Descope Introduces Agentic Identity Control Plane for Enhanced Security in AI Agent Identity Management
Descope has launched the Agentic Identity Control Plane, a significant advancement in its mission to become the leading identity provider for AI agents. This solution empowers security teams to implement policy-based governance, auditing, and identity management across their AI agent and Model Context Protocol (MCP) ecosystems. As the adoption of AI agents, Large Language Models (LLMs), and MCP servers accelerates, security leaders are increasingly concerned about the risks associated with unauthorized AI agent adoption. A survey of over 400 Customer Identity and Access Management (CIAM) decision-makers revealed that 57% are apprehensive about AI agents accessing or sharing data without proper authorisation. Effective identity management is essential for the secure integration of agentic AI, particularly as five of the OWASP Top 10 Threats for Generative AI are linked to authentication and authorisation vulnerabilities.
The Descope no/low code external Identity and Access Management (IAM) platform simplifies the creation, modification, and management of identity journeys for consumers, business customers, partners, AI agents, and MCP servers through visual workflows. Numerous organisations, including GoFundMe, Databricks, Navan, and You.com, leverage Descope to enhance customer experiences, mitigate account takeover risks, and gain comprehensive insights into customer and machine identities. The recent release builds upon the previously announced Agentic Identity Hub, which addresses authentication and authorisation challenges for developers of AI-compatible APIs and remote MCP servers. Key features of the Agentic Identity Control Plane include scope-based access control, enterprise-grade monitoring and auditing capabilities, and comprehensive identity lifecycle management for AI agents. These enhancements provide security teams with critical oversight, enabling them to manage risks effectively while supporting the responsible adoption of agentic AI and MCP technologies.
Categories: Identity Management, Security Governance, Access Control
Tags: Agentic Identity Control Plane, Policy-based Governance, Identity Management, AI Agents, Model Context Protocol, Unauthorized Access, Security Oversight, Access Control, Monitoring and Auditing, Identity Lifecycle Management