Rubrik has announced Rubrik Agent Identity, a new AI-based solution to manage and control AI agents' access and permissions, addressing a key obstacle in enterprise agent deployment. The solution is designed to reduce operational vulnerabilities that stem from agent identities by allowing customers to monitor every agent and MCP at runtime and deliver just-in-time permissions per tool call.
Rubrik launches Agent Identity to control agent access and permissions in real-time.
Delivers just-in-time permissions per tool call with scoped, short-lived access.
86% of IT leaders expect AI agents to outpace security guardrails within the next year.
Only 23% report full visibility into agents operating in their environments.
Integrates with Okta and Microsoft Entra ID for existing identity structures.
Part of Rubrik Agent Cloud with four pillars: Observability, Identity, Runtime Security, and Rewind.
AI agent deployments are rapidly evolving, with the potential to execute complex, automated workflows across SaaS applications, databases, and APIs at unprecedented speed and scale. Yet most organizations lack the capability to monitor and control agent access and actions at the necessary speed and scale. According to recent data from Rubrik Zero Labs, 86% of global IT and security leaders expect AI agents to outpace their organization's security guardrails within the next year, while only 23% report full visibility into the agents operating in their environments. Rubrik Agent Identity, delivered as an expansion of the Rubrik Agent Cloud platform, establishes a unified "Govern, Control, and Prove" model across the entire agent lifecycle.
The architecture introduces key capabilities designed to help enterprises rapidly harden their agentic identity posture. Build an Agent Identity Inventory to discover and catalog all active AI agents, MCP servers, skills, and plugins to immediately eliminate unmonitored shadow AI. Delegate Least-Privilege Access by scoping access to specific MCP servers and tools by user and group using On-Behalf-Of federation, extending existing enterprise identity structures. Enforce with Just-In-Time Tokens by eliminating standing permissions entirely and minting scoped, short-lived tokens per tool call, ensuring access is validated at runtime before execution.
To prevent malicious or erroneous actions before they occur, every MCP tool call must clear three distinct checkpoints before execution. Behavioral Analysis semantically evaluates the requested tool call, its context, input parameters, and potential operational impact. Access Policy Enforcement verifies run-time security policies at the infrastructure layer, enriched with SAGE context. Identity Verification authenticates the agent session and mints a short-lived token specifically scoped to that single tool call. If an unauthorized action is attempted, the transaction is immediately blocked before execution. For unexpected agent behaviors, Agent Rewind instantly and precisely undoes an autonomous agent's destructive action.
"Agents are no longer just synthesizing information, they are acting on behalf of employees, and using the access models we built for humans. Static credentials were never designed for autonomous actors," said Dev Rishi, General Manager of AI at Rubrik. "Agent Identity lets enterprises decide who can do what with agents and enforces it at each tool call, at the moment of action, with scoped, short-lived access. With Rubrik Agent Cloud, enterprises can govern agent activity, enforce identity-aware policies, and apply semantic policy evaluation before sensitive actions execute."
About Rubrik
Rubrik, the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes.