CHAPTER 7

Security Agents and Agent Security

Once we had GenAI, it did not take long to supply LLMs with tools and the ability to use them. The LLM is granted agency to use the tools to affect change. There are travel booking agents from Naval, Expedia, Kayak, and Hopper. Navan is even branching out into general purpose agents. There are dozens of note taking agents for meetings. There are sales agents, procurement agents, HR agents. Any one service may spin up dozens of agents to accomplish a task.

All of these agents pose a serious security problem. What controls are in place? How are permissions granted? How are they audited?

Here are some of the components that put a vendor into the Agent Security subcategory of AI Security:

• Action-level RBAC (Roll Based Access Control).

• T ool-call governance (Which tools? When? How?).

• Pre/post-execution policy checks.

• Guarding agent memory + context.

• Observability + audit trails.

• Detecting agent drift, deception, or runaway loops.

• MCP server hardening.

• API access control for autonomous agents.

• Simulation / sandboxing of agent actions.

Agents are a new a form of machine identity and should not be lumped in with human identity governance. Lifecycles can be short and ephemeral. It is no surprise that we have discovered 16 vendors that focus on AI Agents.

CompanyCountryInvestment ($M)Employees
Identity MachinesCanada-53
Token SecurityIsrael$27M48
AktoUSA$4.5M29
GuardiAgentSwitzerland-23
TensorOpera AIUSA$13.2M21
Invariant LabsSwitzerland-7
MultifactorUSA$15M4
Dash SecurityUSA-3
AlterUSA$0.5M3
GuardionAIUSA-2
ZenGuardUSA$0.15M2
GeordieUnited Kingdom-0
SuperagentUSA-0
Glide IdentityUSA$20M23
intentyxIndia$0.5M11
UnboundUSA$0.5M11