• kpk ETH Primekpk ETH Prime(KPK ETH PRIME)$2,034.900.01%
  • bitcoinBitcoin(BTC)$70,495.001.33%
  • ethereumEthereum(ETH)$2,071.071.96%
  • kpk ETH Yieldkpk ETH Yield(KPK ETH YIELD)$2,030.62-0.04%
  • tetherTether(USDT)$1.000.01%
  • binancecoinBNB(BNB)$651.732.18%
  • rippleXRP(XRP)$1.390.74%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$86.801.97%
  • tronTRON(TRX)$0.2893370.43%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.03-0.87%
  • dogecoinDogecoin(DOGE)$0.0943212.32%
  • whitebitWhiteBIT Coin(WBT)$55.560.73%
  • USDSUSDS(USDS)$1.000.00%
  • cardanoCardano(ADA)$0.2628131.28%
  • bitcoin-cashBitcoin Cash(BCH)$459.592.38%
  • HyperliquidHyperliquid(HYPE)$37.658.77%
  • leo-tokenLEO Token(LEO)$9.08-1.06%
  • moneroMonero(XMR)$353.640.98%
  • chainlinkChainlink(LINK)$9.071.28%
  • Ethena USDeEthena USDe(USDE)$1.00-0.07%
  • CantonCanton(CC)$0.1501661.44%
  • stellarStellar(XLM)$0.1600361.97%
  • USD1USD1(USD1)$1.000.00%
  • RainRain(RAIN)$0.0091070.15%
  • daiDai(DAI)$1.000.01%
  • litecoinLitecoin(LTC)$54.480.95%
  • avalanche-2Avalanche(AVAX)$9.600.05%
  • hedera-hashgraphHedera(HBAR)$0.0948600.99%
  • paypal-usdPayPal USD(PYUSD)$1.000.01%
  • suiSui(SUI)$0.982.64%
  • zcashZcash(ZEC)$212.50-0.11%
  • shiba-inuShiba Inu(SHIB)$0.0000064.39%
  • the-open-networkToncoin(TON)$1.332.83%
  • crypto-com-chainCronos(CRO)$0.0759600.76%
  • tether-goldTether Gold(XAUT)$5,140.11-0.15%
  • World Liberty FinancialWorld Liberty Financial(WLFI)$0.1014930.81%
  • pax-goldPAX Gold(PAXG)$5,178.36-0.21%
  • polkadotPolkadot(DOT)$1.520.82%
  • MemeCoreMemeCore(M)$1.440.45%
  • uniswapUniswap(UNI)$3.931.61%
  • Pi NetworkPi Network(PI)$0.2406774.82%
  • mantleMantle(MNT)$0.712.20%
  • Circle USYCCircle USYC(USYC)$1.120.00%
  • BittensorBittensor(TAO)$211.927.27%
  • okbOKB(OKB)$95.46-0.03%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • SkySky(SKY)$0.0807918.13%
  • Global DollarGlobal Dollar(USDG)$1.00-0.01%
  • AsterAster(ASTER)$0.712.57%
TradePoint.io
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop
No Result
View All Result
TradePoint.io
No Result
View All Result

Enterprise MCP adoption is outpacing security controls

February 27, 2026
in AI & Technology
Reading Time: 6 mins read
A A
Enterprise MCP adoption is outpacing security controls
ShareShareShareShareShare

AI agents now carry more access and more connections to enterprise systems than any other software in the environment. That makes them a bigger attack surface than anything security teams have had to govern before, and the industry doesn’t yet have a framework for it. “If that attack vector gets utilized, it can result in a data breach, or even worse,” said Spiros Xanthos, founder and CEO of Resolve AI, speaking at a recent VentureBeat AI Impact Series event.

