Giving Your AI Agent Its Own Identity with Ashish Rajan

Giving Your AI Agent Its Own Identity with Ashish Rajan

Your newest hire has a Google Workspace account, a Slack login and a laptop. It never sleeps, and it never asks before it acts. So who owns its identity? Ron welcomes back Ashish Rajan, CISO at Techriot.io and researcher with AI Security Lab, who spent 17 years in identity, cloud security and security leadership. His take: vendors haven't solved AI identity, and the open questions are on your side, not the product's. Ashish got into identity after failing his OSCP three times: if he couldn't break in, he wouldn't let anyone else in. Now he reviews Ron's own setup, where Hacker Valley's AI agent, Jennifer Romani, has her own accounts just like an employee. Ashish explains how that call changes from a one-laptop small business to an enterprise where every developer's machine acts like five. They also cover the Gemini breach headlines, swarms of agents and AI Security Lab, which Ashish describes as what OWASP is for AppSec, but for AI security. The uncomfortable truth: defenders have the same models attackers do, but attackers don't wait for a pull request review. Ashish calls that a people problem, not a technology problem. He also shares the question he asks before handing anything to an AI agent: can this be reversed? Impactful Moments

00:00 - Introduction 02:30 - Busting a myth: AI identity isn't solved 05:30 - Three OSCP attempts and a pivot to IAM 07:00 - Why AI identity is more complex than ever 09:15 - Hot or not: giving an AI agent its own accounts 11:10 - One laptop, five machines in the enterprise 12:50 - AI gateways and developer observability 14:05 - Where Ashish would spend his AI security budget 18:20 - Why defenders don't hack themselves first 19:05 - The real problem is people 22:15 - Swarms of agents are coming 23:50 - What AI Security Lab is building 26:35 - Never share your credit card with AI 28:40 - Ron's callback: can it be reversed?

Links Connect with Ashish Rajan on LinkedIn: https://www.linkedin.com/in/ashishrajan/

Listen to Ashish's first Hacker Valley Studio episode: https://www.podbean.com/pw/pbblog-bpaij-51b280 – Check out our upcoming events: https://www.hackervalley.com/livestreams Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com Become a sponsor of the show: https://hackervalley.com/work-with-us/

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(443)

From Read Access to Admin with just an AI Agent

From Read Access to Admin with just an AI Agent

What if someone got full admin access to your company's platform, including your CRM, your payments app, and your private messages, and the only tool they used was an AI chatbot? Can AI models really ...

23 Sep 31min

Do You Know What Your Agent is Doing at 3AM? with Amir Ofek

Do You Know What Your Agent is Doing at 3AM? with Amir Ofek

Every AI agent in your environment inherits someone's permissions, and most teams have no idea what those agents are actually doing with them. Amir Ofek, CEO and co-founder of Aizome, shares how to ma...

16 Sep 38min

Cloud Broke My World Before AI Did with Dr. Jay Abdullah

Cloud Broke My World Before AI Did with Dr. Jay Abdullah

Cybersecurity has survived cloud, mobile, and a dozen other "biggest disruptions of our lifetime," and each one felt unprecedented in the moment. In this episode, Ron sits down with Alyssa "Dr. Jay" A...

9 Sep 36min

The Dashboard Is Dead, Long Live the Harness with Myke Lyons

The Dashboard Is Dead, Long Live the Harness with Myke Lyons

Security teams spent decades begging for more logs. Now the enterprise is generating petabytes a day, and the thing drowning in it isn't just the SOC anymore, it's your AI agents too. In this episode,...

1 Sep 35min

The AI Already Inside Your Company with Russell Spitler & Richard Penshorn

The AI Already Inside Your Company with Russell Spitler & Richard Penshorn

A year ago, the average employee held about 30 OAuth grants. Today that number has risen to 88, and it isn't slowing down. Ron sits down with Russell Spitler, co-founder and CEO of Nudge Security, and...

25 Aug 35min

Humans First: Adobe's Rule for Building AI Security Tools with John Gillis

Humans First: Adobe's Rule for Building AI Security Tools with John Gillis

Imagine how much investigation time your SOC could get back if the busywork just disappeared. Ron sits down with John Gillis, Staff Security AI Engineer at Adobe, who built an in-house AI investigatio...

19 Aug 34min

Let AI Do More Without Surrendering Your Judgment with Jen Easterly

Let AI Do More Without Surrendering Your Judgment with Jen Easterly

Fresh off the showroom floor at Black Hat 2026, Ron brings back some hot takes from the crowd. Nearly every booth he visited, including the Exaforce booth, was pushing in the same direction. Trust in ...

14 Aug 23min

Populärt inom Utbildning

historiepodden-se
det-skaver
rss-bara-en-till-om-beroende-medberoende
nu-blir-det-historia
harrisons-dramatiska-historia
not-fanny-anymore
roda-vita-rosen
rss-viktmedicinpodden
johannes-hansen-podcast
allt-du-velat-veta
rss-foraldramotet-bring-lagercrantz
rikatillsammans-om-privatekonomi-rikedom-i-livet
i-vantan-pa-katastrofen
rss-dr-bjorklund
rss-max-tant-med-max-villman
sa-in-i-sjalen
rss-traningsklubben
rss-basta-livet
rss-sjalsligt-avkladd
rss-beratta-alltid-det-har