{
 "license": "CC-BY-4.0",
 "attribution": "Fide AI, Agentic Cyber Explorer",
 "url": "https://agentic-cyber-explorer.pages.dev/events/five-eyes-careful-adoption-agentic-ai-2026/",
 "asOf": "2026-09-26",
 "id": "five-eyes-careful-adoption-agentic-ai-2026",
 "date": "2026-05-01",
 "datePrecision": "day",
 "title": "CISA, ASD's ACSC and international partners publish joint guidance on careful adoption of agentic AI",
 "lane": "policy",
 "kind": "guidance",
 "summary": "CISA and the Australian Signals Directorate, with US and international partners, published guidance on the cybersecurity risks of agentic AI services and recommended mitigations. CISA highlights expanded attack surface, privilege creep, behavioral misalignment and obscure event records as risks, and recommends avoiding broad access, starting with low-risk use cases, and folding agent security into existing risk models.",
 "whyItMatters": "It is coordinated multi-government guidance written specifically for organizations deploying agents.",
 "actors": [
  "cisa",
  "nsa",
  "asd-acsc",
  "canadian-centre-for-cyber-security",
  "ncsc-nz",
  "ncsc-uk"
 ],
 "topics": [
  "standards-and-guidance",
  "regulation-and-policy",
  "monitoring-and-control"
 ],
 "atlas": [
  "credentials",
  "tools",
  "human-approver"
 ],
 "artifacts": [],
 "sources": [
  {
   "url": "https://www.cisa.gov/news-events/news/cisa-us-and-international-partners-release-guide-secure-adoption-agentic-ai",
   "publisher": "CISA",
   "title": "CISA, US and International Partners Release Guide to Secure Adoption of Agentic AI",
   "date": "2026-05-01",
   "type": "primary",
   "accessed": "2026-09-25"
  },
  {
   "url": "https://www.cisa.gov/resources-tools/resources/careful-adoption-agentic-ai-services",
   "publisher": "CISA",
   "title": "Careful Adoption of Agentic AI Services",
   "date": "2026-05-01",
   "type": "primary",
   "accessed": "2026-09-25"
  },
  {
   "url": "https://www.ncsc.gov.uk/frontier-ai",
   "publisher": "UK National Cyber Security Centre",
   "title": "Frontier AI: what you need to know",
   "type": "primary",
   "accessed": "2026-09-25",
   "shared": true
  }
 ],
 "keyFacts": [
  {
   "fact": "CISA-listed risks: expanded attack surface, privilege creep, behavioral misalignment, obscure event records.",
   "locator": "CISA news release"
  },
  {
   "fact": "Recommendations: avoid broad or unrestricted access to sensitive data or critical systems; begin with low-risk, non-sensitive use cases; account for agentic AI in the organization's security model.",
   "locator": "CISA news release"
  }
 ],
 "significance": 5,
 "fideQuestions": [],
 "methods": [],
 "review": "assistant-drafted",
 "addedOn": "2026-09-25"
}