How do we manage identity and access when the actor isn’t a person, but a reasoning machine? This is the AI Agent Identity Dilemma, and it demands a ground-up rethink of identity, authorization, and trust.
Aftab Banth is a cybersecurity executive with nearly two decades of experience leading global security programs and building resilience at scale. He has designed and scaled enterprise, cloud, and AI-driven security initiatives protecting billions of users worldwide. Beyond his leadership roles, Aftab advises and invests in early-stage startups and hosts The CISO Circle podcast, where he shares insights from his career and the security community.
We will cover what Agentic AI actually looks like in production, how MCP servers work to broker instructions, and what kind of new threats are emerging.
Agentic AI isn’t coming. It’s already here. Autonomous agents are now operating in production environments, reasoning, remembering, and taking real actions across your systems. They’re not just generating content. They’re triggering workflows, modifying records, and making decisions. And they’re doing it over APIs.
For CISOs and other security leaders, this represents a major shift in the risk landscape. You’re now dealing with a new layer of autonomous behavior, powered by Model Context Protocol (MCP), that is invisible to most current security tools.
In the session, we’ll cover:
What Agentic AI is and how it’s changing your risk profile
Practical attack scenarios against AI agents and MCP servers
Why and how API traffic is exploding and going largely unmonitored
How Salt is uniquely positioned to help you see and secure this new API fabric
What actions you can take now to protect your organization
Whether you're hands-on in security or responsible for the broader strategy, this session will give you real, actionable insights.
Eric Schwake, CISSP, is a highly experienced cybersecurity expert with almost two decades of experience. He has worked with various customers, helping to solve complex security challenges. Eric has gained a deep understanding of diverse security technologies through his time at industry leaders such as Symantec, Cisco, Proofpoint, Menlo Security, and Fortinet. Currently, he is dedicated to helping organizations mitigate API risks in his role at Salt Security.