AIToday
Large Language ModelsAI Safety & AlignmentAI Regulation & PolicySiliconANGLE AIPublished: Sep 26, 2026, 06:00 JST

Vanderbilt CIO Shane Callahan: reuse identity governance for AI agents

Vanderbilt CIO Shane Callahan: reuse identity governance for AI agents

3 Key Points

  1. What happened

    Vanderbilt CIO Shane Callahan told theCUBE at Okta's Oktane event that agent accountability is unresolved, asking whether the university or the tool is responsible when an agent breaches its guardrails.

  2. Why it matters

    He argues universities do not need to rebuild oversight, since AI agents involve identity data in another technology tool, so existing governance and intake programs can be reused.

  3. What to watch

    The test is whether those existing processes can actually assign liability when an agent affects another group or company, an outcome Callahan says is not understood yet.

WHO IT HITSUniversity and enterprise IT leaders who run identity and access programs now face deciding how AI agents get scoped identities and who answers when those agents act outside their guardrails.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

Callahan's argument rests on the breadth of a university's operations rather than on any new technology. Vanderbilt's environment spans residential life, athletics, its own police department and more than $1 billion in research, and the same person can be a student, a staff member and a donor at once, each with a different profile. That overlap is what makes access decisions hard in the first place.

Into that setting come AI agents, which Callahan says add another layer to identity security. Distinct identities and scoped access can limit what an agent does, but in his account they do not settle who bears responsibility when an agent steps outside its guardrails, or whether cyber insurance covers the fallout when another group or another company is affected.

His proposed answer is procedural, not technical: build on the technology-intake and cross-functional governance processes an institution already has. The stakes look likely to hinge on whether those existing processes can be stretched to cover agent liability, and on whether insurers and peer institutions reach a shared view of where responsibility falls — something Callahan says is not understood at this point.

FAQ
What does Vanderbilt use for single sign-on?
Vanderbilt uses OneVU, powered by Okta, for single sign-on. Its environment also covers residential life, athletics, its own police department, and more than $1 billion in research.
Why is managing identity hard at a university?
CIO Shane Callahan said a person can hold multiple identities at once, such as student, staff member and donor, each with a different profile. Keeping track of those security profiles is very difficult.
What should organizations do about AI agent governance?
Callahan said organizations do not need to discard established oversight or recreate everything. If they already have a governance process and a technology intake program, they should use those for AI.
SiliconANGLE AIRead Original Article

Get the latest Large Language Models news every morning

For example, today's edition would include:

  • Salesforce at Dreamforce 2026: UCLA Health hits 75,000+ AI chatsTop Companies AI · 1h ago
  • Kavukcuoglu: Gemini 4 hits post-training, early ship eyedTop Companies AI · 1h ago
  • CrowdStrike (CRWD) joins Blueprint Alliance for AI agent securityTop Companies AI · 1h ago

AI-summarized, only the topics you pick: one digest a day via Email, LINE, or Slack.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleMicrosoft reboots Copilot, pivots to workplace AI