Traditional security frameworks are built around human interactions. There’s not yet an agreed-upon construct for AI agents that have personas and can work autonomously, noted Jon Aniano, SVP of product and CRM applications at Zendesk, at the same event. Agentic AI is moving faster than enterprises can build guardrails — and Model Context Protocol (MCP), while decreasing integration complexity, is making the problem worse.

YOU MAY ALSO LIKE

Google Play will let you try a game before you buy it

Nvidia’s new open weights Nemotron 3 super combines three different architectures to beat gpt-oss and Qwen in throughput

“Right now it’s an unsolved problem because it’s the wild, wild West,” Aniano said. “We don’t even have a defined technical agent-to-agent protocol that all companies agree on. How do you balance user expectations versus what keeps your platform safe?”

MCP still “extremely permissive”

Enterprises are increasingly hooking into MCP servers because they simplify integration between agents, tools and data. However, MCP servers tend to be “extremely permissive,” he said.

They are “actually probably worse than an API,” he contended, because APIs at least have more controls in place to impose upon agents.

Today’s agents are acting on behalf of humans based on explicit permissions, thus establishing human accountability. “But you might have tens, hundreds of agents in the future with their own identity, their own access,” said Xanthos. “It becomes a very complex matrix.”

Even as his startup is developing autonomous AI agents for site reliability engineering (SRE) and system management, he acknowledged that the industry “completely lacks the framework” for autonomous agents.

“It’s completely on us and to anybody who builds agents to figure out what restrictions to give them,” he said. And customers must be able to trust those decisions.

Some existing security tools do offer fine-grained access — Splunk, for instance, developed a method to provide access to certain indexes in underlying data stores, he noted — but most are broader and human-oriented.

“We’re trying to figure this out with existing tools,” he said. “But I don’t think they’re sufficient for the era of agents.”

Credit: Michael O’Donnell, ShinyRedPhoto

Who’s accountable when an AI mis-authenticates a user?

At Zendesk and other customer relationship management (CRM) platform providers, AI is involved in a number of user interactions, Aniano noted — in fact, now it’s at a “volume and a scale that we haven’t contemplated as businesses and as a society.”

It can get tricky when AI is helping out human agents; the audit trail can become a labyrinth.

“So now you’ve got a human talking to a human that’s talking to an AI,” Aniano noted. “The human tells the AI to take action. Who’s at fault if it’s the wrong action?” This becomes even more complicated when there are “multiple pieces of AI and multiple humans” in the mix.

To prevent agents from going off the rails, Zendesk tends to be “very strict” about access and scope; however, customers can define their own guardrails based on their needs. In most cases, AI can access knowledge sources, but they’re not writing code or running commands on servers, Aniano said. If an AI does call an API, it is “declaratively designed” and sanctioned, and actions are specifically called out.

However, customer demand is flooding these scenarios and “we’re kind of holding the gates right now,” he said.

The industry must develop concrete standards for agent interactions. “We’re entering a world where, with things like MCP that can auto-discover tools, we’re going to have to create new methods of safety for deciding what tools these bots can interact with,” said Aniano.

When it comes to security, enterprises are rightly concerned when AI takes over authentication tasks, such as sending out and processing one-time passwords (OTP), SMS codes, or other two-step verification methods, he said. What happens if an AI mis-authenticates or misidentifies someone? This can lead to sensitive data leakage or open the door for attackers.

“There’s a spectrum now, and the end of that spectrum today is a human,” Aniano said. However, “the end of that spectrum tomorrow might be a specialized agent designed to do the same kind of gut feeling or human-level interaction.”

Customers themselves are on a spectrum of adoption and comfort. In certain companies — particularly financial services or other highly-regulated environments — humans still must be involved in authentication, Aniano noted. In other cases, legacy companies or old guards only trust humans to authenticate other humans.

He noted that Zendesk is experimenting with new AI agents that are “a little more connected to systems,” and working with a select group of customers around guardrailing.

