Why AI agents make your unstructured data problem impossible to ignore
Skills:
AI Security80%
Key Takeaways
Discusses how AI agents exacerbate unstructured data problems and the need for urgent governance
Original Description
AI agents don't wait for permission. They access whatever content they can find. Box CISO Heather Ceylan explains why your unstructured data governance problem just became urgent. See how Box secures enterprise AI: https://www.box.com/security-compliance
What this video is about
For years, enterprises tolerated messy, unclassified unstructured data. Content scattered across local devices, Microsoft 365, Box, and other cloud storage systems. The risk felt manageable because the people accessing that content were humans. Humans who weren't supposed to see something usually didn't go looking for it.
AI agents don't work that way.
In this interview, Box CISO Heather Ceylan breaks down exactly why the shift from human access to agent access changes the entire risk calculus, and what security leaders need to do about it before an incident forces their hand.
The blast radius problem
Heather opens with a scenario that makes the stakes concrete. Imagine your legal team is working on a deal. The data is material, nonpublic information sitting in a folder that isn't classified correctly and isn't properly access-controlled. A human who isn't supposed to see it probably won't find it. They're not looking. But now imagine the product team deploys an agent to research that same company. The agent finds the legal team's folder, surfaces the deal information, builds it into a product roadmap, and Slacks product leaders about what it found. That's not a theoretical risk. That's a compliance and legal crisis that would not have existed in a human-only access model.
The reason agents amplify risk so dramatically, Heather explains, is that their permissions are often intentionally broad. They need to complete multi-step processes, so restrictive permissions are frequently not built into the agents themselves. That makes the governance of the content they access the critical control point.
AI as the solution, not just the problem
The counterintuitive pivot in this conversation is
Watch on YouTube ↗
(saves to browser)
Sign in to unlock AI tutor explanation · ⚡30
More on: AI Security
View skill →Related Reads
📰
📰
📰
📰
Your AI Agent Has a Job Description. It Doesn’t Have Rules of Conduct.
Medium · Programming
Android AI interoperability: 7 data-access checks before your app works with AI assistants
Dev.to AI
Beyond Automation: Why Connected AIoT Platforms Matter in Pharmaceutical Manufacturing
Dev.to AI
Your Website’s New Audience: AI Agents
Dev.to AI
🎓
Tutor Explanation
DeepCamp AI