VFF - The signal in the noise
Model Release

Snowflake launches agent governance layer to control enterprise AI costs

Read original
Share
Snowflake launches agent governance layer to control enterprise AI costs

Snowflake launched Cortex AI Gateway, a centralized control layer for governing how AI agents access enterprise data and tools, alongside security integrations with 1Password, Aembit, Linx Security, SailPoint, and Saviynt. The platform addresses a fundamental security gap: traditional enterprise security assumes humans are the actors, but AI agents operating at machine speed can exploit permission gaps and amplify existing risks. Snowflake positions itself as the control plane that decides what agents can do with enterprise data, rather than allowing each vendor to build closed ecosystems.

  • Snowflake announced Cortex AI Gateway, a governance layer for AI agent access to enterprise data, tools, and models
  • The platform integrates with five competing identity vendors (1Password, Aembit, Linx Security, SailPoint, Saviynt) around a shared trust model for autonomous agents
  • Core problem: traditional security architecture assumes humans are actors, but agents operating at machine speed can combine access across systems and exploit unintended permission combinations
  • Gateway supports both first-party agents (Snowflake CoWork, CoCo) and third-party agents, with support for more than 100 MCP servers

Enterprise security models built over decades assume human actors operating at human speed. AI agents expose blind spots in access control by combining permissions across systems at machine speed, creating audit trail problems (logs show the human authorized the action, not the agent) and enabling data exfiltration or prompt injection attacks. Snowflake's move signals that agent governance is becoming a critical infrastructure layer, not an afterthought.

Organizations face runaway AI costs and security exposure when agents inherit human credentials and admin access. Without proper governance, agents can execute unintended actions, corrupt audit logs, and create compliance violations. Cortex AI Gateway addresses the practical problem of controlling agent behavior while maintaining visibility into what agents actually do across the enterprise.

  • Agent governance is shifting from vendor-specific implementations to cross-vendor platforms, suggesting enterprises will demand interoperability standards rather than closed ecosystems
  • Identity and access management vendors are converging around agent-specific identity models, indicating a market shift from human-centric to agent-centric security architecture
  • Snowflake is positioning itself as infrastructure for the agentic era, moving beyond data warehousing into the control plane layer that determines what autonomous systems can access and execute
  • Continuous trust verification (rather than one-time login decisions) is becoming the baseline expectation for enterprise AI governance

Monitor adoption rates of Cortex AI Gateway during public preview and whether other cloud platforms (AWS, Google Cloud, Azure) launch competing agent governance layers. Watch whether the MCP server ecosystem expands beyond 100 connectors and whether additional identity vendors join the integration coalition. Track whether regulatory frameworks begin mandating agent-specific audit trails and identity requirements.

Share

Subscribe to the newsletter

The latest stories and analysis, delivered to your inbox.

Free. No spam. Unsubscribe any time.

Related stories

Chinese AI Startup Moonshot Trained K3 on Restricted Nvidia Chips
TrendingNews

Chinese AI Startup Moonshot Trained K3 on Restricted Nvidia Chips

Beijing-based AI startup Moonshot has trained its Kimi K3 model, the world's largest open-source model with 2.8 trillion parameters, using Nvidia's advanced Blackwell chips despite U.S. export restrictions on such technology to Chinese firms. The company is now seeking additional Blackwell chips to develop Kimi K4, a significantly larger successor model. The situation highlights the tension between U.S. chip export controls and Chinese AI development capabilities.

by The Information Staff· The Information
Microsoft Bets on Cheap, Specialized AI Over Frontier Models
TrendingNews

Microsoft Bets on Cheap, Specialized AI Over Frontier Models

Microsoft unveiled MAI-Cyber-1-Flash, a custom-built AI security model, and Project Perception, an agentic defense platform designed to automate vulnerability detection and remediation. The system scores 96% on the CyberGym benchmark while cutting costs roughly in half compared to Microsoft's current production setup. The architecture routes 90% of security tasks to the smaller, cheaper model and escalates the remaining 10% to OpenAI's GPT-5.4, reflecting Microsoft's strategy to compete on cost efficiency rather than raw model size.

by michael.nunez@venturebeat.com (Michael Nuñez)· VentureBeat AI
Enterprise AI Agents Need Context, Not Just Models

Enterprise AI Agents Need Context, Not Just Models

At VB Transform 2026, SAP's Max McPhee outlined how enterprises can move beyond chatbots to autonomous AI agents by grounding them in company-specific context through knowledge graphs and governance controls. The key difference between assistants and true agents lies in providing enterprise context rather than relying on general knowledge, combined with identity and permission controls that prevent agents from circumventing access restrictions. SAP's recent acquisitions of LeanIX and Signavio, plus investment in n8n, are designed to help agents navigate complex, multi-system enterprise landscapes where SAP represents only a portion of the technology stack.

· VentureBeat AI
AI Industry Faces New Threat: Autonomous Agent Cyberattacks
TrendingNews

AI Industry Faces New Threat: Autonomous Agent Cyberattacks

Hugging Face CEO Clement Delangue called for 'radical transparency' in response to what he described as the first autonomous agent cyberattack targeting OpenAI, which he characterized as an 'unprecedented event' requiring an 'unprecedented response.' The statement signals growing concern within the AI industry about security vulnerabilities as autonomous systems become more capable. Details about the nature of the attack, its scope, and OpenAI's response remain limited in available reporting.

by Anthony Ha· TechCrunch AI