CrowdStrike launches continuous identity for AI agents
CrowdStrike Holdings Inc. (NASDAQ: CRWD) announced the launch of Continuous Identity for AI Agents, a new capability within its Falcon Next-Gen Identity Security platform. The feature was unveiled at the Identiverse 2026 conference in Austin, Texas and Las Vegas.
The new system replaces static policies with continuous, risk-aware enforcement for AI agent operations. It authorizes each agent action based on the agent's owner, the user calling it, and real-time risk assessments using the SPIFFE standard for cryptographically verifiable identities.
"Point-in-time authorization becomes a legacy approach the second agents are given autonomy," said Elia Zaitsev, chief technology officer at CrowdStrike. "Authorize once and trust indefinitely is not a security model; it's a liability."
The capability incorporates technology from CrowdStrike's acquisition of SGNL and operates through several key features. These include verifiable agent identity using the SPIFFE standard, context-aware authorization that evaluates device risk posture, and zero standing privilege access that grants permissions only when needed.
The system integrates with CrowdStrike's Falcon AI Detection and Response (AIDR) to monitor prompts and detect attempts to manipulate language models beyond authorized scope. When violations are detected, the system can revoke access in real time.
Continuous Identity for AI Agents extends across human, non-human, and AI agent identities in on-premises, software-as-a-service, browser, and cloud environments. The announcement includes forward-looking statements noting that referenced features are still in development and subject to change.
CrowdStrike develops cloud-native cybersecurity platforms for enterprise endpoint and cloud workload protection, serving customers globally through its Falcon platform architecture.
