When agents move at machine speed, security teams lose their lag time

The agentic AI attack surface is less a matter of new territory than of new velocity, as autonomous software now reads, writes and moves corporate content faster than any human adversary could. That shift is forcing security leaders to rebuild detection, visibility and governance around agents they cannot always see.

Much of that activity is landing back where enterprise defense started, on the endpoint, where tool calls and model context protocol connections execute. CrowdStrike Holdings Inc. has responded by extending the Falcon platform to police agents at the endpoint, treating each one as an asset with an identity and a data footprint attached, according to Cristian Rodriguez (pictured, left), field chief technology officer of the Americas at CrowdStrike.

“Every enterprise has a collection of assets, and those assets are made up of this anatomy of the type of system that they run on, the identity that that system is attached to, the type of data that that system can ultimately access, and then AI essentially automates and accelerates that entire experience from start to finish,” Rodriguez said. “AI becomes essentially very autonomous and kind of self-serving or very far-reaching without the right guardrails and without the right trust system in place. Those systems can kind of do a lot of damage in your environment.”