Agents Are Like Teenagers: Governing at Machine Speed with Mastercard's Alissa Abdullah, PhD ("Dr. Jay") and Arjun Ramakrishnan
"I think we're moving from guardrails to this new buzzword called a kill switch. Everybody wants to build a kill switch. But defining the technical requirements of how do you implement a kill switch is really tricky."
@dralissajay, Deputy Chief Security Officer at Mastercard, and Arjun Ramakrishnan, Senior Principal Cybersecurity Architect at
@Mastercard, sat down with us live from
@BlackHatEvents. Dr. Jay tells us governing agents is like governing teenagers: you set boundaries, monitor for drift, and revoke their car keys or access if the boundary is exceeded.
We get into:
> Why real time governance means auditing every agent action
> Why teams must have the ability to instantly revoke agent access
> Why just in time access means something completely different when agents run at machine speed
>Why an agent may need more access than the human it works for
> Why not one but many kill switches are needed
TIMESTAMPS
(01:40) Security for AI, from AI, and with AI: the three layers behind trust at scale
(03:00) The autonomous SOC, and why the regulators aren't there yet
(03:40) Defenders have to be right every time. Adversaries have to be right once.
(05:00) The Hugging Face sandbox escape, read from the adversary's side
(07:00) Everybody wants a kill switch. How do you secure your own kill switch from attackers?
(08:20) Human in the loop, on the loop, out of the loop, and the shift from prevention to resilience
(11:20) Agents are teenagers: the car keys, the Tesla app, and the governor
(13:50) Governance is still a meeting, and that does not work in an AI era
(15:00) Using AI to govern AI
(16:00) You cannot provision access to an agent the way you provision it to a person
(16:40) Every tool call, every action needs to be authorized
(18:40) Good intent, wrong action: agents have a mission, not a moral compass
(20:30) The classified systems model: an agent with more access than its owner
(21:40) One intercepted agent out of tens of thousands you already trust
(23:20) An agent breaching from inside out and then outside in
(28:40) Vulnerability free releases, and why defenders need the raw log data