Intelligent CISO Issue 86 | Page 42

expert

OPINION
The concept of‘ vault sprawl’ seems to be linked to this subject, could you elaborate on this challenge?
Vault sprawl is a significant problem that has emerged as organisations have adopted multiple secrets management solutions. The average enterprise now uses more than five different secrets managers across their infrastructure. The fragmentation creates significant security and operational challenges.
We’ re seeing organisations rapidly adopt AI-powered tools and automation, often without fully considering the security implications.
Each vault solution has its own security policies, access controls and management interfaces. This lack of centralisation makes it extremely difficult to maintain consistent security practices and creates dangerous blind spots. Security teams struggle to track which secrets exist, who has access to them and whether they comply with security policies.
How is the rise of AI and automation affecting the non-human identity landscape?
The emergence of AI, particularly Generative AI and autonomous agents, is accelerating the proliferation of non-human identities at an unprecedented rate. These AI systems require various forms of access to function – API keys,
service accounts and other credentials – all of which need to be properly secured.
We’ re seeing organisations rapidly adopt AIpowered tools and automation, often without fully considering the security implications. Each new AI integration potentially introduces dozens of new non-human identities that need to be managed and secured. This is creating a perfect storm where the attack surface is expanding faster than security teams can adapt.
This seems to represent a fundamental shift in cybersecurity. How should organisations adapt their security strategies?
We’ re witnessing a paradigm shift in how we need to think about identity security. Traditional security models were built around human users – focusing on aspects like authentication, authorisation
42 WWW. INTELLIGENTCISO. COM