Entro Security Launches AGA to Govern AI Agents and Non-Human Identities Across the Enterprise
嗯,用户让我帮忙总结一下这篇文章的内容,控制在100字以内,而且不需要特定的开头。首先,我需要通读整篇文章,抓住主要信息。 文章讲的是Entro Security推出了一个新的平台支柱AGA,用于管理企业系统中的AI代理和访问路径。传统IGA工具不适用于AI,因为AI使用的是非人类身份,比如令牌、API密钥等。AGA通过结构化的配置文件和发现、监控功能来解决这些问题,并且已经在Entro平台上提供。 接下来,我需要把这些要点浓缩成一句话,确保不超过100字。同时,要避免使用“文章内容总结”这样的开头。 可能的结构是:公司名称+产品名称+功能+解决的问题+适用范围。这样既简洁又全面。 最后检查一下字数和表达是否清晰。 </think> Entro Security推出Agentic Governance & Administration (AGA),帮助企业在系统中管理AI代理和访问路径。该工具针对传统IGA无法处理的非人类身份(如令牌、API密钥)及快速变化的AI环境设计,通过结构化配置文件和发现、监控功能提供清晰的治理方案。 2026-3-25 16:24:22 Author: securityboulevard.com(查看原文) 阅读量:1 收藏

Entro Security has announced Agentic Governance & Administration (AGA), a new pillar of its platform designed to help security and identity teams govern AI agents and AI access paths across enterprise systems. The company is showcasing AGA at RSA Conference 2026.

The core problem AGA addresses is one that traditional Identity Governance and Administration (IGA) tools weren’t built to solve. Existing IGA platforms govern people and applications, but agentic AI operates differently. The “user” is often an AI service or locally running agent. Access paths run through non-human identities: tokens, service accounts, API keys, and secrets. And the blast radius is shaped by OAuth scopes, integrations, and automation, not a single human login.

“Enterprise AI adoption rarely starts with a strategy deck. It starts with a connection,” said Itzik Alvas, Co-Founder and CEO of Entro Security. “A developer connects a tool to an LLM, a team installs an AI app in SaaS, or someone authenticates an agent against SharePoint, GitHub, Salesforce, or internal APIs. It works, spreads fast, and then security teams get questions they can’t answer fast enough. Who connected what, to which systems, with what permissions, and using which identities? Our AGA helps teams regain clarity and control as AI access becomes the default.”

AGA applies the same governance fundamentals that IAM teams already know, adapted for a world where agents connect in seconds, operate continuously, and drift as adoption spreads. The capability covers inventory, ownership, least privilege, auditability, and enforcement, applied to AI assistants, agent platforms, and locally running agents.

On the technical side, AGA builds a structured profile for each AI agent by pulling from three layers: sources (endpoint telemetry, agent foundries, cloud environments, MCP servers), targets (enterprise assets and applications the agent touches), and identities (human, non-human, or secret identities used to access those targets).

Two core capabilities sit on top of that foundation. Shadow AI Discovery uses EDR integrations to surface AI clients and local agent runtimes on workstations, and connects natively with agent foundries including AWS Bedrock and Copilot Studio to discover agents and the non-human identities they rely on. AI Agents Monitoring and Enforcement adds MCP activity visibility and policy controls, giving teams audit trails of allowed and blocked activity and controls to reduce sensitive data and secret exposure.

AGA is available now as part of the Entro platform.


文章来源: https://securityboulevard.com/2026/03/entro-security-launches-aga-to-govern-ai-agents-and-non-human-identities-across-the-enterprise/
如有侵权请联系:admin#unsafe.sh