AI Agent Governance and Identity Security Guide

Abstract

Enterprise AI agents are rapidly moving beyond simple task automation to become autonomous systems that can make decisions, access enterprise data, and operate across digital environments.

This shift opens up new possibilities for efficiency and innovation—but also introduces governance, identity, and security challenges that traditional IAM models were never equipped to handle. This whitepaper explores the emerging risks with agentic AI, including permission creep, identity misuse, memory poisoning and gaps in accountability. Built on OWASP’s GenAI Security framework, Tech Mahindra and Microsoft present a practical approach to adaptive trust and AI governance.

It highlights technologies such as Entra Agent ID, Purview, Defender, Orion, and VerifAI, and outlines actionable strategies to build AI ecosystems that are scalable, auditable, resilient, and secure—enabling organizations to innovate with confidence.

Advance Modal Components
Securing Enterprise AI Agents with Adaptive Identity Governance

Key Insights

Adaptive Trust Framework for Enterprise AI Governance

A modern governance framework designed for autonomous AI agents that adapts continuously to their behavior, intent, permissions, and evolving risk across enterprise environments.

Integrated AI Identity and Access Management

Brings together Microsoft Entra Agent ID and Tech Mahindra’s AI governance capabilities to deliver secure, auditable, and role-based identity management for AI agents.

OWASP-Aligned Security and Risk Mitigation

Maps enterprise AI risks to OWASP GenAI security standards, enabling organizations address threats such as tool misuse, privilege abuse, and memory poisoning with greater clarity and control.

Behavioural Validation and Continuous Monitoring

Uses AI validation and continuous behavioural monitoring to detect anomalies, track agent activity, and support responsible execution across workflows and connected systems.

Scalable Governance for Autonomous AI Systems

Applies least-privilege access, conditional policies, and adaptive authorization to securely scale agentic AI deployments

About the Author
Nikhil Malhotra
Chief Innovation Officer & Global Head – AI, Tech Mahindra

Nikhil has been a researcher all his life and is now leading the growth of AI and Quantum Computing research within Tech Mahindra. His area of business research is how quantum Computing, AI, and neuroscience would inspire the growth of AI and the next change in society, business, and humanity. He has won numerous awards, including the 2020, 2021, and 2023 Innovation Congress awards, for being the most innovative leader in India.

Read More

Nikhil has been a researcher all his life and is now leading the growth of AI and Quantum Computing research within Tech Mahindra. His area of business research is how quantum Computing, AI, and neuroscience would inspire the growth of AI and the next change in society, business, and humanity. He has won numerous awards, including the 2020, 2021, and 2023 Innovation Congress awards, for being the most innovative leader in India.

Nikhil is also a TEDx speaker and the author of a best-seller book – Courage, the Journey of an Innovator. One of his long-standing visions has been to enable machines to talk in the local Indian dialects. Most notably, he has spearheaded Project Indus, Tech Mahindra's seminal effort to build Indic LLM (homegrown large language model), which was successfully launched globally in June 2024.

Nikhil holds a master's degree in computing with a specialization in distributed computing from the Royal Melbourne Institute of Technology, Melbourne, and is an avid physicist.

Read Less
Know More
Ravi Sharma
Global Head, Microsoft Business, Tech Mahindra

Ravi Sharma is Global Head of Microsoft Business at Tech Mahindra, where he leads a billion‑plus portfolio and drives growth through strategic Microsoft alliances and “Sell With” and “Sell Through” go‑to‑market strategies.

Read More

Ravi Sharma is Global Head of Microsoft Business at Tech Mahindra, where he leads a billion‑plus portfolio and drives growth through strategic Microsoft alliances and “Sell With” and “Sell Through” go‑to‑market strategies.

He focuses on stakeholder collaboration and engaging with venture capital ecosystems to integrate Microsoft technologies into startup portfolios, accelerating innovation. With extensive leadership experience in strategic alliances, Ravi leverages ecosystem synergies to deliver impactful, Microsoft-led solutions and drive sustainable growth across global markets.

Read Less
Vinod Radhakrishnan
Global Head-Strategic Alliance, AI, Tech Mahindra

A technologist with over 23 years of professional experience spanning multiple domains. As the strategy lead for AI ecosystem at Tech Mahindra, he collaborates with stakeholders to drive business value for customers.