Cyera's Bold Move to Tame AI Agents: A $1 Billion Bet

Cyera is buying Oasis Security for $1 billion to tackle the growing challenge of AI agents in business, as first reported by ThreatVectr.

AI2Day Newsdesk3 min read
Photoreal news-editorial 16:9 image of a server operations center at night, rows of humming rack servers casting cold blue and amber light across the floor, a s
Share

Key points

  • Cyera is acquiring Oasis Security for around $1 billion in cash and stock.
  • Oasis Security manages AI agents, software that works autonomously without human intervention.
  • Cyera was valued at $12 billion in June 2024 after raising $2 billion in total funding.

Cyera, a leader in data security, has announced plans to buy Oasis Security for approximately $1 billion in cash and stock. This bold move was first reported by ThreatVectr. The acquisition targets a hot new sector: controlling the access of AI agents, the software programs that can operate independently, browsing systems and executing tasks without a human at the helm.

Oasis Security specializes in managing these non-human identities, including automated programs, API keys (digital keys that allow software to connect to external services), and AI agents. This focus on AI agents sets Oasis apart as traditional identity systems were designed with human users in mind, not software. According to Oasis CEO Danny Brickman, these agents act differently, they are not bounded by job titles or limited by traditional access controls.

Why does this matter?

AI agents often use all their allowed permissions, unlike human users who typically use only about 4%. This means if an AI agent is hijacked, it could potentially access and exploit all available data. Cyera and Oasis aim to shrink this "permission envelope", limiting what an agent can do to only what it needs for its tasks.

Cyera's current strength lies in identifying and classifying sensitive data. Oasis, on the other hand, focuses on managing machine identities, accounts used by software rather than individuals. Their combined efforts aim to create a system that not only understands what data an agent can access but also prevents it from going beyond its intended scope.

What happens next?

The deal is expected to close this quarter. The longer-term plan involves mapping data and identities for risk visualization. This means giving businesses the ability to revoke an agent’s permissions in real time, ensuring that access is appropriately restricted if suspicious activity is detected.

Cyera isn't the only player in this field. Companies like Cisco and CrowdStrike have made similar acquisitions, indicating that managing AI agents is becoming a necessity in corporate security. For everyday employees and IT teams, the takeaway is clear: it's crucial to know which AI tools are active in your organization and to regularly review their permissions.

Company Employees Total funding Valuation
Cyera 1,500 $2 billion $12 billion
Oasis Security 150 $120 million (Series B, March 2024) Not disclosed
Combined (projected) 2,000+ N/A N/A

Common questions

What should employees keep in mind?

Employees should be aware that AI tools they use might operate on over-permissioned accounts, which can be targeted by cybercriminals. It's a good idea to ask IT about the AI tools in use and their permissions.

How does this affect IT teams?

IT teams should regularly review and update permissions for AI agents to ensure they align with current needs, reducing risks of unauthorized access.

Why are AI agents a security concern?

AI agents can automatically access data and systems, and if taken over by a malicious entity, they can do significant harm due to their broad access rights.

© 2026 AI2Day