Every Employee is Getting an AI Assistant, But Is Security Infrastructure Ready?
好的,我现在需要帮用户总结这篇文章的内容,控制在100个字以内。首先,我得通读文章,抓住主要观点。 文章讲的是企业正在引入AI助手,比如Claude for Work,作为员工的个人助理。但安全问题被忽视了。AI助手需要访问员工的各种数据和系统,而目前的安全措施不够,没有明确的权限和审计记录。 然后,文章提到一个投资公司部署了Claude,并通过Aembit的IAM解决方案解决了安全问题。这个方案结合了人类和AI的身份,确保访问安全并记录操作。 总结时要突出AI助手的普及、安全挑战以及解决方案。控制在100字以内,避免使用“总结”或“这篇文章”开头。 所以,最终的总结应该是:企业引入AI助手改变工作方式,但忽视了安全风险。Aembit提供身份管理解决方案确保安全。 </think> 企业正在引入AI助手改变工作方式,但忽视了安全风险。Aembit提供身份管理解决方案确保安全。 2026-4-23 07:48:38 Author: securityboulevard.com(查看原文) 阅读量:13 收藏

There’s a conversation happening inside almost every enterprise right now. Leadership has decided that AI agents are going to change how the organization works. Claude for Work licenses are being purchased. Rollouts are being planned. Employees are being told that their personal AI assistant is here and that it will change everything about how they work.

What’s not being discussed nearly enough is what it means, from a security standpoint, to give every employee an AI agent that can act on their behalf across their entire digital work life.

Think about what that actually involves. A personal AI assistant isn’t useful if it can only access a narrow slice of what the employee works with. To be genuinely helpful, the agent needs access to email, calendar, documents, financial data, internal systems – the full surface area of how that employee does their job. And in most organizations today, agents get that access with no distinct identity of their own, no policy enforcing what they can do, and no audit trail that separates agent actions from the user’s.

I’ve been thinking about this since we started working with one of our design partners. This $300B investment firm set out to do exactly what I’m describing: deploy Claude as a personal assistant for their entire workforce. What started as a focused project around financial research quickly revealed itself to be something much bigger. Analysts wanted to leverage Claude to access not just financial data platforms, but Microsoft 365 – email, calendars, SharePoint, the full Microsoft Graph. The scope of what “personal assistant” actually means in practice is vast.

Their security team understood this before almost anyone else did and they did something important: they refused to let the rollout proceed without the right foundation in place, not because they were against AI, but because they’d spent years building security standards for their human workforce and weren’t willing to abandon them the moment an AI agent entered the picture.

The solution is Aembit IAM for Agentic AI – a blended identity model that gives Claude a verified credential encoding both the employee’s identity and the agent’s identity, enables secretless access, and produces a complete audit trail of every action Claude takes. Their security team said ‘yes’ and the rollout went live. Every employee at this organization can access Claude through Aembit, seamlessly securing their agents’ actions. 

We published the full case study today. I think it’s one of the most important things we’ve shipped – not because of the technology specifically, but because of what it represents. The era of AI agents as personal assistants for every employee is here. The security infrastructure to support it is just catching up.

Read the case study →


Aembit’s IAM for Agentic AI secures Claude’s access to MCP servers with blended agent-human identity, runtime policy enforcement, and full audit logging. Learn more at aembit.io/use-case/secure-claude.

The post Every Employee is Getting an AI Assistant, But Is Security Infrastructure Ready? appeared first on Aembit.

*** This is a Security Bloggers Network syndicated blog from Aembit authored by David Goldschlag. Read the original post at: https://aembit.io/blog/every-employee-is-getting-an-ai-assistant-but-is-security-infrastructure-ready/


文章来源: https://securityboulevard.com/2026/04/every-employee-is-getting-an-ai-assistant-but-is-security-infrastructure-ready/
如有侵权请联系:admin#unsafe.sh