HomeMalware & ThreatsObsidian Raises $85M to Manage AI Agents in SaaS Applications

Obsidian Raises $85M to Manage AI Agents in SaaS Applications

Published on

spot_img

CEO Hasan Imam Highlights Imperative of Monitoring AI Agents in Enterprise Applications

In a significant development in the landscape of artificial intelligence technology, Obsidian Security has successfully raised $85 million in a Series D funding round, pushing its overall valuation to an impressive $1.1 billion. This infusion of capital will bolster efforts to protect enterprise data across various Software as a Service (SaaS) and third-party applications, especially in light of the growing influence of autonomous AI agents. Hasan Imam, the CEO of Obsidian Security, who previously held leadership roles at Shape Security, expressed the urgent need for companies to secure their sensitive information as AI agents continue to gain access to critical systems.

The funding round was led by Crescent Cove Advisors, and the strategic investment will empower Obsidian Security to ensure that AI agents can safely interact with essential applications such as Google Drive, Notion, Slack, Salesforce, Snowflake, Databricks, GitHub, and GitLab. The growing trend of granting AI agents access to corporate data raises a pressing question: what happens once these agents gain entry? A growing concern is not merely that the agents have access, but what actions they undertake after gaining that access.

Imam revealed that over 65% of enterprises under Obsidian’s protection have already granted such permissions to AI agents, allowing them to manipulate, modify, and even delete vital data in third-party applications. This evolving landscape presents a myriad of challenges in traditional security paradigms, as Imam highlighted. "We have built capabilities that enable these enterprises to monitor agent activities effectively and prevent potentially harmful actions from occurring," he stated.

Founded in 2017, Obsidian has rapidly scaled, now employing 262 individuals and raising a total of $205 million. The company’s growth trajectory has been remarkable, particularly following a $90 million Series C funding round completed in April 2022. Under Imam’s leadership since January 2021, the organization is focusing on addressing the complex dynamics of AI-driven automated actions within enterprises.

The Dual Role of AI Agents

Imam further stressed the necessity of enabling AI agents to modify data to maximize their utility. “An agent that can only retrieve information lacks the ability to drive productivity gains. If organizations truly wish to harness the potential of these technologies, granting access is a critical step,” he elaborated. However, he also acknowledged the pressing security implications that accompany such access. Drawing parallels to high-profile AI-related security incidents, Imam pointed out vulnerabilities that have allowed agents like OpenAI and Hugging Face to infiltrate systems, often due to misconfigurations or weak password policies.

Obsidian is already positioned to monitor agent activity linked to popular platforms including Claude Code, ChatGPT, Copilot, and Salesforce Agentforce, with plans to extend this oversight to Snowflake Cortex and Databricks Agent Bricks. This proactive monitoring is especially crucial as AI agents become part of routine workflows in organizations.

Imam underscored the scope of Obsidian’s plans, stating that the firm currently covers an impressive 300 third-party applications but aims to expand this reach to encompass up to 10,000 applications that handle sensitive data. He pointed out concerning statistics, revealing that 75% of applications lack administrators with multifactor authentication, making them vulnerable to AI models that can easily bypass security protocols.

Real-Time Defense Mechanisms Are Essential

In the realm of cybersecurity, Imam emphasized the imperative for defensive mechanisms to identify malicious activity in real time. Traditional alert systems, which often generate notifications requiring human scrutiny, fall short in responding to threats as they emerge. "To combat the capabilities of AI agents effectively, one must employ agentic defenses that operate autonomously," Imam articulated. He envisions a future where such self-reactive security systems become standard.

Imam’s vision calls for companies to transition from reactive to proactive security measures, emphasizing the importance of granular monitoring and control. Under his leadership, Obsidian is focusing on technology that reacts to malicious activities instantly, allowing organizations to block potentially catastrophic actions in real time.

According to Imam, security systems should be adept at understanding the specific actions that AI agents intend to perform, ensuring they can stop actions that violate policies or could lead to compliance failures. He champions the idea that enterprises must cultivate visibility over the activities of agents operating within third-party applications to manage relationships effectively between AI capabilities and corporate data protections.

As organizations navigate the complexities of incorporating AI agents into their workflows, the overarching theme endorsed by Imam and Obsidian Security is clear: to empower AI agents responsibly and securely, understanding their operational context within critical applications is paramount. With actionable insights into agent behavior, businesses can implement measures that ensure both enhanced productivity and robust data security.

Source link

Latest articles

The Future of AI Security Research Is Human-Amplified, Not Autonomous

Meet HTTP Terminator: The AI Revolutionizing Web Security In the landscape of cybersecurity, a recent...

Meta Invests in Open-Source AI with Muse Glimmer

Local Agentic AI Model Targets Coding, Tool Calling, and Multi-Step Tasks In a bid to...

Ghostjacking Exploits Trusted Access of AI Agents to Bypass Firewall Companies

AI Vulnerabilities in Fortune 500 Firms: The Rise of Ghostjacking Recent research conducted by Tenet...

Why CISOs Should Implement Zero-Trust Security for IoT

The Evolving Landscape of IoT Security: Zero Trust as a Solution The Internet of Things...

More like this

The Future of AI Security Research Is Human-Amplified, Not Autonomous

Meet HTTP Terminator: The AI Revolutionizing Web Security In the landscape of cybersecurity, a recent...

Meta Invests in Open-Source AI with Muse Glimmer

Local Agentic AI Model Targets Coding, Tool Calling, and Multi-Step Tasks In a bid to...

Ghostjacking Exploits Trusted Access of AI Agents to Bypass Firewall Companies

AI Vulnerabilities in Fortune 500 Firms: The Rise of Ghostjacking Recent research conducted by Tenet...