Enterprise AI Security: Agentic Controls and MCP Governance
Snowflake unveils Cortex AI Gateway and new AI security features at Black Hat 2026 to address rising enterprise risks from autonomous agents and fragmented tool access.
The useful question is what changes for users, developers or buyers, and whether the announcement stays industry context or becomes something people can actually use.
AI security concerns have nearly tripled since 2024, with 57% of organizations lacking adequate security capacity despite widespread AI adoption. Snowflake addresses this by integrating security directly into data and control planes, launching the Cortex AI Gateway at Black Hat 2026. The gateway centralizes governance for AI agents, enforcing identity, policy, and audit controls at the tool-call level across both native and third-party ecosystems. This aims to reduce unmanaged sprawl and security liabilities while providing visibility into agent activities and costs.
The Cortex AI Gateway supports standards like MCP, enabling enterprises to connect LLMs to databases and tools while maintaining centralized oversight. It allows teams to manage permissions, track agent actions in real time, and route requests based on cost and performance requirements. By extending Snowflake’s data governance framework to agent traffic, the gateway provides fine-grained authorization and audit trails without requiring individual agent instrumentation.
Snowflake is also transitioning several AI security capabilities to general availability, including Agent Identity for enhanced visibility and policy enforcement during agent sessions. Third-party agent identity controls integrate with security partners like Okta and SailPoint, extending governance to external AI tools. Restricted Session Scope limits agent actions to task-specific permissions, while Native AI Security Posture Management offers a dashboard for scanning AI-specific risks and compliance postures.
Additional security features include Data Exfiltration Prevention in preview, Client-side CoCo CLI VM Sandbox for isolated AI workflows, and Ransomware Protection via Multi-Party Approval. These measures aim to secure AI workloads, prevent unauthorized data flows, and mitigate destructive system changes. Snowflake emphasizes building security into core data and AI infrastructure to enable safe enterprise AI deployment from prototype to production.