Перейти к содержимому

The Blueprint for Managing AI Agent Access and the NHI Lifecycle | Ido Shlomo, Token Security

Cloud Security Podcast

0:00 / 0:00

The Blueprint for Managing AI Agent Access and the NHI Lifecycle | Ido Shlomo, Token Security

2 931 просмотр · 9 дней назад
Cloud Security Podcast
40 тыс. подписчиков
2 931 просмотр · 9 дней назад
AI agents are being adopted at an unprecedented pace, bringing unique but solvable access management challenges to the enterprise. Because agents require programmatic access to internal tools, relying solely on LLM prompt filters is rarely sufficient; instead, organizations must prioritize robust identity and access controls. In this episode, Ashish sits down with Ido Shlomo, Co-Founder & CTO of Token Security, to discuss how Identity and Access Management (IAM) teams are stepping up to govern Non-Human Identities (NHI). Ido shares practical solutions for transitioning to a "secure by design" approach, where identity teams provide safe, pre-configured access templates for developers spinning up new AI agents. We explore the full NHI lifecycle from large-scale discovery and analysis to safe decommissioning and how teams are finally bringing single-sign-on-style centralization to the fragmented world of service accounts and API keys. Ido also explains how modern security teams are leveraging agentic application builders to create customized, policy-driven identity workflows using natural language. Questions asked: 00:00 Introduction to Non-Human Identity (NHI) and AI Agents 01:30 Ido Shlomo’s Background: From Offensive Security to Token Security 03:30 Defining Non-Human Identity and the Rapid Scale of AI Agent Access 06:50 How IAM Teams Are Successfully Adapting to AI Agent Sprawl 11:00 Why Centralized Identity Is a More Reliable Control Than Prompt Filtering 14:30 Implementing Secure-by-Design Access Templates for Developers 18:20 The Challenges of Relying Solely on Native Cloud Provider Controls 21:00 Managing the Full NHI Lifecycle at Cloud Scale 28:30 Addressing the Lack of a Traditional Identity Provider (SSO) for Agents 33:20 A Practical IAM Approach: Discovery, Analysis, and Remediation 35:50 Empowering Security Teams with Agentic Application Builders 39:40 The "You Laugh, You Lose" Cybersecurity Joke Challenge -------------------------------------------------------------------------------- 📱Cloud Security Podcast Social Media📱 _____________________________________ 🛜 Website: https://cloudsecuritypodcast.tv/ 🧑🏾‍💻 Cloud Security Bootcamp - https://www.cloudsecuritybootcamp.com/ ✉️ Cloud Security Newsletter - https://www.cloudsecuritynewsletter.com/ Twitter:   / cloudsecpod   LinkedIn:   / cloud-security-podcast   #cloudsecurity