sources · source-sailpoint-governing-ai-agents-2025
Governing AI agents with Agent Identity Security
Amy Shillinglaw presents SailPoint's model for governing AI agents as identities whose behavior combines machine execution with human-like autonomy. She separates inbound authorization—who may invoke an agent—from outbound authorization—what resources the agent may use for that person—and frames inventory, tool correlation, human ownership, succession, and dual-sided certification as the control sequence. A product demonstration shows how those ideas are represented in SailPoint's platform, including user entitlements, machine-account correlation, and access reviews. The session also identifies risks such as runaway subtasks, compromised code or credentials, poisoned data, and poor explainability. Because this is a vendor webinar, the record supports product and practitioner claims, not independent performance findings.
Open the canonical original source
Source at a glance
- Source type
- video
- Publisher
- SailPoint Technologies
- Source or access date
- 2025-11-20
- Analysis depth
- deep
- Rights treatment
- link and paraphrase
- Human review
- Murray Newlands · 2026-08-16
Important limitations
- Vendor-produced product presentation
- No independent customer outcomes
- Capabilities and supported connectors are time-sensitive
- Platform captions contain transcription errors
- Promotional page speaker list differs from the actual recording
Source-located statements
8 reviewed statements are indexed from this source.
- Shillinglaw characterizes an AI agent as technically a machine identity that is designed to act more like a human and therefore calls for governance closer to human-identity controls than a conventional machine account receives. (00:04:36)
- Shillinglaw defines AI agents as mostly autonomous systems that make decisions, solve complex problems, launch subtasks, and invoke external tools such as APIs, functions, scripts, service accounts, or other engines. (00:08:27)
- Shillinglaw separates inbound controls that verify who may invoke an agent from outbound controls that verify the agent and determine what resources it may access on behalf of that user. (00:18:37)
- Shillinglaw identifies runaway subtasks, compromised credentials or code, poisoned model data, and poor explainability as distinct risks that agent infrastructure and governance must address. (00:21:12)
- Shillinglaw recommends beginning agent governance with an inventory, then correlating each agent's tools and assigning accountable human ownership before access reviews. (00:24:24)
- Shillinglaw states that SailPoint's ownership and succession feature supports one primary human owner and up to ten additional owners for agent oversight. (00:25:43)
- Shillinglaw recommends assigning every AI agent a human owner and a succession chain so oversight transfers when an owner leaves. (00:28:51)
- Shillinglaw recommends certifying both inbound access—the users and entitlements allowed to invoke an agent—and outbound access—the tools, machine accounts, and resources available to the agent. (00:32:52)
Evidence lineage and transparency
| Relationship field | Linked identifiers |
|---|---|
| speaker ids | person-amy-shillinglaw |
| organization references | orgref-sailpoint |
Machine review: ready for human review. Human review: approved. Workflow: published.
Complete structured record
- source id
- source-sailpoint-governing-ai-agents-2025
- canonical title
- Governing AI agents with Agent Identity Security
- alternate titles
- Securing AI Agents with Agent Identity Security Nov 2025
- source type
- video
- series or parent source
- SailPoint Community Webinar / Video Library
- publisher
- SailPoint Technologies
- channel
- SailPoint Developer Community
- speaker ids
- person-amy-shillinglaw
- author ids
- institutional author
- SailPoint Technologies
- organization references
- orgref-sailpoint
- recorded at
- 2025-11-20
- event date
- 2025-11-20
- published at
- 2025-11-20
- updated at
- Unknown
- duration seconds
- 3436
- language
- lang-en
- translated title
- Unknown
- translation method
- Unknown
- geography of speaker
- geography of organization
- geo-global
- geography discussed
- geo-global
- study geography
- original url
- https://developer.sailpoint.com/discuss/t/governing-ai-agents-with-agent-identity-security/188944
- canonical url
- https://developer.sailpoint.com/discuss/t/governing-ai-agents-with-agent-identity-security/188944
- archived url
- Unknown
- embed url
- https://play.vidyard.com/qewbsaA1gHud1Dws5LQNac.html
- doi
- Unknown
- canonical identity status
- verified_official_publisher_page_and_embedded_recording
- repost status
- original_publisher_embed_no_competing_canonical_upload
- original source id
- Unknown
- rights status
- link_and_paraphrase
- ownership status
- third_party
- relationship to off
- none
- transcript status
- official_platform_captions_research_only
- transcript source
- Vidyard English WebVTT captions embedded by SailPoint
- transcript republication permission
- not_documented_do_not_publish_full_captions
- chapter markers
- [object Object], [object Object], [object Object], [object Object], [object Object], [object Object], [object Object], [object Object], [object Object], [object Object]
- analysis basis
- Complete official Vidyard recording and speaker-labeled English platform captions reviewed against the SailPoint community page, registration page, and player metadata. The recording itself controlled speaker inclusion where promotional metadata differed.
