CSA SURVEY REPORT 2026
Securing Autonomous AI Agents starts with identity governance
The Cloud Security Alliance (CSA)’s Securing Autonomous AI Agents survey — commissioned by Strata Identity — reveals a full-blown identity crisis as organizations struggle to move agentic programs from experimentation to production.
Only 18% of security leaders are highly confident their IAM can manage agent identities. Discover how 285+ IT and security professionals are navigating the governance gap.
The AI agent identity crisis, by the numbers
18%
are highly confident their IAM systems can effectively manage agent identities
44%
rely on static API keys for agent authentication — a legacy method unfit for autonomous systems
21%
maintain a real-time inventory of active AI agents in their environment
Traditional IAM can’t secure autonomous agents
Enterprises are facing mission-critical challenges:
- Static credentials and shared accounts create persistent, unmonitored access pathways that agents can exploit at scale.
- Fragmented ownership across Security (39%), IT (32%), and AI functions (13%) leaves accountability gaps in agent governance.
- Only 28% can trace agent actions back to a human sponsor across all environments — creating serious compliance risks.
- 68% require human-in-the-loop oversight but lack architectural approaches for integrating checkpoints at policy-defined thresholds.
- Agent adoption is accelerating — 70%+ expect to manage dozens to hundreds of agents by next year.
Unless tackled, these problems will expose organizations to increased risk and put them further behind. Download the 2024 report today to see what’s happening and prepare for the challenges of 2025 now.
TRUSTED BY
About Strata Identity and Cloud Security Alliance
Strata Identity enables organizations to secure, modernize, and manage human and agentic user identities without disrupting existing infrastructure. The Maverics Platform provides a unified identity layer that extends Zero Trust policies, eliminates redundant IDPs, and ensures continuous access during outages or transitions.
Cloud Security Alliance (CSA) defines and raises awareness for best practices in secure cloud computing. Leveraging industry expertise, CSA provides research, education, and certifications that benefit the entire cloud community, from providers to governments and entrepreneurs.