SailPoint Unifies Human, Machine, and AI Agent Identity Security
- 6 days ago
- 2 min read
SailPoint is expanding its identity security platform to address a problem rapidly moving beyond traditional employee access: the growing population of AI agents, service accounts, software bots, and other non-human identities operating inside enterprise environments.
The company introduced a unified SailPoint Identity Security solution that combines its newly available Agentic Fabric with Human Fabric, an evolution of the SailPoint Identity Security Cloud. The platform is designed to continuously discover identities, govern their access, and respond to security risks across both human and automated workforces.
The launch reflects a broader shift in enterprise cybersecurity. Identity systems were historically built around employees joining, changing roles, and leaving organizations. AI agents operate differently. They can create credentials, connect to applications, interact with sensitive data, and perform tasks at machine speed, often without clear ownership or consistent oversight.
SailPoint research found that 97 percent of AI agents have access to sensitive data, while only 21 percent of organizations are highly confident in their ability to manage AI agent security risks.
“SailPoint Identity Security represents a fundamental shift in how organizations must neutralize identity vulnerabilities in an AI-driven world,” said Chandra Gnanasambandam, SailPoint’s executive vice president of product and chief technology officer. “We are moving the industry beyond static compliance and into an active, continuous security loop.”
Human Fabric is intended to move employee identity governance away from scheduled access reviews and toward real-time controls. SailPoint said the technology can detect privilege creep, feed identity context into security operations workflows, and provide just-in-time administrative access that expires when a task is completed.
Agentic Fabric extends that model to AI agents and machine identities. The product uses endpoint and browser sensors to identify automated accounts, credentials, AI tools, and Model Context Protocol servers that may not appear in conventional identity inventories.
Security teams can then apply ownership policies, redact sensitive personal information before prompts reach large language models, and disable compromised or unauthorized agents through a centralized kill switch.
The platform is available as a unified offering, while Agentic Fabric can also be purchased separately.
“Securing the modern enterprise is no longer just about managing employee access; it is also about governing the complex relationships between human owners and their automated AI agents,” said Serena Tejani, cybersecurity partner at KPMG Canada.
SailPoint’s strategy underscores an increasingly urgent reality for security leaders: as companies deploy autonomous AI systems, every agent becomes another identity that must be discovered, monitored, and held accountable.


