English 箭头
Podcast Cover

[Navigating the Frontier: Security, Identity, and the Rise of AI Agents in the Enterprise]-[Keycard: 2026 is the Year of Agents]

a16z Podcast · B2 · 2026-01-08

Technology
Or study on the web version

📋 Summary

The Dawn of the Agentic Era

As we look toward 2026, the tech industry is shifting from experimental AI models to the widespread production deployment of AI agents. Ian Livingston, CEO of Keycard, and Joel De La Garza of A16Z, describe this transition as a shift from "co-pilots"—which serve as advanced autocomplete tools—to autonomous agents capable of performing long-running tasks. This evolution represents a move toward a "continuum of agentic behavior," where human users eventually delegate complex, multi-step decision-making processes to AI, similar to the transition from human-driven cars to autonomous Waymo vehicles.

The Security Crisis: Identity and Contextual Risk

The podcast highlights a critical security challenge: the traditional, static models of identity and access management (IAM) are insufficient for the world of agents. In a classic software environment, a user clicks a button, and the system performs a task based on static permissions. With AI agents, the environment becomes "hyper-ephemeral" and "hyper-contextual." Agents need to perform tool calls dynamically, often accessing production data or external resources.

Livingston points out that this introduces "unseen risk," such as prompt injection and unauthorized data access. For instance, an agent might inadvertently return proprietary data from one firm to another because it lacks the granular, contextual understanding of who should access what. As Joel notes, this is an "Auth N, Auth Z problem"—the fundamental issue of verifying the identity of the agent and ensuring it adheres to strict, task-based guardrails.

Moving Beyond the Firewall: Intent-Based Policy

To secure this new architecture, the industry needs to move beyond legacy perimeter-based security (like firewalls or basic VPCs). The proposed solution involves a "hybrid deterministic and non-deterministic system." In this model, agents operate within a "bounding box" where access is granted based on the specific intent and task of the user at runtime.

This requires a new layer of infrastructure that can perform "step-up authorization." When an agent attempts an action, the system must evaluate:

  1. Contextual Alignment: Does this agent have the right to access this specific data for this specific task?
  2. Human Accountability: Does the human user provide "conditional consent" for the agent to proceed?

Livingston emphasizes that Keycard is building tools to provide this governance, allowing organizations to maintain auditability and control over what agents can do, even as they interact across different compute boundaries like MCP (Model Context Protocol) servers and cloud databases.

Enterprise Adoption and the End of the "Empire of No"

Perhaps the most significant takeaway is that enterprise adoption of agents is being driven by top-level business objectives, such as "earnings efficiency" and "developer productivity." Unlike previous waves of technology where security teams could act as the "Empire of No," the current drive for AI-driven profitability makes it impossible to halt deployment. Companies are now forced to adopt an "enablement" mindset—finding ways to integrate agents safely rather than blocking them entirely.

Conclusion: The Path Forward

The future of the agentic world relies on interoperability and standards. Livingston notes that Keycard is committed to being "standards-operable," working within existing frameworks while pushing for new protocols that can handle the complexity of multi-tenant, agent-led workflows. As we move forward, the goal is to ensure that agents serve as powerful extensions of the human workforce, operating under clear, deterministic guardrails that protect the organization while unlocking unprecedented levels of operational efficiency.

🎯Key Sentences

1
Let's get into it.
2
So it's shaping up to be that we're at the beginning of what sounds like the start of the year of the agents.
3
I guess we could kick this off.
4
we constantly harp on people to be very explicit on what is the problem you solve.
5
Nothing could be more timely.
Expand All

📝Key Phrases

1
first glimpses
2
shaping up to be
3
kick this off
4
across the board
5
on the flip side
Expand All

📖 Transcript

In 2025, we saw the first glimpses of true AI agents.
In 2026, every company will be rushing to get them into production and they'll need companies like Keycard to manage fleets of agents.
In this conversation, A16Z partner Joel De La Garza sits down with Keycard co-founder and CEO, Ian Livingston, to discuss the continuum from co-pilots to agents, the security realities of tool calling, why enterprises will adopt before consumers and how to control your agents.
Let's get into it.
So it's shaping up to be that we're at the beginning of what sounds like the start of the year of the agents.
2026.

ListenLeap Brings You Into Real Context Learning

🎨 Interesting Content
🌍 Real Materials
📱 Listen Anytime
Or study on the web version