Back to all stories

AI Agents Force New Security Layers in Enterprises

The rapid adoption of AI agents in enterprises is creating new security challenges—and a fragmented market of solutions. Startups and investors are already responding, with acquisitions and funding rounds targeting specialized control points like agent identity, data classification, and traffic monitoring. For founders and operators, the rise of AI agents demands a shift in how security is approached and implemented.

LA

LazyFounders

·6 min read
AI Agents Force New Security Layers in Enterprises
Image: Crunchbase News via Crunchbase News

The rapid adoption of AI agents in enterprises is creating new security challenges—and a fragmented market of solutions. Startups and investors are already responding, with acquisitions and funding rounds targeting specialized control points like agent identity, data classification, and traffic monitoring. For founders and operators, the rise of AI agents demands a shift in how security is approached and implemented.

30 SEC SUMMARY

  • AI agents are creating new security challenges for enterprises, including agent identity management, data access control, and traffic monitoring.
  • Kiteworks acquired Bonfy.AI, an Israeli startup focused on real-time data classification and policy enforcement.
  • Huskeys, an Israeli cybersecurity startup, raised $27M in Series A funding led by Blackstone to secure AI-generated traffic.
  • The AI security market is fragmenting into specific control points rather than developing as a single category.
  • Enterprises deploying AI agents at scale will need new layers of cybersecurity to manage permissions, governance, and monitoring.

TABLE OF CONTENTS

  • AI Agents Introduce New Enterprise Security Risks
  • Market Fragmentation Around AI Security Control Points
  • Recent Deals Signal Growing Investor Interest
  • Implications for Founders and Operators
  • What this means
  • Key takeaways
  • FAQ
  • Sources

KEY HIGHLIGHTS

  • AI agents in enterprises require new security layers, including agent identity management and governance frameworks.
  • Kiteworks acquired Bonfy.AI, an Israeli startup specializing in real-time data classification and policy enforcement.
  • Huskeys raised $27 million in Series A funding led by Blackstone to secure AI-generated traffic.
  • The AI security market is evolving around specific control points rather than as a single category.
  • Enterprises deploying AI agents at scale must address permissions, monitoring, and compliance risks.

AI Agents Introduce New Enterprise Security Risks

According to Crunchbase News, AI agents are rapidly integrating into enterprise workflows, performing tasks such as browsing the web, writing code, accessing files, and triggering APIs. However, their adoption introduces a new layer of security challenges, as these agents operate as autonomous software actors capable of making decisions and taking actions on behalf of users.

The shift from experimenting with a few agents to deploying hundreds or thousands requires enterprises to manage agent identity, permissions, and governance. Unlike traditional users or service accounts, AI agents can move between systems, invoke tools, and execute tasks dynamically, creating risks around unauthorized access, data leaks, and unmonitored actions.

Crunchbase News reports that enterprises will need to address critical questions: How do you authenticate and authorize an agent? How do you monitor its actions in real time? How do you enforce policies around data access or code execution?

Market Fragmentation Around AI Security Control Points

The AI security market is not emerging as a single category but is instead fragmenting around specific control points, according to Crunchbase News. Companies are focusing on distinct problems such as agent identity, data classification, prompt management, traffic monitoring, and auditability.

This fragmentation reflects the diverse challenges posed by AI agents. For example, some startups may prioritize securing agent identities, while others focus on real-time policy enforcement or protecting against malicious prompts. The market is likely to remain specialized, with solutions tailored to narrow but critical use cases.

Crunchbase News notes that this trend mirrors historical patterns in cybersecurity, where broad categories eventually splinter into specialized niches as new threats and technologies emerge.

Recent Deals Signal Growing Investor Interest

The market for AI agent security is already attracting investment and M&A activity. Crunchbase News reports that Kiteworks acquired Bonfy.AI, an Israeli startup specializing in real-time data classification and policy enforcement. The acquisition underscores the growing demand for solutions that can secure data access and enforce compliance in dynamic AI-driven environments.

