Entra ID

Agentic Identity Standards: Microsoft Entra’s View

3 min read

Summary

Microsoft has outlined how identity standards are evolving to support AI agents and other non-human identities in enterprise environments. The company highlights key standards work around trust bootstrapping, delegation, and reducing shared-secret use, signaling important changes for Entra administrators planning secure AI agent access.

Need help with Entra ID?Talk to an Expert

Introduction

AI agents are rapidly moving from pilot projects into real enterprise workflows, and identity systems now need to support them securely. In a new Microsoft Entra blog, Pamela Dingle explains how the standards landscape is shifting to accommodate agentic identities, with major implications for authentication, authorization, and governance.

What’s changing in agentic identity standards?

Microsoft says the biggest shift is conceptual: identity standards are no longer treating non-human identities as narrowly scoped actors with rigid boundaries. As AI agents gain reasoning capability and make decisions, the industry is rethinking how software identities establish trust and act across systems.

1. Bootstrapping trust for non-human identities

A core challenge is how AI agents, workloads, and service principals securely announce themselves and request access. Microsoft points to growing standards activity in this area, including:

  • OAuth ClientID Metadata Document (CIMD)
  • OAuth 2.0 Protected Resource Metadata (RFC 9728)
  • IETF WIMSE work connecting SPIFFE and OAuth
  • Broader automation for non-human onboarding across environments

This matters because manual federation-style onboarding does not scale well for large numbers of agents.

2. Delegation models are being reworked

Delegation is another major debate. Existing concepts such as token exchange, on-behalf-of (OBO), identity chaining, and token upscoping/downscoping are being revisited as agents begin acting with more autonomy.

Microsoft notes this area is still unsettled, so admins should expect continued standards discussions before best practices fully stabilize.

3. Shared secrets are becoming a bigger risk

The post also warns about growing reliance on API keys and other shared secrets in agent scenarios. Microsoft expects stronger focus on eliminating these patterns in favor of more secure, standards-based trust mechanisms.

Why this matters for Entra administrators

For IT and identity teams, this is an early signal that AI agent governance will increasingly depend on open identity standards. Entra admins should expect future capabilities and integrations to align more closely with industry efforts such as MCP, IETF, OpenID Foundation, FIDO Alliance, and AAIF.

In practice, this means administrators will need to think beyond traditional user and app identity models when planning access controls, trust relationships, and lifecycle management for AI-driven services.

Next steps

  • Review current use of API keys and shared secrets in AI or automation projects
  • Track standards communities influencing agentic identity, especially MCP and IETF
  • Follow Microsoft Entra Agent ID updates for future implementation guidance
  • Prepare for more dynamic onboarding and delegation models for non-human identities

Microsoft’s message is clear: agentic identity is becoming a foundational architectural layer, and standards will play a central role in making AI agents manageable and secure at enterprise scale.

Need help with Entra ID?

Our experts can help you implement and optimize your Microsoft solutions.

Talk to an Expert

Stay updated on Microsoft technologies

Entra IDagentic identityAI agentsOAuthidentity standards

Related Posts

Entra ID

Microsoft Entra Passkeys for External IdP App Sign-Ins

Microsoft has made browser-based authentication for external identity providers generally available for supported Microsoft app sign-ins on Android, iOS, and managed macOS. This lets federated Microsoft 365 users use passkeys, FIDO2 security keys, and eligible SSO sessions in apps like Outlook, Teams, and OneDrive, reducing password fallback and embedded web view limitations.

Entra ID

Microsoft Entra Tenant Governance Webinars 2026

Microsoft is promoting upcoming webinars focused on securing multi-tenant environments with Microsoft Entra Tenant Governance, now generally available. The sessions highlight how organizations can detect shadow tenants, apply consistent governance, and build a stronger identity foundation for AI readiness.

Entra ID

Microsoft Entra App Gallery Self-Service Onboarding Preview

Microsoft has launched a public preview of self-service onboarding for new Microsoft Entra App Gallery applications. The new workflow lets publishers validate OIDC, SAML, and provisioning integrations before submission, then create, submit, and track app listings in the Entra admin center, reducing delays and rework.

Entra ID

Microsoft Entra Private Access Replaces VPNs

Microsoft is positioning Entra Private Access as a practical replacement for traditional VPNs, using identity-driven, per-app access instead of broad network tunnels. The guidance outlines a phased migration approach that helps IT teams reduce attack surface, strengthen Zero Trust controls, and simplify remote access operations.

Entra ID

HiBob Microsoft Entra Integration Now Generally Available

Microsoft has announced general availability of HiBob’s native integration with Microsoft Entra, enabling HR-driven identity lifecycle automation for joiners, movers, and leavers. The integration helps IT teams govern provisioning and access changes across hybrid and cloud environments while reducing manual processes and security risk.

Entra ID

Microsoft Entra September 2026: Key Identity Updates

Microsoft Entra's September 2026 updates introduce new tenant governance, user-centric access reviews, lifecycle workflow cloning, and passwordless resource accounts for Teams devices. The release also adds cloud-to-AD provisioning, AI-focused MCP Firewall protections, and important deadlines for MemberOf-based configurations and permission scope changes.