Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
One of the world’s poorest countries spent 0 million on a cable car system that nobody uses, just before the president fled the country

One of the world’s poorest countries spent $170 million on a cable car system that nobody uses, just before the president fled the country

8 August 2026
We Are Renting Our Brains, And Nobody Reads The Lease

We Are Renting Our Brains, And Nobody Reads The Lease

8 August 2026
The Hugging Face hack is a PR crisis that’s costing OpenAI millions

The Hugging Face hack is a PR crisis that’s costing OpenAI millions

8 August 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » Agentic AI Is Breaking Security’s Human Assumptions
Innovation

Agentic AI Is Breaking Security’s Human Assumptions

Press RoomBy Press Room8 August 20266 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
Agentic AI Is Breaking Security’s Human Assumptions

AI agents with legitimate credentials are increasingly making hundreds or thousands of consequential decisions before anyone notices, something that security teams have not really planned for. That problem was at the center of a Black Hat AI Summit panel this week, where Matthew Martin, chief information security and privacy officer at Western Carolina University, Ron Keesing, former chief AI officer at Leidos and now a consultant at Keesing LLC, and Forrester principal analyst Jess Burn explained how autonomous agents are changing security work.

The panel kept returning to an uncomfortable point that while some agentic AI risks are new, most of the issues are security problems that companies never fully fixed.

“I was really adamant that all this is doing is exposing all the bad security we’ve had for a very long time,” Martin said. “What really started changing my mind about this was the whole Hugging Face incident.”

In the past few weeks, new revelations in the OpenAI Hugging Face security breach have shown that agents are able to take advantage of system weaknesses to move at speeds that humans are unable to properly address. In instances where these agents are acting on behalf of security professionals, rather than malicious invaders, this is actually troublesome as agents are now escaping the bounds of their constraints and potentially causing more harm than good.

That leaves defenders with a harder question than whether an agent had permission to act. They have to decide when a chain of legitimate looking actions becomes dangerous.

“One of the key questions for me now is trying to figure out, for example, how do we detect good agent behavior versus bad agent behavior?” Martin said. “Being able to do that in an automated way is fundamentally different from what we’ve done before.”

Identity Security Was Designed Around People

Corporate identity systems were built for human users. A person can be fired, prosecuted or asked why they accessed a sensitive file. An AI agent has no comparable sense of consequence. Keesing said that difference cuts into assumptions embedded deep in identity management.

“We actually want attribution,” he said. “We want people to understand that there are rules and there are consequences for breaking the rules.”

That deterrence model makes sense for employees, but it makes far less sense for software and autonomous agents acting on their own behalf.

“Agents don’t face that deterrence factor that’s built into a lot of reasons why we architect the way we do,” Keesing said.

Speed presents another problem. Most identity monitoring systems assume a pace of human behavior. An employee might generate a limited number of access decisions that matter during a workday. An agent may generate hundreds or thousands. It can create other agents and multiply that activity again.

“We’ve built identity management practices, identity monitoring practices, around the speed with which human beings act,” Keesing said. “The time scales are completely different when you’re talking about machines.”

Martin pushed the idea further. Companies may eventually need something resembling a personnel function for software workers.

“There’s got to be like an HR for AI agents where we can sort of manage them in the similar way that we do humans,” he said.

That could mean assigning every agent a role, an owner, a defined set of permissions and a clear point at which those permissions expire. The concept sounds unusual only if companies keep thinking of agents as software features rather than actors performing work.

AI Security Vendors Face An Increasingly Difficult Sales Pitch

AI security startups are multiplying, but Martin questioned whether CISOs need another console and whether the vendors can properly restrain and control them unless in corporate systems.

The panel made the point that buying agent monitoring software does little good if its alerts never connect with the identity, network and application signals the security operations center already watches.

Martin said the calculation becomes especially difficult for security leaders with small teams and tight budgets.

“It’s not just, is there a tool and do I have a budget to buy that tool, but then do I have the budget resources to actually do anything with it?” he said. “I think the other side of that that’s really important is even if you can afford some of these cool new tools for agentic monitoring, just deploying those tools is not going to be enough for you either.”

One answer may be architectural rather than product based.

Keesing argued that organizations should think carefully before allowing agents to interact directly with core systems of record. Instead, they may need a separate data layer above those systems where agents can operate with less chance of damaging or exposing the original records.

“That data layer is a critical point of insulation,” he said.

The implication is difficult for vendors hoping to sell AI security as a new standalone category. Much of the hard work may still sit in old disciplines such as identity, data architecture, application security and basic operational discipline.

The skills problem is posing just as much of a challenge as the technology.

“The knowledge right now that’s required to secure agentic AI is changing faster than most organizations can write job descriptions correctly,” Burn said.

Martin does not think smaller organizations should chase narrow credentials for technologies that may look different six months from now. He would rather hire people who are curious enough to keep learning.

“If I can find somebody who is super passionate about it and willing to put in the time to research and learn and go play around with it, that’s the people I want on my team,” he said.

