{"id":156466,"date":"2026-06-04T14:25:58","date_gmt":"2026-06-04T11:25:58","guid":{"rendered":"https:\/\/www.catonetworks.com\/blog\/agentes-de-ia-como-su-nuevo-empleado-aumenta-los-riesgos-de-seguridad\/"},"modified":"2026-07-06T10:07:12","modified_gmt":"2026-07-06T07:07:12","slug":"ai-agents-how-your-new-employee-brings-more-security-risks","status":"publish","type":"post","link":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/","title":{"rendered":"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">AI agents aren\u2019t applications. They\u2019re employees. So why are we treating them like applications?<\/p>\n\n<p class=\"wp-block-paragraph\">AI agents don\u2019t behave like classic applications. They access systems. They make decisions. They operate continuously. They interact with humans and other systems without being explicitly triggered each time. That\u2019s not automation. That\u2019s not scripts. That\u2019s a digital worker. And yet, most organizations still treat AI agents like disposable applications\u2014something you deploy, configure once, and forget. That mindset is going to create the next generation of insider risk.<\/p>\n\n<p class=\"wp-block-paragraph\">If AI agents are closer in their behavior to humans than they are to applications, we need to think of the AI agent lifecycle in HR terms and apply the same checks and balances we have with employees. According to a 2026 <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/02\/10\/80-of-fortune-500-use-active-ai-agents-observability-governance-and-security-shape-the-new-frontier\/\" type=\"link\" id=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/02\/10\/80-of-fortune-500-use-active-ai-agents-observability-governance-and-security-shape-the-new-frontier\/\">Microsoft report<\/a>, more than 80% of Fortune 500 companies employ AI agents. However, according to a 2025 <a href=\"https:\/\/www.workato.com\/full-reports\/2025-hbr-enterprise-agentic-ai\" type=\"link\" id=\"https:\/\/www.workato.com\/full-reports\/2025-hbr-enterprise-agentic-ai\">Harvard Business Review report<\/a>, only 6% of organizations trust AI agents to autonomously handle core end-to-end business processes.<\/p>\n\n<p class=\"wp-block-paragraph\">We need to rethink how we hire, work with, and fire AI agents.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-hiring-an-ai-agent\">Hiring an AI agent<\/h2>\n\n<p class=\"wp-block-paragraph\">When you hire a human employee, you don\u2019t skip due diligence. You run background checks. You verify credentials. You define their role clearly. You don\u2019t give them access to every system on day one.<\/p>\n\n<p class=\"wp-block-paragraph\">But when companies deploy AI agents, that\u2019s often exactly what happens. Haven\u2019t we been talking about Zero Trust for over a decade now? Why are we handing all the keys and permissions to a new employee (be it an AI one)? Excessive agency galore.<\/p>\n\n<p class=\"wp-block-paragraph\">We spin them up quickly. We don\u2019t question training data provenance. We don\u2019t validate the model supply chain. We don\u2019t clearly define what the AI agent should never do. And we frequently over-provision access \u201cjust to make it work.\u201d<\/p>\n\n<p class=\"wp-block-paragraph\">What are the consequences? You may have just hired a digital employee with unknown influences, unclear boundaries, and excessive privileges. If that AI agent is compromised, manipulated, or simply misaligned, the blast radius is enormous. Just like a bad hire in finance with unrestricted access can lead to insider risk, the damage caused by AI agents won\u2019t be theoretical. It will be measurable.<\/p>\n\n<p class=\"wp-block-paragraph\">We cannot ask \u201cWill this AI agent be susceptible to prompt injection?\u201d or \u201cWill it hallucinate?\u201d Without running the proper background checks, such as the underlying model and training data, we may end up with the AI agent performing tasks (based on its model, guardrails, restrictions, etc.) that do not align with what we want or need.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-working-with-an-ai-agent\"><strong>Working with\u00a0an AI agent<\/strong><\/h2>\n\n<p class=\"wp-block-paragraph\">Employees aren\u2019t trusted blindly after onboarding. They\u2019re supervised. Their performance is reviewed. Their access is periodically reassessed. If their behavior changes, someone notices it. AI agents need the same discipline.