NewsTradingSentimentCalendarCommunityBriefing
Tech

Okta CEO Argues AI Agents Need Distinct Identity Controls

By Tech Desk · 2026-09-17 · 1 min read
A glowing digital key hovering above a complex network of interconnected nodes
Illustration: Tradingbird

Todd McKinnon suggests that artificial intelligence is evolving into a new category of digital user, requiring security frameworks that go beyond traditional human logins.

Todd McKinnon, co-founder and CEO of Okta, has proposed a significant shift in how enterprises view digital access. He argues that AI agents are no longer just tools but are emerging as a powerful new type of identity. This perspective moves the conversation from simple software permissions to treating autonomous programs as distinct actors within a corporate network.

The core of this argument is that current security models are insufficient for the scale of AI deployment. As companies integrate these agents into daily operations, the risk profile changes because these entities can act without direct human supervision at every step. McKinnon’s view implies that identity management must evolve to govern these non-human actors with the same rigor applied to employees.

Defining the AI agent identity

In the context discussed by GN technics/ai (en-US), an identity type refers to the unique digital fingerprint that allows a system to verify who or what is requesting access. Traditionally, this has been reserved for humans using passwords or biometrics. McKinnon suggests that AI agents require their own standardized identity frameworks to ensure accountability and traceability in complex digital environments.

Security risks in autonomous workflows

The primary trade-off here involves the balance between autonomy and control. While AI agents offer speed and efficiency, they can also execute actions at a scale that outpaces human oversight. Without distinct identity controls, it becomes difficult to audit which specific agent performed a particular task, creating a blind spot that malicious actors could potentially exploit.

Impact on enterprise infrastructure

For organizations, this means rethinking their infrastructure to support non-human identities. It is not merely a software update but a structural change in how access is granted, monitored, and revoked. The catch is that this transition requires significant investment in new security architectures, which may be complex to implement across legacy systems.

Based on reporting by CNBC, compiled by the Tradingbird desk.

Read next

More in Tech

More from the Tech desk

All desk stories
  • A modern smartphone with a flexible screen partially folded, resting on a wooden surface next to a small tripod
    Illustration: Tradingbird

    Smartphones Shift Focus to Camera Versatility

    The smartphone industry is moving beyond basic image quality, introducing features like live previews, dynamic apertures, and AI-driven video editing to differentiate new devices.

    2026-09-17
  • A stack of old, yellowed newspapers sitting on a wooden desk next to a modern laptop
    Illustration: Tradingbird

    The Long Line of AI Warnings

    Warnings about artificial intelligence risks have evolved from niche academic concerns into a central political and economic debate, shaping how society approaches technology development.

    2026-09-17
  • A large, windowless industrial building with rows of ventilation fans on the side, standing in a flat grassy field.
    Illustration: Tradingbird

    Broken Arrow Pauses Data Center Plans for Further Review

    City officials in Broken Arrow have clarified that no data center project is currently moving forward, despite circulating rumors. A temporary ban on new proposals remains in effect while local leaders assess the strain such facilities would place on water, power, and community resources.

    2026-09-17