Shu Fang explains the security problem created when cloud agents act through a human user's long-lived credentials. Shared identities blur who performed an action, make permissions too broad and weaken revocation and audit controls.
Two Sigma's approach treats each agent session as a separate principal. A broker issues short-lived credentials, policy limits what the agent can reach and logs connect the resulting actions to both the agent and the person who launched it.
Fang calls these agents tethered because they remain linked to an accountable user without impersonating that user. The design supports least privilege and clearer incident response while preserving the productivity benefits of remote autonomous work.
Watch on YouTube



