SailPoint Introduces: Agent Identity Security
Why This Matters
As AI agents become integral members of the workforce, organizations need a way to govern and secure them just like human identities.
Agent Identity Security helps enterprises:
- Discover, secure, and govern AI agents under one unified control plane
- Assign ownership and ensure accountability for every agent
- Prevent over-permissioning, misalignment, and regulatory exposure
What Has Changed
Agent Identity Security extends SailPoint’s Identity Security Cloud to include AI agents alongside human users.
Key capabilities include:
- AI Agent Aggregation & Identity Creation – Connect directly to AWS, Azure, and GCP to onboard AI agents with enriched identity context
- Ownership & Succession Planning – Assign human owners to agents and maintain continuous oversight
- Certification & Review – Recertify agent access regularly and revoke inappropriate permissions
- Tool Governance – Apply consistent policies to agent service accounts from creation through retirement
- Audit & Traceability – Maintain full audit trails and certification records for compliance and investigations
Available for: Business and Business+ customers as an add-on capability
SailPoint: MCP (Model Context Protocol) Server update
SailPoint has just introduced the MCP (Model Context Protocol) Server, and this could be a game changer for how we handle access requests. In short, the MCP Server acts as a standardised bridge between AI applications and SailPoint’s Identity Security Cloud (ISC). Instead of needing heavy custom integration or multiple request centers, it gives you a ready-made interface to connect AI tools directly into SailPoint. That means access requests can finally become as simple as asking an assistant in plain language, without dropping enterprise security standards.
Key Benefits:
- Quick Integration: quickly connect AI applications to SailPoint in 5-15 minutes without complex custom development.
- Natural Language Processing: Enable conversational access request at scale.
- Future-Proof Architecture: Built on MCP standard and regular updates to ensure compatibility with emerging AI platforms and security.
- Enterprise-grade: Maintains SailPoint’s proven IAM expertise and enterprise-grade scalability and security.
Getting Started:
- SailPoint Identity Security Cloud access is required.
- Choose integration approach based on technical requirements.
- Setup authentication following provided guides (coming soon).
- Begin building AI-powered access management experiences
Important Dates:
- General Availability: Sept 29, 2025
- Integration Documentation: Sept 29, 2025
- Expanded Toolkit: 6-12 months post-GA for expanded MCP tools
SailPoint: A new capability in Identity Security Cloud
SailPoint has introduced a new capability in Identity Security Cloud: the option to automatically delete accounts when an identity is terminated
Why This Matters
- Many customers need more than just disabling accounts
- Until now, this required custom rules (BeforeProvisioning), which slowed projects and added overhead
What Has Changed
- Admins can now configure Lifecycle States to delete accounts (not just enable/disable)
- All deletes are audited, so you know who did what, when, and on which system
- For disconnected systems, SailPoint creates a manual task and sends a notification
Timelines
- Sandbox rollout: Sept 15, 2025
- Production rollout: Week of Sept 22, 2025
SailPoint Identity Security Cloud – New Updates
Key Highlights from this latest release:
- BeyondTrust Password Safe On-Premise Integration: Identity Security Cloud now supports the BeyondTrust Password Safe (On-Premise) credential provider for Secrets Management. This enables credential cycling directly from BeyondTrust, providing stronger security and streamlined password management
- Workflows – Execution Playback:
A new execution playback feature has been introduced for Workflows. Administrators can now “playback” workflow execution logs in the same format as Test Workflow, viewing input/output data step by step. Even if the workflow has been modified since execution, playback restores the original configuration for accurate review and troubleshooting
For the full release notes, visit: https://community.sailpoint.com/t5/SaaS-Release-Notes/tkb-p/saas-release-notes