ChaptersEventsBlog
Join Cohesity Catalyst on Tour at the data security and AI summit in NYC, Paris, or Singapore →
Survey Report Tag

Securing Autonomous AI Agents

Released: 02/04/2026

Securing Autonomous AI Agents
Autonomous AI agents are being embedded across cloud, hybrid, and on-prem environments. However, most identity systems were built for humans, not for self-directed, API-driven agents operating continuously at runtime. This comprehensive survey report, commissioned by Strata, explores the current state of autonomous AI agent security in enterprises and the associated Identity and Access Management (IAM) challenges.

The report reveals a growing gap between agent adoption and enterprise readiness. Organizations are deploying hundreds of AI agents, yet they lack agentic identity governance policies to help manage them safely. The findings highlight widespread reliance on static credentials, fragmented authorization models, limited discovery, and weak traceability.

The report argues for securing autonomous agents with the same rigor historically reserved for human users. It examines confidence in IAM for agents, traceability and human-in-the-loop oversight, and emerging investment patterns. The results point to a “Time-to-Trust” phase, where organizations are balancing innovation with caution.

This research provides critical insight for organizations seeking to securely scale agentic systems while maintaining governance, compliance, and operational trust.

Key Takeaways:
  • 40% of organizations already have agents in production. Another 31% are running pilots or tests, with 19% planning deployment within the next year. 
  • Only 18% of respondents say they are “highly confident” their current IAM systems can manage agent identities effectively. 35% express only moderate confidence and 29% express slight confidence. Another 18% report no or uncertain confidence. 
  • Many organizations are still relying on outdated credentialing and access patterns. The most common authentication methods are static API keys, username and password combinations, and shared service accounts.
  • Only 21% of organizations maintain a real-time registry or inventory of their agents. 32% rely on non-real-time records, another 32% plan to build one within the next year, and 8% have no registry at all. 
  • 40% of organizations report increasing their overall identity and security budgets to accommodate AI agents. 34% are allocating a dedicated budget line and another 22% are reallocating funds from other security areas. Only 26% report no planned budget changes.

Download this Resource


Best For IconBest For:
  • CISOs and security leaders
  • IAM professionals
  • AI security and governance professionals
  • GRC and compliance professionals

About the Sponsor

Strata Identity Logo
Strata is the Identity Orchestration leader, making consistent identity and policy management a reality. Our Identity Orchestration platform, Maverics, is the only solution built for today’s distributed, multi-cloud and hybrid-cloud environments. With Strata, companies can quickly, securely, and permanently modernize applications to use cloud-based authentication and advanced identity solutions.

Explore More of CSA

Research & Best Practices

Stay informed about the latest best practices, reports, and solutions in cloud security with CSA research.

Upcoming Events & Conferences

Stay connected with the cloud security community by attending local events, workshops, and global CSA conferences. Engage with industry leaders, gain new insights, and build valuable professional relationships—both virtually and in person.

Training & Certificates

Join the countless professionals who have selected CSA for their training and certification needs.

Industry News

Stay informed with the latest in cloud security news - visit our blog to keep your competitive edge sharp.