Defense in Depth Defense in Depth

Protecting AI Agents in O365 and Google Workspace

Jul 16, 2026 · 33m

Summary

Hosts David Spark and Steve Zalewski discuss the security risks of granting AI agents broad OAuth access to dormant data in cloud workspaces. Guest Rajan Kapoor from Material Security argues that legacy authorization models are insufficient, advocating for data-layer controls, classification, and retention policies. The episode explores using AI to identify sensitive data and minimize exposure before agents access it.

Listen ad-free on Castria