<\/p>\n\n<p class=\"wp-block-paragraph\">AI agents are different from applications in that they accumulate permissions. They evolve based on input and environmental context. They can fail confidently and quietly. A human making a bad decision might raise eyebrows. An AI agent can make thousands of bad decisions before anyone looks.<\/p>\n\n<p class=\"wp-block-paragraph\">If you\u2019re not logging behavior, monitoring anomalies, reviewing access regularly, and assigning a named human owner, you\u2019ve effectively created a privileged insider that never sleeps and never asks for guidance.<\/p>\n\n<p class=\"wp-block-paragraph\">Furthermore, as a manager, I always want my team to continuously evolve and expand their knowledge. Sending them to conferences and online courses to learn is a top priority. We need AI agents to evolve and learn as well. But who is feeding them new data? Do they understand the context? Did we test to see if the information is used properly?<\/p>\n\n<p class=\"wp-block-paragraph\">The consequence isn\u2019t just security risk. It\u2019s governance risk. Compliance risk. Reputational risk. When regulators or boards ask, \u201cWho authorized this decision?\u201d following up with \u201cthe model did it\u201d is not a defensible answer.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-firing-an-ai-agent\">Firing an AI agent<\/h2>\n\n<p class=\"wp-block-paragraph\">When an employee leaves, there\u2019s a process. Access is revoked. Credentials are disabled. Responsibilities are reassigned. There\u2019s closure. With AI agents? Not so much. AI agents keep running. Credentials remain active. API tokens don\u2019t expire. And often, nobody can clearly answer who owns them.<\/p>\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.catonetworks.com\/blog\/cato-ctrl-inside-shadow-ai\/\" type=\"link\" id=\"https:\/\/www.catonetworks.com\/blog\/cato-ctrl-inside-shadow-ai\/\">That\u2019s how shadow AI is born<\/a>. AI agents are \u201cghost employees\u201d with legitimate credentials and no supervision. The consequence is predictable: orphaned access becomes an attack vector. And because these identities are non-human, they\u2019re often harder to detect in audits. with legitimate credentials and no supervision. The consequence is predictable: orphaned access becomes an attack vector. And because these identities are non-human, they\u2019re often harder to detect in audits.<\/p>\n<a href=\"https:\/\/www.catonetworks.com\/blog\/cato-ctrl-inside-shadow-ai\/\" class=\"blog-box-link\">\nCato CTRL\u2122 Threat Research: Inside Shadow AI | Read The Blog  <span class=\"chevron-wrap\"><\/span><\/a>\n\n<h2 class=\"wp-block-heading\" id=\"h-the-bottom-line\">The bottom line<\/h2>\n\n<p class=\"wp-block-paragraph\">We already know how to manage risk at scale. We\u2019ve been doing it for decades with people. Structured hiring. Active supervision. Formal offboarding. Clear accountability.<\/p>\n\n<p class=\"wp-block-paragraph\">AI agents now sit inside our organizations making decisions and taking action. The mistake is pretending they\u2019re just software. They\u2019re not. They\u2019re a new class of digital employee, and they need lifecycle governance to match.<\/p>\n\n<p class=\"wp-block-paragraph\">The question isn\u2019t whether AI agents should be treated as part of the workforce. The real question is: Do you know how many digital employees are working for you right now and who\u2019s managing them?<\/p>\n\n<p class=\"wp-block-paragraph\">For enterprises, it\u2019s important that you get in front of security risks for AI agents. If you do that, you are better positioned to observe, orient, decide, and act on these risks.