CertiK Report: From Assistive Tools to "AI Employees," Agentic AI Reshapes Security and Compliance Work
Odaily News — Web3 security firm CertiK today officially released its Intel3D report, "The Rise of AI Employees: How Agentic AI Is Reshaping Cybersecurity, Anti-Money Laundering, and Compliance." The report notes that AI is transitioning from an assistive tool that helps analysts identify issues to a member of the working team capable of conducting investigations, making judgments, and executing remediation tasks within defined permissions. This shift is reshaping security and compliance processes across traditional finance and Web3, and is also raising new requirements for how enterprises supervise AI, define permission boundaries, and allocate responsibility.
The report also cautions that model misjudgments, prompt injection, and adversaries' exploitation of AI may introduce new risks. As AI begins to hold and trade digital assets, its own behavior must also be subject to audit. CertiK recommends that enterprises establish governance mechanisms covering permission boundaries, human approval, decision records, and division of responsibilities, and conduct regular red-team testing; these mechanisms must be improved in tandem with AI's execution capabilities to support "AI employees" in continuously creating value for security and compliance work under supervision and accountability.