Standing authorization is coming

In some future, agents may actually be more trusted than humans to do some tasks, and granted permissions “way beyond” what humans have today, Xanthos said. But we’re a long way from that, and, for the most part, the fear of something going wrong is what’s holding enterprises back.

“Which is a good fear, right? I’m not saying that it is a bad thing,” he said. Many enterprises simply aren’t yet comfortable with an agent doing all steps of a workflow or fully closing the loop by itself. They still want human review.

Resolve AI is on the cusp of giving agents standing authorization in a few cases that are “generally safe,” such as in coding; from there they’ll move to more open-ended scenarios that are not all that risky, Xanthos explained. But he acknowledged that there will always be very risky situations where AI mistakes could “mutate the state of the production system,” as he put it.

Ultimately, though: “There’s no going back, obviously; this is moving faster than maybe even mobile did. So the question is what do we do about it?”

What security teams can do now

Both speakers pointed to interim measures available within existing tooling. Xanthos noted that some tools — Splunk among them — already offer fine-grained index-level access controls that can be applied to agents. Aniano described Zendesk’s approach as a practical starting point: declaratively designed API calls with explicitly sanctioned actions, strict access and scope limits, and human review before expanding agent permissions.

The underlying principle, as Aniano put it: “We’re always checking those gates and seeing how we can widen the aperture” — meaning don’t grant standing authorization until you’ve validated each expansion.

Credit: Source link

ShareTweetSendSharePin

Related Posts

Google Play will let you try a game before you buy it
AI & Technology

Google Play will let you try a game before you buy it

March 12, 2026
Nvidia’s new open weights Nemotron 3 super combines three different architectures to beat gpt-oss and Qwen in throughput
AI & Technology

Nvidia’s new open weights Nemotron 3 super combines three different architectures to beat gpt-oss and Qwen in throughput

March 11, 2026
I guess this wasn’t an Xbox after all
AI & Technology

I guess this wasn’t an Xbox after all

March 11, 2026
NVIDIA Releases Nemotron 3 Super: A 120B Parameter Open-Source Hybrid Mamba-Attention MoE Model Delivering 5x Higher Throughput for Agentic AI
AI & Technology

NVIDIA Releases Nemotron 3 Super: A 120B Parameter Open-Source Hybrid Mamba-Attention MoE Model Delivering 5x Higher Throughput for Agentic AI

March 11, 2026
Next Post
Here’s everything in the Ellisons’ massive media empire if Paramount-Warner Bros. deal proceeds

Here's everything in the Ellisons' massive media empire if Paramount-Warner Bros. deal proceeds

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
Ticketmaster parent Live Nation strikes deal with DOJ to settle antitrust suit

Ticketmaster parent Live Nation strikes deal with DOJ to settle antitrust suit

March 9, 2026
Hallie Jackson NOW –  February 25 | NBC News NOW

Hallie Jackson NOW – February 25 | NBC News NOW

March 11, 2026
He Borrowed 0,000 And Lost It In A Scam

He Borrowed $250,000 And Lost It In A Scam

March 7, 2026

About

Learn more

Our Services

Legal

Privacy Policy

Terms of Use

Bloggers

Learn more

Article Links

Contact

Advertise

Ask us anything

©2020- TradePoint.io - All rights reserved!

Tradepoint.io, being just a publishing and technology platform, is not a registered broker-dealer or investment adviser. So we do not provide investment advice. Rather, brokerage services are provided to clients of Tradepoint.io by independent SEC-registered broker-dealers and members of FINRA/SIPC. Every form of investing carries some risk and past performance is not a guarantee of future results. “Tradepoint.io“, “Instant Investing” and “My Trading Tools” are registered trademarks of Apperbuild, LLC.

This website is operated by Apperbuild, LLC. We have no link to any brokerage firm and we do not provide investment advice. Every information and resource we provide is solely for the education of our readers. © 2020 Apperbuild, LLC. All rights reserved.

No Result
View All Result
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop

© 2023 - TradePoint.io - All Rights Reserved!