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>AI agents aren\u2019t applications. They\u2019re employees. So why are we treating them like applications? AI agents don\u2019t behave like classic applications. They access systems. They make decisions. They operate continuously. They interact with humans and other systems without being explicitly triggered each time. That\u2019s not automation. That\u2019s not scripts. That\u2019s a digital worker. And yet,&#8230;<\/p>\n","protected":false},"author":39,"featured_media":144462,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1094],"tags":[],"coauthors":[1008],"class_list":["post-156466","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-sin-categorizar"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v28.3 (Yoast SEO v28.3) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad| Cato Networks<\/title>\n<meta name=\"description\" content=\"\u00bfSabe cu\u00e1ntos agentes de IA est\u00e1n operando en su organizaci\u00f3n? Si no es as\u00ed, es posible que tenga un riesgo interno no gestionado. Lea c\u00f3mo cerrar la brecha de gobernanza.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/\" \/>\n<meta property=\"og:locale\" content=\"es_ES\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad\" \/>\n<meta property=\"og:description\" content=\"\u00bfSabe cu\u00e1ntos agentes de IA est\u00e1n operando en su organizaci\u00f3n? Si no es as\u00ed, es posible que tenga un riesgo interno no gestionado. Lea c\u00f3mo cerrar la brecha de gobernanza.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/\" \/>\n<meta property=\"og:site_name\" content=\"Cato Networks\" \/>\n<meta property=\"article:published_time\" content=\"2026-06-04T11:25:58+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-07-06T07:07:12+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2026\/02\/The-IT-Stack-Keeps-Enterprise-IT-Stuck-1200x794-Dark-1.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"794\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Etay Maor\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Etay Maor\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutos\" \/>\n\t<meta name=\"twitter:label3\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data3\" content=\"Etay Maor\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad| Cato Networks","description":"\u00bfSabe cu\u00e1ntos agentes de IA est\u00e1n operando en su organizaci\u00f3n? Si no es as\u00ed, es posible que tenga un riesgo interno no gestionado. Lea c\u00f3mo cerrar la brecha de gobernanza.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/","og_locale":"es_ES","og_type":"article","og_title":"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad","og_description":"\u00bfSabe cu\u00e1ntos agentes de IA est\u00e1n operando en su organizaci\u00f3n? Si no es as\u00ed, es posible que tenga un riesgo interno no gestionado. Lea c\u00f3mo cerrar la brecha de gobernanza.","og_url":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/","og_site_name":"Cato Networks","article_published_time":"2026-06-04T11:25:58+00:00","article_modified_time":"2026-07-06T07:07:12+00:00","og_image":[{"width":1200,"height":794,"url":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2026\/02\/The-IT-Stack-Keeps-Enterprise-IT-Stuck-1200x794-Dark-1.png","type":"image\/png"}],"author":"Etay Maor","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Etay Maor","Tiempo de lectura":"5 minutos","Written by":"Etay Maor"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#article","isPartOf":{"@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/"},"author":{"name":"Etay Maor","@id":"https:\/\/www.catonetworks.com\/es\/#\/schema\/person\/b4f917cd1b547601ddc92f680f45df40"},"headline":"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad","datePublished":"2026-06-04T11:25:58+00:00","dateModified":"2026-07-06T07:07:12+00:00","mainEntityOfPage":{"@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/"},"wordCount":928,"publisher":{"@id":"https:\/\/www.catonetworks.com\/es\/#organization"},"image":{"@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#primaryimage"},"thumbnailUrl":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2026\/02\/The-IT-Stack-Keeps-Enterprise-IT-Stuck-1200x794-Dark-1.png","articleSection":["Sin categorizar"],"inLanguage":"es"},{"@type":"WebPage","@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/","url":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/","name":"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad| Cato Networks","isPartOf":{"@id":"https:\/\/www.catonetworks.com\/es\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#primaryimage"},"image":{"@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#primaryimage"},"thumbnailUrl":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2026\/02\/The-IT-Stack-Keeps-Enterprise-IT-Stuck-1200x794-Dark-1.png","datePublished":"2026-06-04T11:25:58+00:00","dateModified":"2026-07-06T07:07:12+00:00","description":"\u00bfSabe