Saved in:
Bibliographic Details
Main Author: Bhavinkumar Jayswal
Format: Recurso digital
Language:
Published: Zenodo 2026
Online Access:https://doi.org/10.5281/zenodo.18633766
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866901829957189632
author Bhavinkumar Jayswal
author_facet Bhavinkumar Jayswal
contents <p>Enterprise networking is undergoing a fundamental transition as Secure Access Service Edge (SASE), cloud-native architectures, and software-defined control planes converge with advances in artificial intelligence. A new class of systems, referred to as <em>Agentic AI</em>, is emerging within these environments. Unlike traditional automation, agentic systems exhibit goal-directed behavior, adapt to environmental feedback, and execute actions with limited or no human intervention. While such autonomy promises significant gains in efficiency and resilience, it also destabilizes the deterministic assumptions underlying conventional Zero Trust and SASE security models.</p> <p>This paper introduces Agent-Aware Zero Trust, a security framework designed to govern autonomous, probabilistic agents operating within enterprise SASE and cloud environments. The framework treats autonomous agents as first-class identities subject to continuous behavioral verification, policy-bounded autonomy, and probabilistic trust enforcement. A threat taxonomy specific to agentic systems is presented, including objective drift, delegated privilege escalation, control-plane lateral movement, emergent multi-agent behavior, and decision opacity. To mitigate these risks, the paper proposes architectural mechanisms including cryptographic agent identity, hierarchical policy envelopes, dynamic trust decay models, telemetry-driven supervision, and deterministic kill-switches.</p> <p>This work presents a conceptual and architectural security framework, grounded in enterprise-scale SASE and cloud operations, rather than a controlled experimental or simulation-based evaluation. The objective is to establish a defensible security model for enterprises seeking to deploy autonomous networking systems while maintaining governance, compliance, and human oversight.</p>
format Recurso digital
id zenodo_https___doi_org_10_5281_zenodo_18633766
institution Zenodo
language
publishDate 2026
publisher Zenodo
record_format zenodo
spellingShingle Agent-Aware Zero Trust: A Framework for Securing Agentic AI in SASE and Cloud Architectures
Bhavinkumar Jayswal
<p>Enterprise networking is undergoing a fundamental transition as Secure Access Service Edge (SASE), cloud-native architectures, and software-defined control planes converge with advances in artificial intelligence. A new class of systems, referred to as <em>Agentic AI</em>, is emerging within these environments. Unlike traditional automation, agentic systems exhibit goal-directed behavior, adapt to environmental feedback, and execute actions with limited or no human intervention. While such autonomy promises significant gains in efficiency and resilience, it also destabilizes the deterministic assumptions underlying conventional Zero Trust and SASE security models.</p> <p>This paper introduces Agent-Aware Zero Trust, a security framework designed to govern autonomous, probabilistic agents operating within enterprise SASE and cloud environments. The framework treats autonomous agents as first-class identities subject to continuous behavioral verification, policy-bounded autonomy, and probabilistic trust enforcement. A threat taxonomy specific to agentic systems is presented, including objective drift, delegated privilege escalation, control-plane lateral movement, emergent multi-agent behavior, and decision opacity. To mitigate these risks, the paper proposes architectural mechanisms including cryptographic agent identity, hierarchical policy envelopes, dynamic trust decay models, telemetry-driven supervision, and deterministic kill-switches.</p> <p>This work presents a conceptual and architectural security framework, grounded in enterprise-scale SASE and cloud operations, rather than a controlled experimental or simulation-based evaluation. The objective is to establish a defensible security model for enterprises seeking to deploy autonomous networking systems while maintaining governance, compliance, and human oversight.</p>
title Agent-Aware Zero Trust: A Framework for Securing Agentic AI in SASE and Cloud Architectures
url https://doi.org/10.5281/zenodo.18633766