Agentic AI Meets Shadow AI: Zero Trust Security for AI Automation

Agentic AI Meets Shadow AI: Zero Trust Security for AI Automation

🎙 Bri Kopecki 👥 1.8M 📅 December 20, 2025 ⏱ 16 min 👁 33K 📄 expert opinion 🧭 2026-08-06
Available in: English (current) Français

Keywords

agentic AIshadow AIzero trustAI securityAI governance

Summary

The video, presented by Bri Kopecki from IBM Technology, explains the security and governance challenges posed by agentic AI, which acts autonomously, and shadow AI, which refers to unofficial AI tools used within organizations. It emphasizes the need for a unified control plane integrating security and governance to manage risks. The presenter outlines a framework of discover, assess, govern, secure, and audit, applied continuously. Two use cases illustrate the framework: healthcare, where an AI agent assists clinicians with patient notes and orders under strict guardrails, and public sector, where an AI agent helps citizens file taxes and renew licenses with consent and least-privilege access. Key principles include visibility, red teaming, least privilege, live monitoring, and auditability. The video argues that integrating security and governance accelerates safe AI adoption, building trust with users and regulators.

134 words

Critical Evaluation

The video provides a high-level, practitioner-oriented overview of security and governance for agentic AI, focusing on the intersection with shadow AI. The presenter, Bri Kopecki, articulates the concepts clearly, using analogies and concrete examples to make the material accessible. The argumentation is coherent: it identifies the core risks (visibility, data leakage, compliance, over-permission, incident response) and proposes a structured approach (discover, assess, govern, secure, audit) that aligns with zero trust principles. The two use cases (healthcare and public sector) effectively illustrate how the framework applies in practice, emphasizing human-in-the-loop, least privilege, and audit trails. However, the video lacks depth in technical specifics; it does not delve into implementation details, such as specific tools or protocols, nor does it cite external sources or empirical evidence. The content is largely based on IBM’s perspective, which may introduce bias. The adéquation titre/contenu is strong, as the title accurately reflects the focus. The video’s strength lies in its clarity and practical guidance, but it would benefit from more rigorous sourcing and technical depth. Overall, it serves as a useful introduction for professionals seeking to understand and address AI security challenges, but it is not a comprehensive technical reference.

194 words

Title / Content Match

The title accurately reflects the content, focusing on the intersection of agentic AI and shadow AI within a zero trust security framework.

Quality & Reliability

8/10

The video provides a clear, structured overview of security and governance challenges in agentic AI, with practical examples and a coherent framework. It is based on IBM's expertise and references IBM resources, but lacks detailed citations or empirical data, limiting its depth.

Key Moments

Cited Sources

Concurring Sources

Contribution & Novelties

The video provides a clear, actionable framework for integrating security and governance in agentic AI environments, emphasizing the need to address shadow AI. It offers practical guidance through use cases, highlighting the importance of least privilege, red teaming, and auditability. The contribution is primarily educational, synthesizing existing concepts into a coherent approach.

Pour aller plus loin :

97 words

Radar Profile

The radar profile shows balanced scores across information quantity, quality, technical level, and reliability, with a slight emphasis on quality and reliability. This indicates a well-rounded presentation that is informative and trustworthy, though not extremely technical.

Reliability 8/10

💬 Positive. Sur les 30 commentaires analysés, les téléspectateurs expriment une appréciation générale, soulignant la clarté des explications et la pertinence des exemples, avec quelques questions techniques sur les défenses recommandées.