Agentic AI Workflows in Cybersecurity: Governance & Risks

Agentic AI Workflows in Cybersecurity: Governance & Risks

Source: YouTube · SANS Cloud Security · published Oct 30, 2025 · 20:05

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

Cybersecurity expert Shikiti Sagu explains how Agentic AI autonomously plans, reasons, and executes tasks beyond traditional chatbots, while MCP (Model Context Protocol) provides essential governance guardrails for safe deployment 0:02.

Key Takeaways:
• Agentic AI differs from traditional chatbots by planning, reasoning, taking actions, and dynamically adapting to achieve goals rather than just responding to prompts 1:05.
• MCP serves as a governance framework with model, control, and policy layers—acting as a "nervous system" enabling AI to safely execute actions across enterprise systems 3:15.
• Core governance pillars include permissions and access control, accountability, audit and traceability, and guardrails defining AI boundaries 4:15.
• Technical safeguards encompass isolation/sandboxing, rate limiting, audit logging, and human-in-the-loop checkpoints to maintain control over autonomous actions 4:45.
• Implementation challenges include context overloading, dynamic context updating, interoperability issues, and scalability bottlenecks 5:20.

Sagu concludes that Agentic AI provides the wings of autonomy while MCP provides the runway for safe takeoff, transforming risky AI into a trusted organizational asset 6:10.

Sources:

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Hi everyone, this is Shikiti Sagu and uh I've been working in the field of cyber security for over six years and uh I have like some a couple of hands-on experience in areas such as threat detection, vulnerability management, incident response and risk assessments. Throughout my career, I have been having the opportunity to work on securing the enterprise environments, developing robust security strategies and collaborating with various crossunctional teams across to build a strong cyber security posture. My passion lies in staying ahead of continuously evolving cyber threats and helping the organizations proactively defend against them. I'm very excited to be here today and uh looking forward to share some insights, learn and contribute uh to some of the meaningful discussions in and arou…