AI agent discovery: Inventory and govern shadow AI agents | Nudge Security
嗯,用户让我总结一篇文章的内容,控制在100字以内,而且不需要特定的开头。首先,我需要仔细阅读文章内容,抓住主要信息。 文章主要讲的是AI代理在企业中的应用和带来的安全问题。提到大多数AI代理使用现有的基础设施,但需要大量的数据访问权限,导致安全风险。接着介绍Nudge Security的新功能,帮助发现和管理这些AI代理,提供可见性和治理能力。 好的,我需要把这些要点浓缩到100字以内。要确保涵盖AI代理的普及、安全风险以及Nudge Security的解决方案。 可能的结构是:首先说明AI代理的应用现状,然后指出安全问题,最后介绍Nudge Security的功能。这样既全面又简洁。 检查一下字数是否符合要求,确保没有遗漏关键点。最后通读一遍,确保流畅自然。 </think> 企业中AI代理的应用日益普及,但其对数据和工具的高度访问权限带来了不可忽视的安全风险。Nudge Security推出的新功能可帮助企业发现和管理这些AI代理,提供可见性并降低风险。 2026-3-24 00:0:0 Author: securityboulevard.com(查看原文) 阅读量:7 收藏

General-purpose AI chatbots are starting to look a bit passé. Your employees have moved on to the next chapter of AI: building and deploying AI agents. The good news? Most AI agents are built with existing infrastructure, in enterprise SaaS environments like Salesforce Agentforce, Microsoft Copilot Studio, and Notion AI, where modern work already happens.

The bad news? AI agents often require highly permissive access to corporate data and tools to perform and automate tasks on employees’ behalf. At the current speed and scale of AI agent deployments, that’s already creating an unmanageable tangle of permissions and integrations that introduce unmitigated data exposure risks.

In fact, 80% of organizations say they’ve encountered agentic AI risks, including improper data exposure and unauthorized system access, according to a recent Sailpoint survey.

At this point, it’s safe to assume your workforce is building and deploying AI agents at work. What’s not safe to assume is that IT security and AI governance teams already have the visibility they need to answer questions like:

  • Where are AI agents running?
  • Who created each agent, and why?
  • Who’s responsible for each agent if not the creator?
  • What can AI agents connect to?
  • What are AI agents able to do autonomously?
  • What risks do these AI agents introduce?
  • How do these AI agents impact our overall security posture?

Nudge Security answers these questions and more with our new AI agent discovery capabilities, released today in a research preview. Read on to learn how they work and how to get started.

Introducing AI agent discovery from Nudge Security

Nudge Security’s AI agent discovery gives security teams visibility into the AI agents employees are building and deploying across enterprise SaaS platforms, along with their associated risks. It automatically discovers and inventories AI agents in your environment, connects each agent to its human creator, maps the integrations and data access permissions that power it, and surfaces risk insights based on its configuration and capabilities.

Beyond discovery, you can set approval statuses, assign technical owners, and engage the right people through targeted nudges to understand why agents exist and ensure they’re used safely. It’s the first agentic AI governance solution built on the same deep SaaS and identity context that already powers Nudge Security’s AI and SaaS security platform.

Unlike point solutions built solely to secure AI agents, Nudge Security brings deep visibility of access, integrations, identity signals, and behavioral context that reveals how employees are actually using new SaaS and AI technology across the enterprise. Our new AI agent discovery capabilities extend this foundation directly into the agentic layer, with no new deployments required for existing customers already connected to SaaS environments like Salesforce and ServiceNow.

Key features

  • Discover AI agents across agentic platforms. Get continuous visibility into agents running across Microsoft Copilot Studio, Salesforce Agentforce, ServiceNow, n8n, Tines, Workato, Abacus, ChatGPT, and Gemini for Google Workspace.
  • Inventory agent permissions, resources, and capabilities. For every agent in your environment, you’ll know what it can access, what it’s authorized to do, and who built it.
  • Surface agentic risks. Risk insights and security posture findings highlight the issues that matter: publicly accessible agents, hardcoded credentials, unauthenticated MCP connections, high-risk integrations, and agents that have outlived their creators.
  • Enforce AI agent guardrails. Reach the people responsible for agents directly, and give them a clear path to confirm intent, justify access, and resolve issues before they compound.

How to get started

Nudge Security’s AI agent discovery takes advantage of our connected apps infrastructure, available to customers and trial users. Connected apps that support AI agent discovery are marked with a badge in the product. For customers already connected to environments like Salesforce and ServiceNow, there are no additional configurations or deployments needed. Simply request access to join our research preview. New connections for additional agentic platforms are available for ChatGPT, Microsoft Copilot, and Gemini.

Nudge Security is introducing AI agent discovery as a research preview for testing, feedback, and real-world experimentation, similar to how other leading technology providers like Anthropic provide access to early versions of new capabilities.

AI security and governance with Nudge Security

AI agent discovery is the latest addition to Nudge Security’s growing set of AI security governance capabilities.

Earlier this year, we launched detection for remote MCP server connections, giving security teams visibility into the OAuth grants that power AI agents. We also launched AI data flow visualization and sensitive data sharing detection, alongside Day One discovery of shadow AI apps, users, and integrations across thousands of AI providers.

*** This is a Security Bloggers Network syndicated blog from Nudge Security Blog authored by Nudge Security Blog. Read the original post at: https://www.nudgesecurity.com/post/ai-agent-discovery-with-nudge-security


文章来源: https://securityboulevard.com/2026/03/ai-agent-discovery-inventory-and-govern-shadow-ai-agents-nudge-security/
如有侵权请联系:admin#unsafe.sh