3 Sources
[1]
Rubrik unveils Agent Identity to govern AI agents one tool call at a time
Rubrik Inc. today unveiled Rubrik Agent Identity, a service that governs what artificial intelligence agents are allowed to do by granting access one tool call at a time. The company announced the service at the Black Hat conference in Las Vegas. The service is an expansion of Rubrik Agent Cloud, the agent governance platform the company launched in October and made generally available for Anthropic PBC's Claude in June. Agent Identity targets the credential layer beneath those deployments. Agents typically inherit the broad, standing permissions built for human employees, which means a single compromised or misbehaving agent can act destructively across software-as-a-service applications, databases and application programming interfaces before anyone notices. "Agents are no longer just synthesizing information, they are acting on the enterprise on behalf of employees, and the access models we built for humans and static credentials were never designed for autonomous actors," said Dev Rishi, general manager of AI at Rubrik. "Agent Identity lets enterprises decide who can do what with agents and enforces it per tool call, at the moment of action, with scoped, short-lived access and no standing permissions." Rubrik is pitching the problem as a "shadow workforce" of unmonitored machine identities. According to research from Rubrik Zero Labs, 86% of global information technology and security leaders expect AI agents to outpace their organization's security guardrails within the next year, while only 23% say they have full visibility into the agents already running in their environments. Agent Identity works across three functions: monitoring every agent and Model Context Protocol server at runtime, controlling access per tool call using fine-tuned models and remediating risky actions through identity, audit logs and Rubrik's Agent Rewind feature. Customers start by building an inventory of active agents, MCP servers, skills and plugins, then scope access to specific servers and tools by user and group using On-Behalf-Of federation, which extends existing identity structures rather than replacing them. Standing permissions are eliminated by minting scoped, short-lived tokens for each individual tool call. Enforcement happens at an MCP gateway. Every tool call clears three checkpoints before it executes: a behavioral analysis step in which Rubrik's SAGE governance engine evaluates the intent, input parameters and likely operational impact of the request, a policy check at the infrastructure layer and an identity verification step that authenticates the agent session and issues the token scoped to that call. An unauthorized action, such as a write or modification outside an explicit policy scope, is blocked before execution. For actions that clear the gateway and still go wrong, Agent Rewind reverses them. Rubrik has described the feature as the only one of its kind on the market. The company's own survey work found 88% of leaders are worried about meeting recovery time objectives as agentic threats scale. Agent Identity integrates with Okta Inc. and Microsoft Corp.'s Entra ID, extending enterprise identities to machine actors without standing up a separate directory. Rubrik did not disclose pricing or a general availability date. Rubrik, which now describes itself as "the Security and AI Operations Company," moved into agent tooling in earnest with its acquisition of Predibase Inc. in a deal worth between $100 million and $500 million in June 2025. Rishi co-founded Predibase and served as its chief executive.
[2]
Rubrik launches AI agent identity management solution By Investing.com
NEW YORK - Rubrik (NYSE:RBRK) announced Tuesday the launch of Rubrik Agent Identity, a solution designed to manage and control AI agents' access and permissions in enterprise environments, according to a company press release. The announcement was made at the Black Hat Conference in Las Vegas. The new product monitors AI agents and model context protocol servers at runtime and provides just-in-time permissions per tool call. "Agents are no longer just synthesizing information, they are acting on behalf of employees, and using the access models we built for humans," said Dev Rishi, General Manager of AI at Rubrik. Data from Rubrik Zero Labs indicates that 86% of global IT and security leaders expect AI agents to outpace their organization's security guardrails within the next year, while 23% report full visibility into agents operating in their environments. Rubrik Agent Identity operates as part of the Rubrik Agent Cloud platform and includes four components: Agent Observability for monitoring agents and model context protocols at runtime, Agent Identity for access control per tool call, Agent Runtime Security for policy enforcement, and Agent Rewind to reverse agent actions. The system implements three security checkpoints before execution: behavioral analysis that evaluates tool calls and operational impact, access policy enforcement at the infrastructure layer, and identity verification that generates short-lived tokens for individual tool calls. The solution integrates with Okta and Microsoft Entra ID, extending existing enterprise identity systems to AI agents. The architecture allows organizations to catalog active AI agents, assign least-privilege access by user and group, and eliminate standing permissions through scoped, short-lived tokens. Rubrik describes itself as a security and AI operations company that provides data protection, cyber resilience, and enterprise AI solutions. This article was generated with the support of AI and reviewed by an editor. For more information see our T&C.
