SailPoint Unveils AI Agent Governance and Autonomous Identity Security
SailPoint introduces Agentic Fabric and Human Fabric innovations to provide visibility into AI agents, automate compliance, and replace permanent access keys with temporary permissions.

SailPoint has announced significant new capabilities across its Agentic Fabric (SAF) and Human Fabric (SHF) solutions, designed to enhance identity security in an era increasingly dominated by artificial intelligence. These innovations aim to provide enterprises with comprehensive visibility into AI agents, ensure continuous compliance across both human and machine workflows, and transition identity security from a static, often outdated, compliance check to a dynamic, real-time automated defense.
The company's research indicates a rapid adoption of AI agents, with 79% of enterprises already running them in production, yet a significant gap exists in security governance, as only 2% have deployed specialized tools for AI agent identity security. This leaves organizations vulnerable, caught between slow, static reviews and dashboards that merely flag risks without offering remediation.
To address this, SailPoint is introducing Autonomous Agents, a fleet of specialized AI agents designed to govern and protect the agentic ecosystem. These agents leverage identity context to distinguish legitimate activity from malicious intent, enabling them to stop threats while allowing productive agents to continue operating. They actively manage the agentic lifecycle by continuously monitoring runtime actions, intercepting threats, and dynamically adjusting permissions to enforce zero standing privilege at machine speed.
"Moving beyond Zero Trust to Autonomous Identity allows organizations to master the converged human-plus-AI workforce, eliminate invisible risk, and innovate with complete confidence," stated Matt Mills, President of SailPoint. Chandra Gnanasambandam, EVP of Product and Chief Technology Officer, added, "The only way to govern autonomous machines is with autonomous machine defense. We’ve built Autonomous Agents so enterprises can stop the threat, save the good agents, and bring human and non-human identity into real-time."
SailPoint's new Autonomous Identity Security Posture Management (A-ISPM) goes beyond traditional dashboards. Leveraging the live identity context within SailPoint Atlas, A-ISPM continuously detects dormant accounts, partially offboarded identities, orphaned access, shadow admins, and other hidden risks. It then facilitates remediation through one-click fixes or fully automated policy enforcement, tailored to the organization's specific needs.
Further platform enhancements include advanced automation workflows within the SailPoint Atlas engine to help enterprises scale security, and the launch of IdentityIQ 9.0, which simplifies access governance for business users. SailPoint is also expanding its global infrastructure with a new data center in South Korea to meet stringent compliance standards like FedRAMP High, PCI DSS 4.0, and EU Sovereign Cloud.
These innovations are designed to deliver four core customer outcomes: comprehensive discovery of all agents, credentials, and data stores; enabling compliance by generating auditable evidence for AI agent governance; strengthening security posture by eliminating standing privilege with Just-in-Time provisioning; and streamlining operations through next-generation access requests and AI-assisted policy drafting. The platform also introduces new endpoint and browser sensors, SIEM and XDR telemetry, and enhanced data access security integrations.