cu\u00e1ntos agentes de IA est\u00e1n operando en su organizaci\u00f3n? Si no es as\u00ed, es posible que tenga un riesgo interno no gestionado. Lea c\u00f3mo cerrar la brecha de gobernanza.","breadcrumb":{"@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#primaryimage","url":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2026\/02\/The-IT-Stack-Keeps-Enterprise-IT-Stuck-1200x794-Dark-1.png","contentUrl":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2026\/02\/The-IT-Stack-Keeps-Enterprise-IT-Stuck-1200x794-Dark-1.png","width":1200,"height":794},{"@type":"BreadcrumbList","@id":"https:\/\/www.catonetworks.com\/es\/blog\/ai-agents-how-your-new-employee-brings-more-security-risks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.catonetworks.com\/es\/"},{"@type":"ListItem","position":2,"name":"Agentes de IA: C\u00f3mo su nuevo empleado aumenta los riesgos de seguridad"}]},{"@type":"WebSite","@id":"https:\/\/www.catonetworks.com\/es\/#website","url":"https:\/\/www.catonetworks.com\/es\/","name":"Cato Networks","description":"","publisher":{"@id":"https:\/\/www.catonetworks.com\/es\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.catonetworks.com\/es\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/www.catonetworks.com\/es\/#organization","name":"Cato Networks","url":"https:\/\/www.catonetworks.com\/es\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/www.catonetworks.com\/es\/#\/schema\/logo\/image\/","url":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2022\/08\/1559077757990.jpg","contentUrl":"https:\/\/www.catonetworks.com\/wp-content\/uploads\/2022\/08\/1559077757990.jpg","width":200,"height":200,"caption":"Cato Networks"},"image":{"@id":"https:\/\/www.catonetworks.com\/es\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.linkedin.com\/company\/cato-networks\/"]},{"@type":"Person","@id":"https:\/\/www.catonetworks.com\/es\/#\/schema\/person\/b4f917cd1b547601ddc92f680f45df40","name":"Etay Maor","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/0d24de5cafe1728ec90e8da24737d9efc25748bc2045ee2bec3f22371f95fe14?s=96&d=mm&r=g27d49c81edd0b47590c7b73a88aeb32d","url":"https:\/\/secure.gravatar.com\/avatar\/0d24de5cafe1728ec90e8da24737d9efc25748bc2045ee2bec3f22371f95fe14?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/0d24de5cafe1728ec90e8da24737d9efc25748bc2045ee2bec3f22371f95fe14?s=96&d=mm&r=g","caption":"Etay Maor"},"description":"Etay Maor is the vice president of threat intelligence at Cato Networks, a founding member of Cato CTRL, and an industry-recognized cybersecurity researcher. Prior to joining Cato in 2021, Etay was the chief security officer for IntSights (acquired by Rapid7), where he led strategic cybersecurity research and security services. Etay has also held senior security positions at Trusteer (acquired by IBM), where he created and led breach response training and security research, and RSA Security\u2019s Cyber Threats Research Labs, where he managed malware research and intelligence teams. Etay is an adjunct professor at Boston College and is part of the Call for Paper (CFP) committees for the RSA Conference and Qubits Conference. Etay holds a Master\u2019s degree in Counterterrorism and Cyber-Terrorism and a Bachelor's degree in Computer Science from IDC Herzliya.","url":"https:\/\/www.catonetworks.com\/es\/blog\/author\/etay-maor\/"}]}},"_links":{"self":[{"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/posts\/156466","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/users\/39"}],"replies":[{"embeddable":true,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/comments?post=156466"}],"version-history":[{"count":0,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/posts\/156466\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/media\/144462"}],"wp:attachment":[{"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/media?parent=156466"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/categories?post=156466"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/tags?post=156466"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www.catonetworks.com\/es\/wp-json\/wp\/v2\/coauthors?post=156466"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}