Security Domains Digest

AI Runtime Security & Agentic Zero Trust

AI Runtime Security & Agentic Zero Trust

Key Questions

What is Google Agent Identity based on?

Google Agent Identity uses SPIFFE standards to provide secure identity for AI agents. This approach addresses gaps in traditional identity systems for non-human entities.

What endpoint coverage gap was reported by Axonius and Ponemon?

The report found a 12.7% gap in endpoint coverage across organizations. This highlights challenges in securing the full attack surface for AI workloads.

Which companies did Cisco acquire to address non-human identities?

Cisco acquired Astrix and WideField to strengthen its NHI capabilities. These moves support better governance of machine and agent identities.

What challenges do federal agencies face with AI agents in zero trust?

Agencies handle up to 7.4 million authentication events daily from AI agents. Identity lifecycle management remains a major gap for these dynamic entities.

What new platform did ModelCop launch?

ModelCop released an identity-first security platform targeting the $25B machine identity market. It focuses on AI agents and non-human identities.

What is the confused deputy problem in agentic AI?

It occurs when AI agents receive excessive authority and act on unintended instructions. Solutions include intent-based controls and metadata governance at the data layer.

What acquisition did Barracuda announce for identity management?

Barracuda acquired Evo Security to enhance MSP support for human and non-human identities. This expands BarracudaONE with advanced IAM features.

What regulation is California SB 53 introducing?

SB 53 imposes new requirements on developers of advanced AI systems starting in 2026. It focuses on transparency, risk assessment, and security obligations.

Most active domain. Key developments: Google Agent Identity (SPIFFE-based), Axonius/Ponemon endpoint coverage gap (12.7%), Cisco NHI acquisitions (Astrix, WideField). Federal zero trust challenges with AI agents (7.4M auth events/day). Identity Lifecycle Management gap for AI agents. CoSAI framework. Renown Health case study. NetApp zero trust for AI agents. Zscaler CISO on AI adversaries. Practical deep-dive on confused deputy problem. New: Permiso Risk Score Engine, BeyondTrust NHI Governance module, ModelCop platform, Vectogate dual-layer governance, Keeper Security $225M ARR with 150:1 NHI ratio, California SB 53 AI regulation, 'The AI security paradox' article, HPC AI workloads runtime security, Practical Zero Trust architecture guide with Entra ID for UK SMEs, 'AI-Powered Cyber Warfare and the Evolution of Zero Trust' study. New: Practical guide to implementing AI securely (channeling users, browser AI risks, mobile enrollment, context ingestion, agent authority limits). New: 'Securing AI - Developing an Encryption Service for Agentic Workflows' details derived-key encryption with sidecar deployment for agentic dataflows. New: Barracuda acquires Evo Security to enhance MSP identity management for human and non-human identities. New: NetApp CPO argues zero trust must extend to data layer for agentic AI, using metadata for continuous governance—reinforcing the confused deputy problem and intent-based controls. New: Identity news roundup covers BeyondTrust NHI Governance module, Delinea FedRAMP ATO, and WitnessAI NER-D for AI identity incident detection.

Sources (15)
Updated Jul 12, 2026
What is Google Agent Identity based on? - Security Domains Digest | NBot | nbot.ai