惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

J
Java Code Geeks
Google DeepMind News
Google DeepMind News
H
Hackread – Cybersecurity News, Data Breaches, AI and More
T
The Blog of Author Tim Ferriss
A
About on SuperTechFans
N
Netflix TechBlog - Medium
阮一峰的网络日志
阮一峰的网络日志
H
Help Net Security
I
InfoQ
月光博客
月光博客
量子位
Blog — PlanetScale
Blog — PlanetScale
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
云风的 BLOG
云风的 BLOG
雷峰网
雷峰网
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Jina AI
Jina AI
Engineering at Meta
Engineering at Meta
G
Google Developers Blog
D
DataBreaches.Net
宝玉的分享
宝玉的分享
V
Visual Studio Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
人人都是产品经理
人人都是产品经理

Blog

CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike CrowdStrike
CrowdStrike
Ryan Terry · 2026-09-02 · via Blog

AI agents are evolving identity as we know it. They execute code, invoke tools, access applications and sensitive data, and take action on behalf of humans and systems. Increasingly, they operate autonomously and delegate work to other agents. They work at machine speed.

Yet the identity infrastructure enterprises rely on today was built for people and predictable workloads, not autonomous software that can reason, act, and move dynamically across systems. Traditional identity providers force organizations to represent agents through service accounts, API keys, and workload identities. Agents effectively inherit the identity and credentials of the humans they act for, operating under trust established by the existing user. This makes it difficult to distinguish the agent from the person, independently govern what the agent can do, or reliably ensure accountability for its actions. Before an AI agent's access can be continuously governed, the agent itself must first be established as a trusted identity.

Today at Fal.Con 2026, CrowdStrike is introducing Agentic Identity Provider (Agentic IdP) in CrowdStrike Falcon® Next-Gen Identity Security, creating the identity control plane for the agentic enterprise. Agentic Identity Provider gives every AI agent a trusted identity, connects it to the humans and workloads behind it, and gives it only the access it needs, when it needs it.

We're also expanding modern privileged access across SaaS applications, endpoints, code repositories, and cloud infrastructure. This extends Continuous Identity and zero standing privileges wherever humans and AI agents operate.

Together, these innovations advance CrowdStrike's vision for Continuous Identity by establishing trusted identities for AI agents and replacing standing privileges and point-in-time authorization with access that continuously adapts to real-time security and business context.

Introducing the Agentic Identity Provider

Traditional identity providers answer a fundamental question: Who are you? For humans, this answer starts with an established identity tied to an employee, credentials, and an authentication process. 

For AI agents, it isn't as simple. Agents don't onboard like employees. Representing them as traditional service accounts or long-lived credentials creates a dangerous mismatch between how agents operate and how enterprises govern identity. 

CrowdStrike’s Agentic Identity Provider, built for this new model, provides the identity foundation AI agents need before their access can be continuously governed. It can:

  • Establish trusted identities: CrowdStrike Falcon® Guardian discovers AI agents across the enterprise and identifies who owns and uses them. The Agentic Identity Provider automatically registers agents in a single directory and gives each one a cryptographically verifiable identity. Only trusted, registered agents can be granted access.
  • Enrich AI agents with identity context: Falcon Next-Gen Identity Security adds critical context to each identity, including whether they are high-risk or compromised and what privileges they hold. This gives security teams a clearer picture of who or what is behind each agent and the risk it poses. 
  • Broker short-lived, least-privilege access: Instead of assigning agents standing credentials of their own, the Agentic Identity Provider securely brokers short-lived, tightly scoped access on their behalf, providing only the access required for as long as it is needed to complete a task.
  • Maintain end-to-end attribution: Every agent, and every action it takes, remains linked to the human or workload it acts on behalf of. This preserves a continuous chain of accountability as agents interact with systems and delegate work.

