RSA Agent ID

Your agents can act for you. Make sure they answer to you. Put RSA Agent ID to work across the enterprise and make high-assurance identity the foundation of your agentic security.

Know every agent. Control every action.

The agentic identity security platform for highly-regulated industries.

Agentic security will be won or lost on identity.

Agent autonomy has outrun identity security. They’re holding credentials. Armed with permissions. Making decisions at machine speed. Most organizations have lost count, lost sight, and lost the chain of command. The identity crisis is already unfolding.

  • 1
  • 10001
  • 20001
  • 30001
  • 40001
  • 50001
  • 60001
  • 70001
  • 80001
  • 90001
  • 100001
  • 110001
  • 120001
  • 130001
  • 140001
  • 150000

AI agents the average Fortune 500 enterprise is projected to run by 2028, up from fewer than 15 in 2025.

  • 1%
  • 6%
  • 11%
  • 16%
  • 21%
  • 26%
  • 31%
  • 36%
  • 41%
  • 46%
  • 51%
  • 56%
  • 61%
  • 66%
  • 71%
  • 74%

Of IT leaders say AI agents create a new attack vector into their organization.

  • 1%
  • 2%
  • 3%
  • 4%
  • 5%
  • 6%
  • 7%
  • 8%
  • 9%
  • 10%
  • 11%
  • 12%
  • 13%

Of organizations believe they have the right AI agent governance in place.

Find them. Secure them. Govern them.

Built for complexity. Proven at scale. Designed for organizations where the generalists aren’t good enough.

Discover

What agents are operating in your environment?

Find agents and MCP servers, sanctioned and shadow, across supported identity, cloud, endpoint and Gateway sources. Bring them into one registry with:


  • A named owner from the day each agent is found
  • A classification, risk tier and lifecycle state
  • Correlation to the identity provider you already run
Secure

Who is accountable for each?

Apply policy to each call routed through the AI/MCP Gateway:

  • Control access at the tool and argument level
  • Make sure delegated authority can only narrow
  • Require a named, authenticated human to approve actions you mark high-risk
  • Revoke access when an agent is decommissioned
Govern

Can anyone stop them?

Minimize privilege, certify access, and deliver evidence for ten industry frameworks.

  • Continuous certification
  • Risk-based access reviews
  • Lifecycle automation
Every Identity. Secured.
RSA ID Plus
invisible

Secure access across cloud, hybrid and on-premises environments with identity and access management solutions built for high-assurance.

Learn more
RSA Governance & Lifecycle

Bring visibility, accountability and lifecycle control to access across your organization.

Learn more
RSA SecurID
invisible

Protect critical access with phishing-resistant authentication trusted in the world’s most demanding environments.

Learn more
RSA Risk AI
invisible

Use behavioral intelligence to identify risk and inform access decisions as conditions change.

Learn more

Make autonomy answer to you.

Keep enforcement close, human authority clear, and every governed action on the record.

Sovereignty stays with you

Put the RSA Agent ID Gateway where your requirements demand. Host it in your environment and keep its decisions, keys and evidence on your side. Choose the region for tenant data. Go fully air-gapped and self-managed in 2027.

Humans hold the line

Every agent starts with an owner. Every high-risk action ends with a verified human decision. RSA Agent ID preserves the chain of command from authorization to action.

Regulators, ask away

Every governed action builds the record for you. RSA Agent ID captures the agent, the rule, the human, the tool, and the delegation chain. Then it maps that evidence to ten major frameworks and sends it to your SIEM. So you can meet every examiner with evidence, not explanations.

Build on your identity provider. Not around it.

Keep the provider. Make agent authority enforceable. RSA Agent ID works with RSA ID Plus, Microsoft Entra, AWS IAM, Microsoft Defender, and more, and uses the credentials they already use. Your provider establishes authority. Agent ID makes sure agents stay within it.

Frequently asked questions

What is RSA Agent ID?
RSA Agent ID is an agentic AI security platform for government, financial services, and other highly-regulated organizations. It discovers AI agents and MCP servers, assigns each one an accountable human owner, enforces policy on every call through an AI/MCP Gateway you can deploy inside your own boundary, and records audit evidence of every agent action.
When does RSA Agent ID ship?
Discover and Secure ship November 16, 2026. Govern ships early 2027.
How does RSA Agent ID find shadow agents?
RSA Agent ID Discover correlates multiple discovery signals to find sanctioned and unsanctioned agents and MCP servers. It registers each one with a named owner, risk tier, and lifecycle state tied to your identity provider. IBM’s 2026 Cost of a Data Breach Report puts the average shadow AI incident at $5.39 million.
What governance is available before Govern ships?
Discover and Secure establish the governance foundation at launch: classification, risk tiering, mandatory ownership, lifecycle states and evidence mapping. Continuous certification, risk-based access reviews and lifecycle automation arrive with Govern in early 2027.
Does RSA Agent ID replace my identity provider?
No. RSA Agent ID integrates with RSA ID Plus, Microsoft Entra ID, Okta, AWS IAM, CrowdStrike, Microsoft Defender, and more today, with additional agent platform integrations planned.
What is an AI/MCP Gateway?
The Model Context Protocol (MCP) is an open standard that lets AI agents call external tools and data sources. An MCP gateway sits between agents and those tools and checks each call against policy before it runs. RSA Agent ID Secure runs this gateway RSA-hosted or in your private cloud, on-premises, or air-gapped environment.
Where can I run the Gateway?
Gateways can be RSA-hosted or customer-hosted in cloud, hybrid or on-premises environments. A fully air-gapped, self-managed version is coming in 2027.

Skip the promises. See the proof.

Get a firsthand look at RSA Agent ID and see what happens when agents answer to a higher standard.