Idira Secure AI Agents

Palo Alto Networks (Idira)

Commercial

Discovers AI agents across SaaS, cloud and dev environments and brokers their MCP tool access with just-in-time privilege and audit.

Curated by Tiberiu ArvaVerified

Proprietary

Strengths

  • Agent Identity Broker for MCP
  • Just-in-time, zero standing privileges
  • PAM heritage from CyberArk

Practitioner note

Fits organisations already on CyberArk PAM that want agent access routed through a broker; the May 2026 Idira rebrand means docs and URLs are still moving.

Warning

Idira Secure AI Agents: CyberArk's platform was rebranded as Idira by Palo Alto Networks in May 2026.

Governance posture

Reviewed 2026-09-30
UnknownData residency

Data residency for Secure AI Agents is not stated on the Idira pages reviewed.

YesDeployment model

Delivered as part of the Idira identity security platform; agent traffic routed through the Agent Identity Broker. Self-hosted options not stated. (saas)

Source
YesAudit logging

Logs capture which agent requested what action and when, via the Identity Broker.

Source
UnknownSOC 2

Palo Alto Networks trust center lists SOC 2 Type II for Palo Alto Networks but does not name Idira or CyberArk products in scope.

UnknownISO 27001

Palo Alto Networks ISO 27000 page does not list Idira or CyberArk products in scope.

UnknownISO 42001

Palo Alto Networks lists ISO 42001, but Idira/CyberArk product scope is not stated.

N/AEU AI Act

Identity and access-control tooling for agents, not itself an AI system placed on the market; AI Act obligations rest with the provider/deployer of the governed agents. (role: not-applicable)

YesLicense risk

Proprietary Palo Alto Networks (Idira) product; no open-source edition. (medium)

Source

EU AI Act obligations

Risk tier: Not applicable · as of 2026-08-23

Source-backed information mapped from Idira Secure AI Agents's tracked risk tier — not legal advice. Obligations depend on how your organisation deploys the system; see the full obligation reference and timeline.

This record's EU AI Act risk tier is marked not applicable, so no tier-specific obligations attach. Deployers embedding it in an AI system in scope of the Act should assess that system's own tier.

Explore the category

Compare this tool against the rest of its category and the cloud platform foundation layer.