- topics
- topic-ai-agents, topic-ai-governance, topic-cybersecurity, topic-non-human-identity, topic-enterprise-infrastructure
- executive roles
- role-ciso, role-cio, role-cto
- original abstract
- Amy Shillinglaw presents SailPoint's model for governing AI agents as identities whose behavior combines machine execution with human-like autonomy. She separates inbound authorization—who may invoke an agent—from outbound authorization—what resources the agent may use for that person—and frames inventory, tool correlation, human ownership, succession, and dual-sided certification as the control sequence. A product demonstration shows how those ideas are represented in SailPoint's platform, including user entitlements, machine-account correlation, and access reviews. The session also identifies risks such as runaway subtasks, compromised code or credentials, poisoned data, and poor explainability. Because this is a vendor webinar, the record supports product and practitioner claims, not independent performance findings.
- inclusion rationale
- The full recording provides a concrete governance model, exact speaker attribution, a detailed demonstration, and timestamped product limitations relevant to enterprise identity teams.
- source quality dimensions
- {"primary_spoken_source":"high","identity_stability":"high","access_completeness":"complete","independence":"vendor_produced"}
- methodology quality
- {"study_design":"vendor_practitioner_webinar_and_demo","empirical_method":"none","attribution_method":"speaker_labeled_platform_captions_and_self_identification"}
- study design
- vendor_practitioner_webinar_and_demo
- sample
- {}
- population
- Unknown
- date range
- {}
- funding
- SailPoint-produced webinar
- sponsor
- SailPoint Technologies
- peer review status
- not_applicable
- findings
- limitations
- Vendor-produced product presentation, No independent customer outcomes, Capabilities and supported connectors are time-sensitive, Platform captions contain transcription errors, Promotional page speaker list differs from the actual recording
- correction ids
- retraction status
- Unknown
- content hash
- sha256:a254342e28dcc6b6bd1994f5366e0ea44c02899eacb3a2861a795f567a5ced7c
- accessed at
- 2026-08-15
- verification status
- machine_verified_human_approved
- source depth
- deep
- publication status
- published
- workflow status
- published
- machine review status
- ready_for_human_review
- human review status
- approved
- reviewed by
- Murray Newlands
- reviewed at
- 2026-08-16T23:17:22Z
Provenance and revision history
{
"provenance": [
{
"source_url": "https://developer.sailpoint.com/discuss/t/governing-ai-agents-with-agent-identity-security/188944",
"accessed_at": "2026-08-15",
"retrieval_method": "official publisher page, embedded recording, player metadata, and platform captions",
"exact_locator": "Vidyard qewbsaA1gHud1Dws5LQNac; 00:00-57:15.627",
"content_hash": "sha256:a254342e28dcc6b6bd1994f5366e0ea44c02899eacb3a2861a795f567a5ced7c",
"batch_id": "BATCH-2026-004",
"prompt_id": "OEII-MEDIA-RESEARCH",
"prompt_version": "2.0",
"notes": "Caption hash sha256:4433395b628f50446a618e6608896ae2d4fc219c940678162fa8dbe817878a5a; caption file is not included."
}
],
"revision_history": [
{
"changed_at": "2026-08-16T23:17:22Z",
"changed_by": "Murray Newlands",
"summary": "Approved for the governed-identities pilot release under the exact scope, exclusions, rights treatment, and limitations recorded in issue #18.",
"batch_id": "BATCH-2026-004"
}
]
}