Nordic APIsBill Doerrfeld7 min readintermediate
AI Agent Security in the Enterprise: Interview With Isabelle Mauny
Summary
Interview with WSO2 Field CTO Isabelle Mauny on how enterprise AI agents and Model‑Control‑Planes (MCP) amplify existing API security flaws, introduce supply‑chain risks, and demand deterministic workflows (e.g., via Arazzo) and centralized governance tools.
- AI agents inherit and amplify pre‑existing API vulnerabilities (e.g., broken object‑level authorization) because they can issue rapid, unrestricted calls.
- MCP servers act like third‑party packages, creating supply‑chain attack surfaces such as tool‑poisoning and privilege drift; they need vetting, sandboxing, versioning, and lifecycle management.
- Deterministic, higher‑level “backend‑for‑agent” APIs (e.g., described with the OpenAPI‑initiative Arazzo spec) reduce nondeterministic reasoning, token waste, and cost overruns.
- Visibility platforms like WSO2’s Agent Manager are essential for monitoring agent behavior, evaluating model performance, and controlling token consumption.
Enterprises are rapidly deploying AI agents that can bypass or amplify weak API controls, and the emerging MCP ecosystem introduces a new supply‑chain attack vector. Without deterministic workflows and centralized governance, organizations face security breaches, uncontrolled token costs, and opera…
4/10



