This gap contributes to “shadow AI”—AI tools and agents operating outside approved security, compliance, and IT frameworks—a major concern for organizational security.

Addressing the Risks of Shadow AI

RSA’s solution brief states that incidents stemming from shadow AI can lead to severe consequences, including data breaches, operational disruptions, significant regulatory fines, and elevated breach recovery costs. The average cost of a security incident involving shadow AI is estimated at $5.39 million, exceeding the average data breach cost by approximately $400,000.

For highly regulated sectors like banking, public administration, and critical infrastructure, an unmanaged AI agent poses substantial risks. Such an agent could potentially access sensitive customer data, initiate financial transactions, exploit privileged cloud credentials, or interact with classified government systems. RSA asserts that these environments demand more robust controls than a cloud-only model can typically provide.

RSA Agent ID is available either as a unified platform or through three distinct modules:

Module Function Key Benefits
Discover Identifies AI agents and MCP servers; facilitates owner assignment, risk tiering, and lifecycle status tracking. Enhanced visibility, precise risk identification, and comprehensive asset tracking.
Secure Enforces policies and mandates human approval for high-risk actions performed by agents. Prevention of unauthorized actions and reduction of overall security risks.
Govern Manages access reviews, automates lifecycle controls, and supports compliance audits. Improved access control, robust governance, and streamlined compliance.

The RSA Agent ID Discover module is engineered to locate AI agents and Model Context Protocol (MCP) servers across diverse data sources, including identity systems, cloud environments, endpoints, and gateways. It establishes a comprehensive registry for both known and previously unknown agents, assigning a human owner to each and recording its risk tier and lifecycle status.

RSA Agent ID Secure module applies policy enforcement to agent calls channeled through an AI/MCP Gateway. This gateway can be deployed in an RSA-hosted environment or within a customer’s own cloud, hybrid, or on-premises infrastructure. Organizations gain the ability to mandate authenticated human approval for high-risk agent actions, such as initiating wire transfers, accessing sensitive accounts, interacting with classified data, or handling personally identifiable information.

The RSA Agent ID Govern module focuses on comprehensive lifecycle controls. It facilitates continuous certification, risk-based access reviews, granular entitlement controls, and automated decommissioning processes. This ensures that agents do not retain access privileges beyond their designated tasks or business roles.

RSA offers sovereign control, allowing customers to dictate the deployment location of the gateway and where policy decisions are made. This ensures that enforcement actions and the generation of evidence remain within customer-controlled environments. RSA released a platform that generates tamper-evident records of agent actions, access decisions, and gateway calls. This evidence can be streamed to SIEM platforms and is mapped against 10 compliance frameworks, including NIST AI RMF 1.0, ISO/IEC 42001, DORA, and NYDFS Part 500.

RSA Agent ID Discover and Secure are slated for general availability on November 16, 2026. The RSA Agent ID Govern module is expected to become generally available during the first half of 2027.

What You Should Do

  • Inventory AI Agents: Begin identifying all AI agents operating within your organization, including those in shadow IT environments. Document their purpose, access privileges, and data interactions.
  • Establish Ownership: Assign a clear human owner to each AI agent, responsible for its lifecycle, security, and compliance.
  • Implement Access Controls: Apply robust identity and access management (IAM) principles to AI agents, similar to human users. Grant least privilege and regularly review entitlements.
  • Define Policy for High-Risk Actions: Develop and enforce policies requiring human oversight and approval for AI agent actions deemed high-risk or sensitive.
  • Plan for Lifecycle Management: Establish processes for the secure provisioning, ongoing management, and timely decommissioning of AI agents, ensuring access is revoked when no longer needed.
  • Monitor and Audit: Continuously monitor AI agent activities for anomalous behavior and ensure audit trails are captured and integrated into your SIEM for compliance and incident response.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

BreachSecurity

Share Article

Emy Elsamnoudy

Emy Elsamnoudy

Emy is a cybersecurity analyst and reporter specializing in threat hunting, defense strategies, and industry trends. With expertise in proactive security measures, Emily covers the tools and techniques organizations use to detect and prevent cyber attacks. She is a regular speaker at security conferences and has contributed to industry reports on threat intelligence and security operations. Emily's reporting focuses on helping organizations improve their security posture through practical, actionable insights.

Previous Post

RATHat Android Malware Leverages Gemini AI for Device Takeover

Next Post

Vectra AI Now Monitors Claude AI Chats, Files, and Agent Activity

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
AI Agent Discovers Critical Linux Kernel Vulnerability CVE-2023-XXXX
September 30, 2026
Critical RCE in Unsloth Studio Lets Malicious Hugging Face Models Execute Code
September 30, 2026
Fortinet discovers SectopRAT variant in trojanized Windows software
September 30, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
David kimber
David kimber
Jennifer sherman
Jennifer sherman
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Released to Detect MongoDB Vulnerability(CVE-2025-14847)

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us