• Why AI agent governance must start with enterprise data

    From TechnologyDaily@1337:1/100 to All on Wednesday, September 23, 2026 10:00:23
    Why AI agent governance must start with enterprise data

    Date:
    Wed, 23 Sep 2026 08:46:35 +0000

    Description:
    What happens when AI meets poor data governance and the potential repercussions for organizations.

    FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Executives are spending a great deal of time asking whether AI agents are ready for production, but this is the wrong place to start, because agents arent acting in a vacuum. The
    quality of their decisions depends heavily on the quality of the data they use.

    Model security and performance matter, of course, but they cannot compensate for weak control over the information the agent can retrieve. Before putting an agent into production, an organization needs governed inputs, appropriate access and a reliable record of what the agent produced. Jerry Caviston
    Social Links Navigation

    CEO at Archive360. Give an agent outdated customer information, duplicate records or material that was never properly classified, and it will work with what it has, making poorly informed decisions quickly across thousands of transactions. Latest Videos From TechRadar Watch full video here:

    Unfortunately, the gap between adoption and governance is widening fast. In the rush to adopt AI, many organizations are pushing agents into production before they have solved the underlying data problem, so it shouldnt come as a surprise that the vast majority of AI projects show zero ROI.

    Whats more, AI agent governance doesnt end with the data an agent may access. It also encompasses the data an agent produces, such as its decisions, the instructions it was given and documents it created. As AI contributes to significant decisions within the enterprise, AI traceability and
    defensibility have become critical capabilities. You may like Why AI coding agents keep stalling before production and the governance controls that fix
    it Most enterprise AI governance is already out of date As AI scales, is meaningful governance possible?

    Organizations that build a strong data foundation put themselves in a
    stronger position to move from pilot to production with confidence that
    agents wont transform poorly managed data into a company-wide crisis. The
    data problem comes first The data governance issue is not, of course, a new problem. Most large organizations have spent years trying to wrangle information spread across operational platforms, file shares, archives and applications that should have been retired long ago. But because agentic AI can rapidly act on those weaknesses at scale, the issue has become more pressing now. Are you a pro? Subscribe to our newsletter Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news and offers from other Future brands Receive email from us on behalf of our trusted partners
    or sponsors By submitting your information you agree to the Terms &
    Conditions and Privacy Policy and are aged 16 or over.

    Before an agent is given access to data, IT needs to identify sensitive and regulated information, apply classification and retention policies consistently, and determine which sources are current and reliable enough for the job. Legacy data deserves particular care.

    Retired applications often contain valuable business history, but they also hold duplicate records, obsolete information and data thats subject to legal holds or retention requirements.

    Organizations should also preserve the context and relationships that give legacy data meaning, and then make selected, policy-controlled datasets available. AI does not act on data in a vacuum, and without the surrounding context, agents will either fail to complete their tasks or, worse, will make and act on faulty decisions. What to read next Govern AI agents before they
    go rogue Agentic AI adoption outpaces governance in regulated industries Why financial institutions need a clearer approach to AI governance Access is a business decision Another mistake that enterprises make is to provide their agents with access to more data than they need. In fact, agents should also only have access to the data they require to complete the tasks they are assigned. Just because a system can be connected to an agent, that does not mean it should be.

    Treat agents like employees , and follow the principle of least privilege.
    For example, while a customer service agent may need current account and transaction information, it most likely doesnt need legal files or historic employee records. Access should narrowly follow the agent's defined purpose.

    Provenance matters as well. An agent should not treat a current system of record and a decades-old archive as equally authoritative. Agents must know where information came from, when it was updated and which policies apply. Again, context matters. Without the proper context, agents will make costly mistakes. Keep a record of what the agent did Governance does not end once
    the agent receives approved data. AI-related data is rapidly becoming
    material to litigation, compliance reviews and customer complaints. To be prepared, an organization should be able to show what the agent was asked to do, which information it accessed, which policies were applied and what happened next.

    Prompts, retrieved content, outputs and resulting decisions should be
    retained as business records. A reviewer should be able to reconstruct the
    AIs decision and trace it back to both the source data and the person or function that authorized the activity.

    Finally, accountability cannot belong to the technology team alone. Security, data, privacy, legal and compliance leaders all have a role, but a named business owner must remain responsible for the outcome. Automation can
    perform an action, but it cannot accept accountability for it.

    Data readiness is not a secondary workstream to be addressed after an AI
    pilot succeeds. It is part of the decision to move that pilot into
    production. If an organization cannot trust the information, control access
    to it and clearly explain the resulting decisions, the agent is not ready for greater autonomy. We've featured the best AI tool. This article was produced as part of TechRadar Pro Perspectives , our channel to feature the best and brightest minds in the technology industry today.

    The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit



    ======================================================================
    Link to news story: https://www.techradar.com/pro/why-ai-agent-governance-must-start-with-enterpri se-data


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)