Article

    Cyber News / Article / CrowdStrike Announces Agentic Identity Provider

    CrowdStrike Announces Agentic Identity Provider
    Ry
    Ryan Terry-9 days ago

    CrowdStrike Announces Agentic Identity Provider

    September 02, 2026

    AI agents are evolving identity as we know it. They execute code, invoke tools, access applications and sensitive data, and take action on behalf of humans and systems. Increasingly, they operate autonomously and delegate work to other agents. They work at machine speed.

    Yet the identity infrastructure enterprises rely on today was built for people and predictable workloads, not autonomous software that can reason, act, and move dynamically across systems. Traditional identity providers force organizations to represent agents through service accounts, API keys, and workload identities. Agents effectively inherit the identity and credentials of the humans they act for, operating under trust established by the existing user. This makes it difficult to distinguish the agent from the person, independently govern what the agent can do, or reliably ensure accountability for its actions. Before an AI agent's access can be continuously governed, the agent itself must first be established as a trusted identity.

    Today at Fal.Con 2026, CrowdStrike is introducing Agentic Identity Provider (Agentic IdP) in CrowdStrike Falcon® Next-Gen Identity Security, creating the identity control plane for the agentic enterprise. Agentic Identity Provider gives every AI agent a trusted identity, connects it to the humans and workloads behind it, and gives it only the access it needs, when it needs it.

    We're also expandingmodern privileged accessacross SaaS applications, endpoints, code repositories, and cloud infrastructure. This extends Continuous Identity and zero standing privileges wherever humans and AI agents operate.

    Together, these innovations advance CrowdStrike's vision for Continuous Identity by establishing trusted identities for AI agents and replacing standing privileges and point-in-time authorization with access that continuously adapts to real-time security and business context.

    Traditional identity providers answer a fundamental question:Who are you?For humans, this answer starts with an established identity tied to an employee, credentials, and an authentication process.

    For AI agents, it isn't as simple. Agents don't onboard like employees. Representing them as traditional service accounts or long-lived credentials creates a dangerous mismatch between how agents operate and how enterprises govern identity.

    CrowdStrike’s Agentic Identity Provider, built for this new model, provides the identity foundation AI agents need before their access can be continuously governed. It can:

    Earlier this year, CrowdStrike introducedContinuous Identity for AI Agentsto bring real-time, context-aware authorization to agent actions. Continuous Identity replaces point-in-time access decisions with dynamic enforcement based on live identity, device, threat, and business context. This capability grants access when it is justified and revokes it the moment conditions change.

    The Agentic Identity Provider establishes who the agent is. Continuous Identity determines what that agent should be allowed to access and what it should be allowed to do continuously. Together, they create an identity model built for autonomous action.

    Standing privilege remains standing risk, whether the identity accessing a critical resource is an AI agent, administrator, developer, or business user. However, traditional privileged access management was designed around a narrow set of administrative accounts and predictable workflows. Today's privileged interactions happen everywhere: in cloud infrastructure, SaaS applications, endpoints, servers, and private enterprise resources.

    CrowdStrike is expanding modern privileged access across these environments. Rather than leaving persistent privilege, modern privileged access grants access only when the task requires it, continuously evaluates it while in use, and revokes it when it is no longer justified.

    CrowdStrike is extending these capabilities across:

    The result is a fundamentally different approach to privileged access. Access isn't trusted simply because it was approved once. It remains trusted only while the identity, device, security, and business context continue to justify it. This distinction becomes even more critical as humans and AI agents increasingly interact with the same applications, infrastructure, and data.

    Falcon Next-Gen Identity Security | Just-In-Time Access for Salesforce and GitHub

    Falcon Privileged Access | Zero Standing Privileges for Private Apps

    As SaaS becomes a critical operating layer for humans and AI agents, it is also becoming a high-value target for adversaries. Compromised identities can give attackers legitimate access to SaaS applications, which allows them to operate undetected and makes continuous detection and response more critical than ever.

    CrowdStrike is extendingCrowdStrike Falcon® Complete MDR servicesto CrowdStrike Falcon® Shield, bringing 24/7 expert-led monitoring, investigation, and response to the SaaS security capabilities within Falcon Next-Gen Identity Security.

    CrowdStrike experts leverage Falcon Shield’s visibility across identities and threats targeting SaaS applications to identify and stop malicious activity in real time. By combining high-fidelity detections, agentic workflows, and expert-led operations, Falcon Complete for Falcon Shield turns SaaS visibility into action, helping organizations rapidly contain threats, reduce operational burden, and extend continuous protection across the agentic enterprise.

    The agentic enterprise requires a new identity security model. AI agents can't be secured like service accounts, privilege can’t remain static while risk changes, and identity security can’t stop at authentication.

    CrowdStrike is bringing identity establishment, authentication, authorization, privileged access, detection, and response together through Falcon Next-Gen Identity Security. By connecting identity to real-time context across endpoint, cloud, SaaS, and enterprise systems, CrowdStrike can help organizations continuously grant, adjust, and revoke access as risk and business context change.

    Forward-Looking Statements

    This blog includes discussion of unreleased services or features. Any unreleased services or features referenced here are still in development and subject to change. Customers should make their purchase decisions based upon features that are currently available.

    Try CrowdStrike free today

    Sign up now to receive the latest notifications and updates from CrowdStrike

    Original source