[3]
Rubrik Unveils Agent Identity to Secure Agentic Actions in Real-Time
Rubrik announced Rubrik Agent Identity, a powerful new AI-based solution to manage and control AI agents' access and permissions, addressing a key obstacle in enterprise agent deployment. Rubrik Agent Identity is designed to reduce operational vulnerabilities that stem from agent identities by allowing customers to both monitor every agent and model context protocol (MCP) at runtime using AI, and to deliver just-in-time permissions per tool call. Rubrik Agent Identity, delivered as an expansion of the Rubrik Agent Cloud platform, establishes a unified 'Govern, Control, and Prove' model across the entire agent lifecycle. The new solution operates alongside Rubrik's established SAGE governance framework, and now provides four distinct Rubrik Agent Cloud pillars: 1) Agent Observability: Monitor every agent and MCP at runtime. 2) Agent Identity: Control access per tool call at speed and scale using fine-tuned AI. 3) Agent Runtime Security: SAGE intent-driven governance to enforce policies, and detect agent errors in real time. 4) Agent Rewind: Undo agentic mistakes. The architecture introduces key capabilities designed to help enterprises rapidly harden their agentic identity posture: Build an Agent Identity Inventory: Discover and catalog all active AI agents, MCP servers, skills, and plugins to immediately eliminate unmonitored shadow AI. Delegate Least-Privilege Access: Scope access to specific MCP servers and tools by user and group using On-Behalf-Of federation, extending existing enterprise identity structures rather than replacing them. Enforce with Just-In-Time Tokens: Eliminate standing permissions entirely by minting scoped, short-lived tokens per tool call, ensuring access is validated at runtime before execution. To prevent malicious or erroneous actions before they occur, every MCP tool call must clear three distinct checkpoints before execution: 1) Behavioral Analysis: SAGE semantically evaluates the requested tool call, its context, input parameters, and potential operational impact before execution. 2) Access Policy Enforcement: Run-time security policies are verified at the infrastructure layer, enriched with SAGE context. 3) Identity Verification: The agent session is authenticated, and the system mints a short-lived token specifically scoped to that single tool call. If an unauthorized action is attempted, such as a write or modification without an explicit policy scope, the transaction is immediately blocked before execution. For unexpected agent behaviors, Agent Rewind instantly and precisely undoes an autonomous agent?s destructive action., addressing the widespread industry concern where 88% of leaders worry about meeting recovery time objectives as agentic threats scale. Rubrik Agent Identity integrates seamlessly with Okta and Microsoft Entra ID, extending existing enterprise identities to autonomous machine actors without requiring new directories. The MCP Gateway provides a unified security checkpoint for all API-based and MCP resources across the enterprise. Rubrik Agent Identity advances the company?s vision to deliver Agentic Cyber Resilience to our customers, helping them keep pace with machine-speed attacks powered by frontier AI models.
Share
Copy Link
Rubrik unveiled its AI agent identity management solution at the Black Hat conference in Las Vegas, addressing the growing security challenge of autonomous AI agents. The platform monitors every agent and Model Context Protocol server at runtime while granting just-in-time permissions per tool call, eliminating standing permissions that expose enterprises to risk.
Rubrik
1
announced Rubrik Agent Identity at the Black Hat conference in Las Vegas, introducing an AI agent identity management solution designed to control what AI agents can do by granting access one tool call at a time. The service expands Rubrik Agent Cloud, the agent governance platform the company launched in October and made generally available for Anthropic's Claude in June1
. The announcement targets a critical vulnerability in enterprise deployments where agents typically inherit broad, standing permissions built for human employees, creating risks when compromised or misbehaving agents act destructively across software-as-a-service applications, databases and APIs.
Source: SiliconANGLE
According to research from Rubrik Zero Labs, 86% of global IT and security leaders expect AI agents to outpace their organization's security guardrails within the next year
1
2
. More concerning, only 23% say they have full visibility into the agents already running in their environments2
. Dev Rishi, general manager of AI at Rubrik, emphasized the urgency: "Agents are no longer just synthesizing information, they are acting on the enterprise on behalf of employees, and the access models we built for humans and static credentials were never designed for autonomous actors."1
Rubrik frames this as a "shadow workforce" of unmonitored machine identities that operate beyond traditional security perimeters.Rubrik Agent Identity operates through four distinct pillars within the Agent Cloud platform: Agent Observability for runtime monitoring of agents and Model Context Protocol servers, Agent Identity for per-tool-call access control using fine-tuned AI, Agent Runtime Security for policy enforcement through SAGE governance, and Agent Rewind to reverse agent actions
2
3
. Customers begin by building an inventory of active agents, MCP servers, skills and plugins to eliminate unmonitored shadow AI3
. The system then scopes access to specific servers and tools by user and group using On-Behalf-Of federation, which extends existing identity structures rather than replacing them1
. Standing permissions are eliminated entirely by minting scoped, short-lived tokens for each individual tool call, ensuring access is validated at runtime before execution3
.Enforcement happens at an MCP gateway where every tool call must clear three distinct checkpoints before execution. First, behavioral analysis occurs where Rubrik's SAGE governance engine semantically evaluates the intent, input parameters and likely operational impact of the request
1
3
. Second, a policy check verifies runtime security policies at the infrastructure layer, enriched with SAGE context. Third, identity verification authenticates the agent session and mints a short-lived token specifically scoped to that single tool call3
. If an unauthorized action is attempted, such as a write or modification without explicit policy scope, the transaction is immediately blocked before execution. This just-in-time permissions model represents a fundamental shift from traditional least-privilege access approaches designed for human users.Related Stories
For actions that clear the gateway and still produce unintended consequences, Agent Rewind instantly and precisely reverses an autonomous agent's destructive action
3
. Rubrik describes this feature as the only one of its kind on the market1
. The capability addresses widespread industry concerns, with 88% of leaders worried about meeting recovery time objectives as agentic threats scale and machine-speed attacks become more sophisticated1
3
. This recovery mechanism forms a critical component of what Rubrik calls Agentic Cyber Resilience, helping organizations keep pace with threats powered by frontier AI models.Rubrik Agent Identity integrates seamlessly with Okta and Microsoft Entra ID, extending existing enterprise identities to autonomous machine actors without requiring new directories
1
2
3
. The MCP Gateway provides a unified security checkpoint for all API-based and Model Context Protocol resources across the enterprise. Rubrik, which now describes itself as "the Security and AI Operations Company," moved into agent tooling following its acquisition of Predibase in a deal worth between $100 million and $500 million in June 20251
. Rishi co-founded Predibase and served as its chief executive before joining Rubrik. The company did not disclose pricing or a general availability date for Agent Identity, though the platform establishes a unified 'Govern, Control, and Prove' model across the entire agent lifecycle that positions Rubrik to address the security gaps emerging as enterprises deploy autonomous AI systems at scale.Summarized by
Navi
[3]
13 Aug 2025•Technology
19 Nov 2025•Technology
11 Jun 2026•Technology
1
Technology

2
Science and Research

3
Technology
