
Enterprise AI security is shifting beyond permissions. Access controls alone can't govern agent behavior.
Agents can misuse legitimate access in seconds.
A layered approach including execution governance is emerging.
What happened
Box's CISO Heather Ceylan says identity and permissions alone are no longer enough to secure enterprise AI agents, pushing security toward a layered approach that includes governing execution.
Why it matters
Permissions were designed for humans, not autonomous agents. An agent will explore all of its permissions and can turn legitimate access into unintended action in seconds, so access controls built for a slower, more forgiving world don't suffice.
What to watch
How enterprises scope agent permissions and layer execution governance on top of existing access controls, as highlighted by Ceylan.
Ask the AI about this article →
The shift described by Box's CISO reflects a growing recognition that traditional security models, built for human users, are ill-suited for autonomous AI agents. Permissions were designed assuming humans would not actively seek out all data they can access, but agents systematically explore their granted permissions, making any oversight potentially dangerous.
This gap is driving a move toward layered security that includes both access governance and execution governance, meaning how agents act once they have access. The challenge, as Ceylan notes, is not just setting permissions but also thinking about how agents get their permissions scoped in the first place.
For enterprises deploying AI agents, this suggests a need to rethink security architectures beyond static permissions, though the article does not detail specific solutions. The emphasis on execution governance indicates a future where monitoring and controlling agent actions becomes as critical as controlling access.
For example, today's edition would include:
AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.
Free · takes 30 seconds · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. Q&As are published on this page for other readers too.
A UK study by UK AI Security Institute and Limbic AI surveyed 6,474 British adults

Broadcom's Clayton Donley says companies are doing mission-critical work with AI agents quickly, but without t…
Bank of England governor Andrew Bailey warned that advanced AI poses risks to financial infrastructure in a le…
As AI agents perform real business tasks, 'Agentic Identity' (giving each AI a unique employee-like ID) and 'D…

Andrew Bailey, head of the world's financial stability watchdog, warned in a letter to G20 finance ministers a…

Fortinet announced the acquisition of Virtue AI, a move aimed at expanding its AI security capabilities
