Securing agentic AI workflows: A defence-in-depth framework for autonomous systems
Abstract
The rapid enterprise adoption of agentic artificial intelligence (AI) has introduced a category of security risk that existing cyber security frameworks were not designed to address. With 78 per cent of Fortune 500 companies projected to deploy agentic AI by 2026 and the global market expected to reach US$89.6bn, the attack surface created by these autonomous workflows demands urgent attention from security practitioners. This paper examines the distinct threat model presented by agentic AI, drawing on recent high-profile incidents, including the weaponisation of a large language model in a state-sponsored espionage campaign affecting 30 organisations and the compromise of an open-source agent framework exposing 30,000 Internet-facing instances, to illustrate the consequences of inadequate controls. Grounded in the Open Worldwide Application Security Project’s Top 10 for Agentic Applications (2026) and the National Institute of Standards and Technology’s ongoing agentic AI security initiative, the paper proposes a five-layer defence-in-depth framework encompassing input validation, identity and least privilege, runtime sandboxing, human-in-the-loop governance, and continuous behavioural monitoring. It identifies sandboxing and least-privilege enforcement as the highest return on investment controls, provides a prioritised implementation roadmap, and discusses the emerging paradigm of cryptographic workflow authentication. The analysis concludes that organisations treating agentic AI security as an extension of traditional application security will find themselves critically exposed and that a purpose-built security architecture is now a business imperative. This article is also included in The Business & Management Collection which can be accessed at https://hstalks.com/business/.
The full article is available to subscribers to the journal.
Author's Biography
Sushma Mahadevaswamy is a Security Engineer at Cisco, where she builds the digital armour for tomorrow’s systems. With a master’s in information science from UIUC and a background at Amazon and AGCO, she has spent her career mastering the art of the ‘secure build’. Today, Sushma is moving beyond traditional DevSecOps to tackle the next frontier: artificial intelligence (AI) security. She is currently architecting secure agentic workflows, focusing on how to safely orchestrate autonomous agents without sacrificing system integrity. Her mission is to prove that as systems evolve into self-governing, AI-driven entities, security must be baked into their DNA, acting as a catalyst for innovation rather than a bottleneck. A ‘hacker’ at heart, Sushma sharpens her instincts in Capture the Flag competitions and hackathons, constantly testing her skills against emerging threats. She is driven by a passion for solving the unsolvable and believes the future of technology depends on our ability to secure the autonomous systems we create. Whether she is fortifying infrastructure or experimenting with new agentic frameworks, Sushma remains a steadfast advocate for a smarter, safer, and more automated future.