Large companies have more room to specialize. Martin expects some of them to build AI security groups resembling application security teams, staffed with people who understand AI but still know the basics of access management, APIs, data flows and secure engineering.

More critically, technical fluency is only part of the job, especially when the state of the art for agentic systems continues to evolve. Someone has to recognize when the machine is wrong.

“I think judgment has been a word that we’ve been talking about a lot right now,” Martin said. “If you don’t know whether something is correct or not, poor decisions could be made.”

Keesing sees another shift coming inside security teams, with more time spent attacking their own systems before somebody else does.

“We’re an organization that’s just continuously red teaming everything we do and every public facing aspect and attacking ourselves and then remediating those vulnerabilities before anyone attacks us,” he said.

AI has lowered the skill barrier for attackers. Martin noted that flaws once written off as difficult to exploit may no longer deserve that comfort.

“Things that we could have previously said, not that big a deal, it’d be really wicked, it would take somebody very talented to take care of that, and we’re not a big target, so probably okay, versus now that’s not the case,” he said.

agentic AI CISO Hugging Face leidos Matthew Martin openAI Ron Keesing security Western Carolina University
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

We Are Renting Our Brains, And Nobody Reads The Lease

We Are Renting Our Brains, And Nobody Reads The Lease

8 August 2026
The Hugging Face hack is a PR crisis that’s costing OpenAI millions

The Hugging Face hack is a PR crisis that’s costing OpenAI millions

8 August 2026
Most Enterprises Pay Needless Premiums For IT Sovereignty — Do You?

Most Enterprises Pay Needless Premiums For IT Sovereignty — Do You?

7 August 2026
2 ‘Absent-Minded’ Habits Of Highly Intelligent People, By A Psychologist

2 ‘Absent-Minded’ Habits Of Highly Intelligent People, By A Psychologist

7 August 2026
Galaxy Z Fold8 Ultra Records, Qualcomm’s New 8 Elite, Pixel 11 Pro Specs

Galaxy Z Fold8 Ultra Records, Qualcomm’s New 8 Elite, Pixel 11 Pro Specs

7 August 2026
iPhone 18 Pro Price Rise, iCloud Under Attack, MacBook Neo Weaknesses

iPhone 18 Pro Price Rise, iCloud Under Attack, MacBook Neo Weaknesses

7 August 2026
Don't Miss
Trump’s Tariffs Will Make AI Data Centers More Expensive

Trump’s Tariffs Will Make AI Data Centers More Expensive

By Press Room4 April 2025

Donald Trump’s administration has gone all-in on AI: A day after his inauguration, the newly-elected…

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

27 December 2024
Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

22 October 2024
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
Trump tries again to fire Fed governor Lisa Cook, renewing battle over central bank independence

Trump tries again to fire Fed governor Lisa Cook, renewing battle over central bank independence

8 August 20261 Views
Most Enterprises Pay Needless Premiums For IT Sovereignty — Do You?

Most Enterprises Pay Needless Premiums For IT Sovereignty — Do You?

7 August 20261 Views
Meet the 82-year-old Kentucky grandma who turned down  million to turn her farm into data centers

Meet the 82-year-old Kentucky grandma who turned down $26 million to turn her farm into data centers

7 August 20261 Views
2 ‘Absent-Minded’ Habits Of Highly Intelligent People, By A Psychologist

2 ‘Absent-Minded’ Habits Of Highly Intelligent People, By A Psychologist

7 August 20261 Views

Recent Posts

  • One of the world’s poorest countries spent $170 million on a cable car system that nobody uses, just before the president fled the country
  • We Are Renting Our Brains, And Nobody Reads The Lease
  • The Hugging Face hack is a PR crisis that’s costing OpenAI millions
  • Agentic AI Is Breaking Security’s Human Assumptions
  • Trump tries again to fire Fed governor Lisa Cook, renewing battle over central bank independence

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
One of the world’s poorest countries spent 0 million on a cable car system that nobody uses, just before the president fled the country

One of the world’s poorest countries spent $170 million on a cable car system that nobody uses, just before the president fled the country

8 August 2026
We Are Renting Our Brains, And Nobody Reads The Lease

We Are Renting Our Brains, And Nobody Reads The Lease

8 August 2026
The Hugging Face hack is a PR crisis that’s costing OpenAI millions

The Hugging Face hack is a PR crisis that’s costing OpenAI millions

8 August 2026
Most Popular
Agentic AI Is Breaking Security’s Human Assumptions

Agentic AI Is Breaking Security’s Human Assumptions

8 August 20261 Views
Trump tries again to fire Fed governor Lisa Cook, renewing battle over central bank independence

Trump tries again to fire Fed governor Lisa Cook, renewing battle over central bank independence

8 August 20261 Views
Most Enterprises Pay Needless Premiums For IT Sovereignty — Do You?

Most Enterprises Pay Needless Premiums For IT Sovereignty — Do You?

7 August 20261 Views

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.