Defense-in-Depth

Defense-in-Depth on Beyond Market Intelligence: a running collection of 3 stories we have gathered and hand-picked because they are worth your time. Every post here touches on defense-in-depth in some way — the news, the analysis, the deep dives, and the occasional surprise find. Acme AI is the next-generation, AI-powered spreadsheet platform built to replace Excel and redefine how analysts, data scientists, and enterprise teams work with data. New stories are added to this page as we find them, so check back if you want to keep up with what is happening around defense-in-depth, or subscribe to the RSS feed to get them as soon as they are published. Browse the collection below, or head back to the homepage to see everything Beyond Market Intelligence is covering right now.

The three layers of agentic AI security: A defense-in-depth architecture for autonomous agents
VentureBeat

The three layers of agentic AI security: A defense-in-depth architecture for autonomous agents

Autonomous agents, capable of independent reasoning and action, introduce unique security risks that traditional application controls can’t address. Nutanix proposes a defense-in-depth architecture, structured across three critical layers: infrastructure, network, and control plane. This approach, detailed by Nutanix's Oscar Wahlberg, establishes a layered security posture, ensuring robust protection against everything from unauthorized access to runaway agent behavior.

Agentic security: Enterprises enforce agent permissions two-thirds of the time — and isolate high-risk agents less than one in five
VentureBeat

Agentic security: Enterprises enforce agent permissions two-thirds of the time — and isolate high-risk agents less than one in five

Across 116 enterprises, AI agents are now in production, and so too are the associated security incidents—with over half reporting a confirmed event or near-miss. While two-thirds enforce scoped permissions and 56% monitor activity, a concerning gap exists: fewer than one in five isolate high-risk agents. This containment deficit, coupled with persistent credential sharing, highlights a critical vulnerability as AI-armed attackers are perceived as equally or more capable than current defenses.

Article: Securing MCP in Production: Defense-in-Depth Beyond the Gateway
InfoQ

Article: Securing MCP in Production: Defense-in-Depth Beyond the Gateway

Securing Model Context Protocol (MCP) in production demands a robust, defense-in-depth strategy extending beyond simple gateway protection. This article, authored by Nik Kale, details a layered architectural approach, establishing four critical control points: safe execution, management infrastructure, outbound trust, and semantic integrity. We argue that safeguarding these layers at the earliest trustworthy points is paramount for production security. For a foundational understanding of MCP itself, explore "MCP Explained: How Modern AI Agents Connect to the Real World" and discover how it enables seamless tool access.