A businessman uses advanced AI agent technology and artificial general intelligence (AGI) to perform data analysis

AI Agents Emerge as Top Enterprise Insider Risk Priority

Nearly half of security leaders rank misconfigured or compromised AI agents as their single greatest threat, new research shows.

Enterprise security executives increasingly view autonomous software programs as a primary insider threat to internal systems, according to new global survey findings released by Exabeam.

Data gathered by Sapio Research reveals that 48% of security leaders rank AI agents operating with excessive, compromised or unintended access as the top threat facing their organizations. The risk posed by these autonomous systems outranked concerns regarding external threat actors (28%), compromised human insiders (12%) and malicious employees (12%).

The survey gathered input from 600 decision-makers split evenly between IT security and finance roles across seven countries. In the report, titled The Agentic Insider: From Monitoring to Understanding, AI agents are defined as goal-driven, autonomous systems capable of accessing enterprise resources and taking action with limited human intervention.

While organizations report expanding their monitoring coverage (specifically, using dedicated AI security tools, extending existing security information and event management systems or deploying behavioral baselining), technical gaps remain widespread.

A lack of behavioral context and event correlation was identified by 27% of respondents as the single largest weakness in their current monitoring strategy. Because AI agents hold legitimate operational credentials to navigate enterprise systems, individual routine actions can obscure unauthorized or anomalous activity over time.

The report also highlights operational friction between security operations and financial leadership. Although 93% of respondents stated that security and finance teams align on overall risk tolerance, 55% of security leaders admitted to delaying or scaling back key initiatives. The primary barrier cited was an inability to articulate technical cyber risk in measurable financial terms necessary for chief financial officer approval.

About the Author

Jesse Jacobs is assistant editor of SecurityToday.com.

Featured

New Products

  • new product

    Adams Rite 4300 Steel Hawk® Electrified Deadlatch

    Modernize aging storefront doors with a refined electrified deadlatch engineered to overcome sag, misalignment and heavy wear without replacing existing hardware.

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities

  • NAPCO product image

    StarLink Fire Max2 Dual Cell/IP Communicator

    Streamline commercial fire compliance with dual-carrier cellular connectivity, a dedicated FACP data path, and dual-layer electronic inspection verification.