
Agent identity fabric that scopes inherited access and contains behavioral drift at runtime
aizome was founded in 2025 by chief executive Amir Ofek, product lead Chen Pipek, and chief technology officer Roee Salomon, and works across three regions with a team of around fifteen security and IT engineers. The identity model is the substantive design decision. Rather than minting a standalone service account per agent, which detaches the agent from any human accountability, or letting it operate with the full standing privilege of its creator, aizome has the agent inherit the identity context of the user who built or initiated it and then narrows that inheritance to what the specific task requires, with the resulting access brokered and checked by policy before each call executes.
Discovery comes first in practice: the platform maps the agents already running in an environment, typically within hours and including ones no central team registered, then assigns each an owner and a boundary. Containment covers the runtime side, tracking token consumption against caps so an agent cannot quietly consume budget, monitoring behavior against declared intent, and flagging drift when what an agent does stops matching what it was scoped to do. Integrations cover identity providers including Okta, Microsoft Entra, and SailPoint alongside enterprise applications and security tooling. Analyst firm SACR has described aizome as a pure-play vendor in what it calls ARISE, agentic runtime identity security enforcement, a category built for agents rather than adapted from non-human identity tooling designed for service accounts.