In another deal, Huskeys, an Israeli cybersecurity startup, raised a $27 million Series A round led by Blackstone. Huskeys focuses on securing complex internet traffic, including that generated by autonomous systems like AI agents. The funding round signals investor confidence in the need for specialized tools to monitor and protect AI-generated traffic.

Implications for Founders and Operators

For founders, the evolving AI security landscape presents both opportunities and challenges. According to Crunchbase News, positioning a startup as a generic "AI security" provider may be less effective than focusing on a specific control point, such as agent identity or real-time policy enforcement. Specialization can help startups differentiate themselves and address high-value pain points for enterprise customers.

Crunchbase News also highlights that incumbents—including identity providers, cybersecurity platforms, and cloud companies—will eventually need to integrate agent-security capabilities into their products. This shift could create opportunities for startups to partner with or be acquired by larger players seeking to fill gaps in their offerings.

For enterprise operators, the rise of AI agents means revisiting security frameworks. Governance, compliance, and auditability will become critical as agents take on more autonomous roles. Operators must also prepare for potential risks, such as agents accessing sensitive data or executing unauthorized actions.

What this means

LazyFounders analysis — our interpretation, not reported fact.

For founders and operators, the rise of AI agents isn’t just a productivity opportunity—it’s a security reckoning. The challenge isn’t theoretical; companies are already deploying agents that can access files, execute code, and trigger APIs autonomously.

The fragmentation of the AI security market into distinct control points (identity, data classification, traffic monitoring, etc.) suggests that startups that niche down will have clearer value propositions than those claiming to solve "AI security" holistically. The recent acquisition of Bonfy.AI and Huskeys’ funding round show that incumbents and investors are betting on specialized solutions, not broad platforms.

For cybersecurity founders, this is a signal to align products with specific enterprise pain points—like agent identity or real-time policy enforcement—rather than generic AI security branding. For operators, it’s a reminder to audit not just what AI agents can do, but who (or what) is governing their actions.

Key takeaways

  • AI agents introduce new security risks, including unauthorized access, data leaks, and unmonitored decision-making.
  • The AI security market is evolving around specific control points like agent identity, data classification, and traffic monitoring.
  • Recent M&A and funding activity (e.g., Kiteworks’ acquisition of Bonfy.AI, Huskeys’ $27M round) highlight investor and acquirer interest in specialized AI security solutions.
  • Enterprises scaling AI agents will need to implement governance frameworks to manage permissions, compliance, and auditability.
  • Startups should focus on solving narrow, high-value problems rather than positioning themselves as generic "AI security" providers.

FAQ

What are AI agents, and why do they create security risks?

AI agents are autonomous software entities that perform tasks on behalf of users, such as accessing files, writing code, or triggering APIs. They create security risks because they can operate dynamically across systems, potentially leading to unauthorized access, data leaks, or unmonitored actions.

Why is the AI security market fragmenting instead of developing as a single category?

The AI security market is fragmenting because different enterprises face distinct challenges, such as agent identity management, data classification, or traffic monitoring. Specialized solutions are emerging to address these specific control points rather than a one-size-fits-all approach.

What should startups focus on when building AI security products?

Startups should focus on specific, high-value control points—such as agent identity, policy enforcement, or traffic monitoring—rather than positioning themselves as generic "AI security" providers. Specialization can help them stand out and address enterprise pain points more effectively.

How can enterprises prepare for the security risks posed by AI agents?

Enterprises should implement governance frameworks to manage agent permissions, compliance, and auditability. They must also monitor agent actions in real time and enforce policies around data access and code execution.

Related on LazyFounders

Sources

  1. Crunchbase News · 2026-09-23
    The Emerging M&A Map For AI Agent Security

This story is an original summary and analysis written by LazyFounders from the reporting listed above. Facts are attributed to their original publishers; sections marked as analysis are LazyFounders's opinion. Where a source is in another language, facts were machine-translated and quotations are reported, not reproduced. Read the original coverage via the links.

Lazy Founder - Powered by Blogy.in