Rubrik Launches Agent Identity for Tool-Call Governance
As APS agencies pilot agentic AI systems, per-tool-call authorisation models represent an emerging governance pattern worth tracking.
Key points
- Rubrik launched Agent Identity at Black Hat to govern AI agent access via scoped, short-lived per-tool-call credentials.
- The product addresses a growing gap: 23% of IT leaders report full visibility into agents running in their environments.
- This is a vendor product announcement with no independent performance or adoption evidence cited - moderate signal for APS.
Implications for Australian agencies
- Monitor Agencies exploring agentic AI deployments may want to monitor how per-tool-call authorisation and MCP gateway controls mature as an enterprise governance pattern.
- Consider AI governance and security teams could consider whether existing identity and access management frameworks adequately address the credential and audit requirements of AI agent systems.
Implications are AI-generated. Starting points, not advice — see methodology for how they're framed.
View original source
Copied.
Appeared in:
Weekly digest, 3 August 2026
"Rubrik Launches Agent Identity for Tool-Call Governance"
Source: Let's Data Science – AI Governance
Published: 4 August 2026
URL: https://letsdatascience.com/news/rubrik-launches-agent-identity-for-tool-call-governance-5e7b044a
Rubrik has launched Agent Identity, a service designed to govern AI agent access at the level of individual tool calls by issuing scoped, short-lived tokens rather than standing permissions. The product covers runtime discovery and policy management for agents, Model Context Protocol (MCP) servers, skills, plugins, and data interactions, with enforcement occurring at an MCP gateway via behavioural analysis. The announcement reflects a broader industry recognition that credential models designed for human users are inadequate for autonomous AI agents acting on enterprise systems. APS agencies beginning to deploy agentic AI should note the governance pattern, though no independent evaluation of this specific product is available.
Implications for Australian agencies:
- [Monitor] Agencies exploring agentic AI deployments may want to monitor how per-tool-call authorisation and MCP gateway controls mature as an enterprise governance pattern.
- [Consider] AI governance and security teams could consider whether existing identity and access management frameworks adequately address the credential and audit requirements of AI agent systems.
Retrieved from SIMS, 16 September 2026.