AI agents are evolving identity as we know it. They execute code, invoke tools, access applications and sensitive data, and take action on behalf of humans and systems. Increasingly, they operate autonomously and delegate work to other agents. They work at machine speed.
Yet the identity infrastructure enterprises rely on today was built for people and predictable workloads, not autonomous software that can reason, act, and move dynamically across systems. Traditional identity providers force organizations to represent agents through service accounts, API keys, and workload identities. Agents effectively inherit the identity and credentials of the humans they act for, operating under trust established by the existing user. This makes it difficult to distinguish the agent from the person, independently govern what the agent can do, or reliably ensure accountability for its actions. Before an AI agent's access can be continuously governed, the agent itself must first be established as a trusted identity.
Today at Fal.Con 2026, CrowdStrike is introducing Agentic Identity Provider (Agentic IdP) in CrowdStrike Falcon® Next-Gen Identity Security, creating the identity control plane for the agentic enterprise. Agentic Identity Provider gives every AI agent a trusted identity, connects it to the humans and workloads behind it, and gives it only the access it needs, when it needs it.
We're also expanding modern privileged access across SaaS applications, endpoints, code repositories, and cloud infrastructure. This extends Continuous Identity and zero standing privileges wherever humans and AI agents operate.
Together, these innovations advance CrowdStrike's vision for Continuous Identity by establishing trusted identities for AI agents and replacing standing privileges and point-in-time authorization with access that continuously adapts to real-time security and business context.
Introducing the Agentic Identity Provider
Traditional identity providers answer a fundamental question: Who are you? For humans, this answer starts with an established identity tied to an employee, credentials, and an authentication process.
For AI agents, it isn't as simple. Agents don't onboard like employees. Representing them as traditional service accounts or long-lived credentials creates a dangerous mismatch between how agents operate and how enterprises govern identity.
CrowdStrike’s Agentic Identity Provider, built for this new model, provides the identity foundation AI agents need before their access can be continuously governed. It can:
- Establish trusted identities: CrowdStrike Falcon® Guardian discovers AI agents across the enterprise and identifies who owns and uses them. The Agentic Identity Provider automatically registers agents in a single directory and gives each one a cryptographically verifiable identity. Only trusted, registered agents can be granted access.
- Enrich AI agents with identity context: Falcon Next-Gen Identity Security adds critical context to each identity, including whether they are high-risk or compromised and what privileges they hold. This gives security teams a clearer picture of who or what is behind each agent and the risk it poses.
- Broker short-lived, least-privilege access: Instead of assigning agents standing credentials of their own, the Agentic Identity Provider securely brokers short-lived, tightly scoped access on their behalf, providing only the access required for as long as it is needed to complete a task.
- Maintain end-to-end attribution: Every agent, and every action it takes, remains linked to the human or workload it acts on behalf of. This preserves a continuous chain of accountability as agents interact with systems and delegate work.
Earlier this year, CrowdStrike introduced Continuous Identity for AI Agents to bring real-time, context-aware authorization to agent actions. Continuous Identity replaces point-in-time access decisions with dynamic enforcement based on live identity, device, threat, and business context. This capability grants access when it is justified and revokes it the moment conditions change.
The Agentic Identity Provider establishes who the agent is. Continuous Identity determines what that agent should be allowed to access and what it should be allowed to do continuously. Together, they create an identity model built for autonomous action.

Extending Modern Privileged Access Everywhere Work Happens
Standing privilege remains standing risk, whether the identity accessing a critical resource is an AI agent, administrator, developer, or business user. However, traditional privileged access management was designed around a narrow set of administrative accounts and predictable workflows. Today's privileged interactions happen everywhere: in cloud infrastructure, SaaS applications, endpoints, servers, and private enterprise resources.
CrowdStrike is expanding modern privileged access across these environments. Rather than leaving persistent privilege, modern privileged access grants access only when the task requires it, continuously evaluates it while in use, and revokes it when it is no longer justified.
CrowdStrike is extending these capabilities across:
- SaaS applications: Bring modern privileged access to business-critical applications including Salesforce and GitHub.
- Endpoints and servers: Give users elevated access to endpoints and servers only when they need it, instead of leaving administrator privileges permanently enabled.
- Private applications and enterprise resources: CrowdStrike brings enterprise browser security and privileged access together, connecting users to SaaS, cloud, and on-premises resources while giving them only the privileges they need to get work done. This includes just-in-time access to workloads like Linux over SSH and Windows over RDP, custom apps, and much more. Next-Gen Identity Security grants access based on security and business context, while CrowdStrike Falcon® Seraphic® Enterprise Browser provides the secure connection, without additional agents or browsers. If risk changes or a threat is detected, access is immediately revoked.
- Cloud infrastructure: Earlier this year, CrowdStrike announced modern privileged access for AWS through Okta. CrowdStrike is now extending this support to AWS environments using Microsoft Entra.
The result is a fundamentally different approach to privileged access. Access isn't trusted simply because it was approved once. It remains trusted only while the identity, device, security, and business context continue to justify it. This distinction becomes even more critical as humans and AI agents increasingly interact with the same applications, infrastructure, and data.
Falcon Next-Gen Identity Security | Just-In-Time Access for Salesforce and GitHub

Falcon Privileged Access | Zero Standing Privileges for Private Apps

MDR for the Modern SaaS Attack Surface
As SaaS becomes a critical operating layer for humans and AI agents, it is also becoming a high-value target for adversaries. Compromised identities can give attackers legitimate access to SaaS applications, which allows them to operate undetected and makes continuous detection and response more critical than ever.
CrowdStrike is extending CrowdStrike Falcon® Complete MDR services to CrowdStrike Falcon® Shield, bringing 24/7 expert-led monitoring, investigation, and response to the SaaS security capabilities within Falcon Next-Gen Identity Security.
CrowdStrike experts leverage Falcon Shield’s visibility across identities and threats targeting SaaS applications to identify and stop malicious activity in real time. By combining high-fidelity detections, agentic workflows, and expert-led operations, Falcon Complete for Falcon Shield turns SaaS visibility into action, helping organizations rapidly contain threats, reduce operational burden, and extend continuous protection across the agentic enterprise.
Identity Security Built for the Agentic Enterprise
The agentic enterprise requires a new identity security model. AI agents can't be secured like service accounts, privilege can’t remain static while risk changes, and identity security can’t stop at authentication.
CrowdStrike is bringing identity establishment, authentication, authorization, privileged access, detection, and response together through Falcon Next-Gen Identity Security. By connecting identity to real-time context across endpoint, cloud, SaaS, and enterprise systems, CrowdStrike can help organizations continuously grant, adjust, and revoke access as risk and business context change.
Additional Resources
- Learn more about Falcon Next-Gen Identity Security
- Read about Continuous Identity for AI Agents
- Learn more about modern privileged access
Forward-Looking Statements
This blog includes discussion of unreleased services or features. Any unreleased services or features referenced here are still in development and subject to change. Customers should make their purchase decisions based upon features that are currently available.