Earlier this year, CrowdStrike introduced Continuous Identity for AI Agents to bring real-time, context-aware authorization to agent actions. Continuous Identity replaces point-in-time access decisions with dynamic enforcement based on live identity, device, threat, and business context. This capability grants access when it is justified and revokes it the moment conditions change.

The Agentic Identity Provider establishes who the agent is. Continuous Identity determines what that agent should be allowed to access and what it should be allowed to do continuously. Together, they create an identity model built for autonomous action.

Extending Modern Privileged Access Everywhere Work Happens

Standing privilege remains standing risk, whether the identity accessing a critical resource is an AI agent, administrator, developer, or business user. However, traditional privileged access management was designed around a narrow set of administrative accounts and predictable workflows. Today's privileged interactions happen everywhere: in cloud infrastructure, SaaS applications, endpoints, servers, and private enterprise resources.

CrowdStrike is expanding modern privileged access across these environments. Rather than leaving persistent privilege, modern privileged access grants access only when the task requires it, continuously evaluates it while in use, and revokes it when it is no longer justified.

CrowdStrike is extending these capabilities across:

  • SaaS applications: Bring modern privileged access to business-critical applications including Salesforce and GitHub.
  • Endpoints and servers: Give users elevated access to endpoints and servers only when they need it, instead of leaving administrator privileges permanently enabled.
  • Private applications and enterprise resources: CrowdStrike brings enterprise browser security and privileged access together, connecting users to SaaS, cloud, and on-premises resources while giving them only the privileges they need to get work done. This includes just-in-time access to workloads like Linux over SSH and Windows over RDP, custom apps, and much more. Next-Gen Identity Security grants access based on security and business context, while CrowdStrike Falcon® Seraphic® Enterprise Browser provides the secure connection, without additional agents or browsers. If risk changes or a threat is detected, access is immediately revoked.
  • Cloud infrastructure: Earlier this year, CrowdStrike announced modern privileged access for AWS through Okta. CrowdStrike is now extending this support to AWS environments using Microsoft Entra.

The result is a fundamentally different approach to privileged access. Access isn't trusted simply because it was approved once. It remains trusted only while the identity, device, security, and business context continue to justify it. This distinction becomes even more critical as humans and AI agents increasingly interact with the same applications, infrastructure, and data.

Falcon Next-Gen Identity Security | Just-In-Time Access for Salesforce and GitHub

Falcon Privileged Access | Zero Standing Privileges for Private Apps

MDR for the Modern SaaS Attack Surface

As SaaS becomes a critical operating layer for humans and AI agents, it is also becoming a high-value target for adversaries. Compromised identities can give attackers legitimate access to SaaS applications, which allows them to operate undetected and makes continuous detection and response more critical than ever.

CrowdStrike is extending CrowdStrike Falcon® Complete MDR services to CrowdStrike Falcon® Shield, bringing 24/7 expert-led monitoring, investigation, and response to the SaaS security capabilities within Falcon Next-Gen Identity Security.

CrowdStrike experts leverage Falcon Shield’s visibility across identities and threats targeting SaaS applications to identify and stop malicious activity in real time. By combining high-fidelity detections, agentic workflows, and expert-led operations, Falcon Complete for Falcon Shield turns SaaS visibility into action, helping organizations rapidly contain threats, reduce operational burden, and extend continuous protection across the agentic enterprise.

Identity Security Built for the Agentic Enterprise

The agentic enterprise requires a new identity security model. AI agents can't be secured like service accounts, privilege can’t remain static while risk changes, and identity security can’t stop at authentication.

CrowdStrike is bringing identity establishment, authentication, authorization, privileged access, detection, and response together through Falcon Next-Gen Identity Security. By connecting identity to real-time context across endpoint, cloud, SaaS, and enterprise systems, CrowdStrike can help organizations continuously grant, adjust, and revoke access as risk and business context change.

Additional Resources

Forward-Looking Statements

This blog includes discussion of unreleased services or features. Any unreleased services or features referenced here are still in development and subject to change. Customers should make their purchase decisions based upon features that are currently available.