Netwrix Expands Identity Security to Cover AI Agents in Microsoft Entra ID
Event summary
- Netwrix PingCastle 4.0 extends Microsoft Entra ID risk coverage to 102 checks, unifying on-premises AD and cloud identity risk assessment.
- Netwrix Threat Manager 3.3 adds visibility into AI agent identities in Entra ID, addressing a gap where only 19% of organizations govern non-human identities.
- New threat detection for Azure Files protects against ransomware and high-risk changes, with agent-specific detection planned for a future release.
- Netwrix cites a 43% breach rate in organizations where AI expanded identities, vs. 11% where it did not.
The big picture
Netwrix's updates reflect the growing challenge of securing AI-driven identities in cloud environments. As organizations deploy AI agents faster than they can govern them, the 43% breach rate disparity highlights the strategic urgency of visibility and control. The expansion of PingCastle and Threat Manager aligns with broader industry shifts toward unifying identity and data security in hybrid and AI-driven ecosystems.
What we're watching
- AI Governance Gaps
- Whether organizations can close the visibility gap for AI agents, given that 16% don't track their creation at all.
- Market Differentiation
- How Netwrix's expanded Entra ID coverage positions it against Microsoft's native tooling.
- Regulatory Pressure
- The pace at which AI identity governance becomes a compliance requirement, given the rising breach rates.
Related topics
