Navigating the security challenges of agentic AI in modern enterprises

Challenges ahead as enterprises brace for increased security incidents with generative AI applications.

  • Friday, 10th April 2026 Posted 2 hours ago in by Sophie Milburn

Enterprise environments are undergoing change due to increased adoption of generative AI (GenAI) applications. According to a recent Gartner analysis, by 2028, 25% of enterprise GenAI applications are expected to experience at least five minor security incidents per year, up from 9% in 2025.

This shift is linked to increased adoption of technologies such as Model Context Protocol (MCP). While MCP is designed to support interoperability and faster integration, security considerations may not always be the primary focus, which can increase exposure to risk.

As organisations implement frameworks like MCP, security considerations require proactive planning. Potential risks include data exposure incidents and vulnerabilities in third-party components. Software engineering leaders are expected to address these risks by establishing structured security review processes. These may include prioritising lower-risk use cases, mitigating known threat patterns, and enabling domain experts to define security guardrails.

MCP is designed to prioritise interoperability rather than built-in security enforcement, which means issues may arise during normal usage. Risks are more likely in cases where agents access sensitive data, process untrusted content, or communicate externally. Engineering teams are advised to treat combinations of these factors as high-risk scenarios.

Recommended approaches include collaboration between data, security, and infrastructure teams to establish formal security reviews for MCP use cases. This includes identifying low-risk applications and excluding higher-risk combinations. Security controls such as authentication and AI-specific authorisation are also highlighted, along with mitigations for issues such as content injection and oversight of third-party components.

Addressing MCP-related security risks also involves awareness of common vulnerability patterns, including content injection and supply chain risks, and applying established mitigation practices to reduce exposure.

In addition, domain-based ownership is identified as an important factor in defining security controls for MCP environments. As agentic AI systems become more complex, managing access and compliance becomes more challenging. Domain experts are expected to define usage guardrails and secure-by-default controls before granting access to systems and data.

AI advances in N-able's SOC solutions

Posted 1 hour ago by Sophie Milburn
N-able introduces AI-driven detection features for its security operations centre (SOC) aimed at improving the identification of advanced cyber...

Advania UK strengthens leadership with key appointments

Posted 1 week ago by Sophie Milburn
Advania UK strengthens its leadership team with the appointment of Sabrina Harris as CFO and Tara Allison as CMO.
The Keepit Annual Data Report 2026 highlights shifts in data recovery practices as companies rely more on SaaS platforms.
Arrow Electronics expands its security portfolio across EMEA by partnering with AI-leader Dataminr, offering enhanced intelligence solutions for...
WatchGuard Technologies introduces expanded NDR solutions for enhanced threat detection, offering scalable protection for SMEs and MSPs.
LevelBlue has partnered with SentinelOne to deliver AI-driven security solutions, aimed at enhancing detection and response capabilities.

Cisco introduces new AI security strategies

Posted 1 week ago by Sophie Milburn
Cisco has introduced security strategies at RSA Conference 2026 aimed at addressing AI-related challenges and supporting wider adoption.
Flashpoint introduces updates to its threat intelligence capabilities, including EASM, Business-Aligned PIRs, and a Managed Attribution Browser.