A new AI security platform, AIR, filters out approximately 27% of the online add-ons and skills it finds for autonomous agents. This reveals a significant, hidden attack surface within enterprise AI deployments. A substantial portion of readily available AI components are either insecure or malicious, posing direct threats to business operations and data integrity. Enterprises are rapidly deploying AI agents, but the infrastructure to secure and manage their complex software supply chains remains nascent. This creates a growing vulnerability gap. Companies prioritize deployment speed over comprehensive security, trading agility for potential vulnerabilities. The market for specialized AI agent security and reliability solutions is poised for substantial growth as these risks become apparent.
The Accelerating Shift to Purchased AI
- 76% — The percentage of AI use cases purchased rather than built internally in 2025, an increase from 53% in 2024, according to menlovc.
- 47% — The conversion rate of enterprise AI deals to production, compared to 25% for traditional SaaS, according to menlovc.
These figures confirm a rapid pivot to external AI solutions and their proven efficacy in enterprise environments. The market's preference for purchased AI, projected to reach 76% of use cases by 2026, combined with a 47% production conversion rate, means enterprises are quickly integrating third-party AI agents. This velocity introduces a significant, unvetted security risk, as companies import external components without adequate scrutiny of their underlying supply chains.
Big Money Backs AI Agent Security
| Investment Round | Amount (USD) | Purpose |
|---|---|---|
| Seed Financing | $50 million | Monitor and secure the software supply chain for autonomous AI agents |
Source: PYMNTS
AI security startup AIR secured $50 million in seed financing to monitor and secure the software supply chain for autonomous AI agents, as reported by PYMNTS. This substantial seed funding from top-tier venture capitalists confirms a critical and immediate market demand for robust AI agent security. The investment reflects a clear recognition of the escalating risks tied to the widespread adoption of AI agents in enterprise operations, indicating that investors foresee significant growth in this nascent security sector.
Building Trustworthy Agents: The Research Front
Workday has launched Workday AI Research, a dedicated team focused on developing reliable, trustworthy, and efficient AI for the enterprise, according to UC Today. This initiative directly addresses the inherent complexities of AI agent design and deployment. Workday researchers developed a more selective approach to agent memory, retaining 97% of important memories, delivering 12% higher precision, and operating 31% faster than comparison methods, as reported by UC Today. Such advancements confirm that improving AI agent reliability and performance demands sophisticated architectural and memory management innovations.
While leading enterprises like Workday invest heavily in internal AI trustworthiness, the industry's broader reliance on external AI agents creates a distinct, unaddressed supply chain vulnerability. Internal efforts, however advanced, cannot fully mitigate risks from third-party components. The technical challenges in building reliable agents internally highlight the significant potential for hidden flaws when enterprises acquire external AI without rigorous vetting, suggesting a critical gap in current enterprise security strategies.
High-Stakes Industries Lead Adoption
Customer adoption of AIR's platform has been strongest in financial services and pharmaceuticals, with over 20 corporate clients, including large enterprises, according to TechCrunch. This robust adoption in highly regulated sectors, even by a relatively young startup like AIR, confirms the critical and immediate demand for specialized AI agent security in large enterprises. These industries, operating under stringent compliance requirements, are proactively addressing the security implications of AI agent adoption, setting a precedent for necessary diligence.
Sectors facing intense regulatory scrutiny recognize the immediate risks of unmanaged AI agent supply chains. Other industries, however, appear to be underestimating these severe risks, potentially exposing themselves to future breaches and compliance failures if they do not rapidly secure their AI agent ecosystems.
The Evolving Landscape of AI Agent Security
The confluence of rapid AI agent deployment and a nascent security infrastructure creates a complex threat landscape. AIR's data, indicating nearly a third of available components pose a direct threat, reveals the scale of this liability. This risk is compounded by the market's preference for purchased AI, where 76% of AI use cases are projected to be bought externally by 2025. The unprecedented 47% production conversion rate for enterprise AI deals means businesses are deploying AI at a speed that vastly outpaces the development of critical security infrastructure, leaving them exposed to an expanding and largely unmonitored attack surface. The rapid emergence of specialized security solutions like AIR, coupled with ongoing enterprise research, suggests that future AI agent adoption will increasingly hinge on robust, purpose-built security and reliability frameworks. This shift will redefine the due diligence required for AI integration, moving beyond functional assessment to deep security vetting.
Securing the Autonomous Future
If current trends persist, enterprises failing to prioritize comprehensive AI agent security frameworks will likely face significant operational disruptions and data breaches by 2026, particularly as platforms like AIR continue to expose critical vulnerabilities in the rapidly expanding market for AI agent components.










