SOC 2 audits and the challenge of identifying AI agents
BleepingComputer says in sponsored content featuring Token Security that SOC 2 controls can pass an audit without answering which AI agents are running, who authorized them or whose credentials they use.
TLDR
In sponsored content, BleepingComputer says AI agents can operate through human credentials and take actions that existing SOC 2 controls may not distinguish from human activity. Token Security argues that SOC 2 needs to adapt to address security gaps around agent identities.
SOC 2 audits and the challenge of identifying AI agents
BleepingComputer says in sponsored content featuring Token Security that SOC 2 controls can pass an audit without answering which AI agents are running, who authorized them or whose credentials they use.
TLDR
In sponsored content, BleepingComputer says AI agents can operate through human credentials and take actions that existing SOC 2 controls may not distinguish from human activity. Token Security argues that SOC 2 needs to adapt to address security gaps around agent identities.