The State of Agentic AI Security
The State of Agentic AI Security
The State of Agentic AI Security

2025 benchmark

The 2025 State of Agentic AI Security Report

Learn how 100+ CISOs, AI security leaders, and architects are preparing for the next wave of agentic risk, and where critical gaps remain.

Key Findings

Key Findings

Enterprises are scaling autonomy faster than they can establish visibility or guardrails, turning innovation into untracked risk.

Enterprises are scaling autonomy faster than they can establish visibility or guardrails, turning innovation into untracked risk.

69%

69%

of organizations are already past experimentation and into real-world agent deployments.

21%

21%

of organizations have a fully maintained, up-to-date inventory of AI agents and MCP connections.

79%

79%

lack governance policy for agent permissions, and monitoring.

"My biggest concerns are visibility and the growing gap between rapid AI development and the security tooling meant to protect it.”

"My biggest concerns are visibility and the growing gap between rapid AI development and the security tooling meant to protect it.”

– Henri Du Plessis

– Henri Du Plessis

Managing Security Engineer, Toyota Connected North America

Managing Security Engineer, Toyota Connected North America

Securing agent-to-system interactions
Securing agent-to-system interactions
Securing agent-to-system interactions

Security Teams Lack Confidence in Securing Agent-to-System Actions

Confidence is low: 42% of respondents are unconfident and 30% are neutral about securing agent-to-system interactions, underscoring major gaps in visibility and control.

Most Organizations Have Not Assessed Agentic Risk

60% have not conducted a formal agentic or AI security risk assessment in the last 12 months.

Organizations acknowledge agentic risks but lack the processes, frameworks, and ownership models needed for responsible deployment.

AI Security Risk assessment of Last 12 Months
AI Security Risk assessment of Last 12 Months
AI Security Risk assessment of Last 12 Months

“Confidence in adopting agentic AI securely starts with governance - test every agent, enforce guardrails, and monitor continuously to ensure trust and resilience”

“Confidence in adopting agentic AI securely starts with governance - test every agent, enforce guardrails, and monitor continuously to ensure trust and resilience”

– Venkata Phani Patelkhana

– Venkata Phani Patelkhana

Technical Software Architect, Dell

Technical Software Architect, Dell

CISO Priorities

Where Security Leaders Are Investing Next

Where Security Leaders Are Investing Next

CISOs are shifting from reactive controls to architectural guardrails built specifically for autonomous behavior.

CISOs are shifting from reactive controls to architectural guardrails built specifically for autonomous behavior.

60%

60%

prioritize Policy Guardrails, Runtime Enforcement, and AI Traffic Monitoring as 2026’s top investment areas.

94%

94%

plan to evaluate purpose-built agentic AI security platforms to handle multi-agent, multi-tool execution environments.

"Guardrails are essential for Agentic AI Security—they must be thoroughly verified, rigorously tested for their intended purpose, and strictly enforced to ensure compliance"

– Krantikishor Bora

Director - Information Security Risk, GoDaddy

"Visibility is the biggest gap today. You can’t govern or enforce guardrails if you don’t know what your agents are doing. Without observability, every control is guesswork."

– Suhel Khan

CISO at Chargebee

"Observability is the primary defense. Once you have robust observability, you can use tools or build processes to act on this data"

– Phani Kotharu

Sr Director, AI Security, TIAA

"The only way to stay ahead of the curve is to embed security into the entire lifecycle of Agentic AI systems. A 'secure-by-design' approach is not just a best practice; it's a prerequisite for responsible AI adoption."

– Jackie Mak

Director, Cyber Threat Management, KPMG US

Download the Full 2025 State of Agentic AI Security Report

See how your organization compares, and what leading teams are doing next.

Inside, you’ll find:

Current trends in Agentic AI security

How enterprises are adopting Agentic AI and Implementing Security controls.

What CISOs are prioritizing for 2026

"The biggest concern for AppSec is the speed. Agentic AI is being adopted far faster than security teams can assess or secure the risks."

– Bala Thripura Akasam

Application Security Manager, Tapestry

"The biggest concern for AppSec is the speed. Agentic AI is being adopted far faster than security teams can assess or secure the risks."

– Bala Thripura Akasam

Application Security Manager, Tapestry

"The biggest concern for AppSec is the speed. Agentic AI is being adopted far faster than security teams can assess or secure the risks."

– Bala Thripura Akasam

Application Security Manager, Tapestry