Rubrik Agent Identity Secures AI Agents with Per-Tool-Call Access Control at Black Hat

3 Sources

Share

Rubrik unveiled its AI agent identity management solution at the Black Hat conference in Las Vegas, addressing the growing security challenge of autonomous AI agents. The platform monitors every agent and Model Context Protocol server at runtime while granting just-in-time permissions per tool call, eliminating standing permissions that expose enterprises to risk.

Rubrik Launches Agent Identity to Secure and Govern AI Agents

Rubrik

1

announced Rubrik Agent Identity at the Black Hat conference in Las Vegas, introducing an AI agent identity management solution designed to control what AI agents can do by granting access one tool call at a time. The service expands Rubrik Agent Cloud, the agent governance platform the company launched in October and made generally available for Anthropic's Claude in June

1

. The announcement targets a critical vulnerability in enterprise deployments where agents typically inherit broad, standing permissions built for human employees, creating risks when compromised or misbehaving agents act destructively across software-as-a-service applications, databases and APIs.

Source: SiliconANGLE

Source: SiliconANGLE

The Growing Challenge of AI Agent Security

According to research from Rubrik Zero Labs, 86% of global IT and security leaders expect AI agents to outpace their organization's security guardrails within the next year

1

2

. More concerning, only 23% say they have full visibility into the agents already running in their environments

2

. Dev Rishi, general manager of AI at Rubrik, emphasized the urgency: "Agents are no longer just synthesizing information, they are acting on the enterprise on behalf of employees, and the access models we built for humans and static credentials were never designed for autonomous actors."

1

Rubrik frames this as a "shadow workforce" of unmonitored machine identities that operate beyond traditional security perimeters.

How Runtime Monitoring of Agents Works with Per-Tool-Call Access Control

Rubrik Agent Identity operates through four distinct pillars within the Agent Cloud platform: Agent Observability for runtime monitoring of agents and Model Context Protocol servers, Agent Identity for per-tool-call access control using fine-tuned AI, Agent Runtime Security for policy enforcement through SAGE governance, and Agent Rewind to reverse agent actions

2

3

. Customers begin by building an inventory of active agents, MCP servers, skills and plugins to eliminate unmonitored shadow AI

3

. The system then scopes access to specific servers and tools by user and group using On-Behalf-Of federation, which extends existing identity structures rather than replacing them

1

. Standing permissions are eliminated entirely by minting scoped, short-lived tokens for each individual tool call, ensuring access is validated at runtime before execution

3

.

Three-Checkpoint Security Model Enforces Just-in-Time Permissions

Enforcement happens at an MCP gateway where every tool call must clear three distinct checkpoints before execution. First, behavioral analysis occurs where Rubrik's SAGE governance engine semantically evaluates the intent, input parameters and likely operational impact of the request

1

3

. Second, a policy check verifies runtime security policies at the infrastructure layer, enriched with SAGE context. Third, identity verification authenticates the agent session and mints a short-lived token specifically scoped to that single tool call

3

. If an unauthorized action is attempted, such as a write or modification without explicit policy scope, the transaction is immediately blocked before execution. This just-in-time permissions model represents a fundamental shift from traditional least-privilege access approaches designed for human users.

Agent Rewind Addresses Recovery Concerns in Agentic Cyber Resilience

For actions that clear the gateway and still produce unintended consequences, Agent Rewind instantly and precisely reverses an autonomous agent's destructive action

3

. Rubrik describes this feature as the only one of its kind on the market

1

. The capability addresses widespread industry concerns, with 88% of leaders worried about meeting recovery time objectives as agentic threats scale and machine-speed attacks become more sophisticated

1

3

. This recovery mechanism forms a critical component of what Rubrik calls Agentic Cyber Resilience, helping organizations keep pace with threats powered by frontier AI models.

Integration with Enterprise Identity Systems and Strategic Positioning

Rubrik Agent Identity integrates seamlessly with Okta and Microsoft Entra ID, extending existing enterprise identities to autonomous machine actors without requiring new directories

1

2

3

. The MCP Gateway provides a unified security checkpoint for all API-based and Model Context Protocol resources across the enterprise. Rubrik, which now describes itself as "the Security and AI Operations Company," moved into agent tooling following its acquisition of Predibase in a deal worth between $100 million and $500 million in June 2025

1

. Rishi co-founded Predibase and served as its chief executive before joining Rubrik. The company did not disclose pricing or a general availability date for Agent Identity, though the platform establishes a unified 'Govern, Control, and Prove' model across the entire agent lifecycle that positions Rubrik to address the security gaps emerging as enterprises deploy autonomous AI systems at scale.

Today's Top Stories

© 2026 TheOutpost.AI All rights reserved