Databricks is rolling out significant updates to its AI Security Framework (DASF v3.0), specifically targeting the emerging security challenges posed by agentic AI. The expanded framework introduces 35 new technical security risks and six mitigation controls designed to help organizations deploy autonomous AI agents with greater confidence.
This evolution acknowledges that AI agents are moving beyond passive information retrieval to actively querying databases, calling external APIs, executing code, and coordinating with other agents. This shift from "saying things" to "doing things" introduces a new threat landscape.
Introducing Agentic AI to DASF
Agentic AI is now the 13th system component within the Databricks AI Security Framework. The update specifically addresses the unique vulnerabilities associated with agent memory, intricate planning processes, and the integration of external tools. This includes crucial security considerations for the Model Context Protocol (MCP), an emerging standard for connecting agents to enterprise systems.