top of page
Search

Identity Security Enters the Autonomous Era

Blog, July 2026


As AI reshapes both cyber defence and attack, organisations face a new question: can identity security keep pace with threats that operate at machine speed?



Earlier this month, Silverfort CEO Hed Kovetz visited Australia, meeting with key partners and customers across the region to discuss one of the most significant challenges facing cybersecurity leaders today: how do organisations secure identities in a world increasingly shaped by artificial intelligence?


The timing was particularly noteworthy. Just a month prior, Silverfort had announced its acquisition of Fabrix Security — a move that may ultimately be viewed as far more than a technology deal. It offers a glimpse into the future of identity security and how organisations will need to adapt as AI drastically transforms both cyber defence and cyber-attacks.





For years, identity and access management focused on establishing who should have access to systems and data. Policies were created, permissions assigned, and access reviewed periodically. Those principles remain important — but they were developed for a world where most identities were human, and most security decisions could be made at human speed. That world is now in the rear-view mirror.


Today, organisations are managing vast numbers of machine identities, service accounts, APIs, cloud workloads, and increasingly, AI agents. One reputable futurist raised a striking prediction: a ratio of 40 AI agents to every human within the next three to four years. In many environments, non-human identities already outnumber human users by a significant margin. At the same time, attackers are using automation and AI to accelerate every stage of the attack lifecycle.


The challenge is no longer simply controlling access. The challenge is controlling access fast enough.



This is where Silverfort's acquisition of Fabrix becomes particularly significant. By combining Silverfort's identity security platform with Fabrix's AI-native identity intelligence and decisioning capabilities, the company is moving toward what it describes as autonomous runtime identity security.


This is where Silverfort's acquisition of Fabrix becomes particularly significant. By combining Silverfort's identity security platform with Fabrix's AI-native identity intelligence and decisioning capabilities, the company is moving toward what it describes as autonomous runtime identity security.


Rather than relying solely on static policies and periodic governance processes, access decisions can be continuously evaluated based on context, behaviour, risk, and intent. The result is a security model capable of making decisions at machine speed, across environments that are becoming increasingly dynamic and complex.




Consider a basic example. An employee asks an AI agent to compare pricing against three competitors and draft a recommendation. The agent browses competitor websites, downloads public PDFs, and pulls external data — but one page contains a hidden prompt injection, silently instructing the agent to exfiltrate internal pricing files to an external URL. This is not a theoretical edge case. It is an emerging class of attack that traditional access controls were never designed to stop.


Prompt injections aren't the only emerging concern. AI systems can be trained or manipulated to discover zero-day vulnerabilities at scale, accelerate privilege escalation, or identify weaknesses in identity systems that humans might miss. The complexity introduced by AI workloads, autonomous agents, and dynamic cloud environments means that identity security teams face an unprecedented challenge: visibility and control must happen in real time, not in retrospective compliance reviews.





Silverfort's recently released Mythos Field Report explores the implications of highly capable frontier AI models on the future threat landscape. While much of the industry discussion around AI focuses on productivity and efficiency, Mythos examines a less comfortable reality: as AI capabilities advance, attackers will gain access to tools that can accelerate reconnaissance, vulnerability discovery, privilege escalation, and attack planning at unprecedented speed.


The Australian Signals Directorate has advised organisations to practise patching daily. Whether every prediction in Mythos materialises exactly as described is almost beside the point. The broader lesson is clear: security controls designed around human response times won't keep pace with threats operating at machine speed. Identity sits at the centre of this challenge.


Most modern attacks still involve the abuse of trusted identities. Attackers seek credentials, exploit excessive privileges, compromise service accounts, and move laterally by masquerading as legitimate users. In an AI-accelerated environment, detecting this activity after the breach has occurred becomes an increasingly risky strategy.





What makes this development particularly relevant for Sektor partners is that it aligns with a broader shift occurring across the cybersecurity industry. Security platforms are increasingly moving toward autonomous decision-making, leveraging AI to augment human teams and reduce the time between detection and response.


What makes this development particularly relevant for Sektor partners is that it aligns with a broader shift occurring across the cybersecurity industry. Security platforms are increasingly moving toward autonomous decision-making, leveraging AI to augment human teams and reduce the time between detection and response.


This trend is reflected in the recently announced strategic alliance between Silverfort and SentinelOne — bringing together Silverfort's identity security capabilities with SentinelOne's AI-powered security platform to provide a more unified approach to protecting identities, endpoints, cloud workloads, and emerging AI-driven environments.


For Sektor, as the ANZ distributor for both Silverfort and SentinelOne, the alliance creates a unique opportunity for partners to help customers address security challenges that no longer fit neatly into traditional technology categories. Attackers do not operate within technology silos — and increasingly, neither should defenders.



The convergence of identity security and autonomous security operations represents one of the most important shifts currently taking place in cybersecurity. Organisations are moving beyond the question of who should have access and beginning to ask whether that access should continue to be trusted in real time. They are moving beyond periodic reviews and toward continuous validation.


Silverfort's acquisition of Fabrix Security is an early indicator of where the market is heading. The first era of identity security focused on managing identities. The second focused on governing access. The next era will focus on autonomously controlling identity activity as it happens.


For organisations navigating an increasingly disruptive AI landscape, that shift may prove to be one of the most important security developments of the decade. For Sektor partners, it presents an opportunity to lead a new conversation with customers about what identity security looks like when trust must be established, evaluated, and enforced continuously — at machine speed.


The future of identity security is not simply stronger authentication or better governance. It is autonomous, contextual, and always on. And that future is arriving faster than many organisations realise.





About Silverfort

Silverfort is the identity-driven cyber resilience and crisis management company trusted by the world's largest enterprises and government agencies to protect critical identity systems. Purpose-built for modern cloud and hybrid identity environments, Silverfort enables fast, coordinated recovery and supports autonomous runtime access control across dynamic, AI-driven environments.

 
 
 

Comments


bottom of page