What is agentic AI?
Agentic AI refers to autonomous systems that can carry out tasks on their own. Unlike a traditional chatbot, an agent can decide what actions to take and execute them. Capabilities may include sorting email, sending messages, scheduling meetings, automating workflows, and writing code.
General tips for safe usage
- •Do not share personal or proprietary information with an AI chatbot unless your organization has explicitly approved the tool and plan.
- •Require organizational accounts and devices. This limits what an AI can access and gives the organization more control and visibility.
- •Enforce SSO and MFA on company-approved AI tools.
- •Limit data retention and avoid storing sensitive prompts or outputs longer than necessary.
- •Keep a human in the loop. Define what the AI may do and what happens when something goes wrong. A named person must remain responsible.
The onboarding process
Before onboarding a tool, research and vet it and identify the role it will play. Decide whether the organization will use it deeply in daily operations or whether employees will use it for individual workflows. Review its permissions, integrations, terms of service, and, where possible, the vendor's SOC 2 report.
Communicate the rollout with an onboarding meeting and demonstration, a written permissions policy, an organization-wide message, and an annual review of whether the tool is still needed.
Define what agents can do
A practical three-tier model is:
- •Prepare only: the agent can draft an action, such as an email, but cannot execute it without approval.
- •Execute low-risk, reversible tasks: the agent may schedule meetings or send internal updates within defined limits.
- •Never auto-execute high-risk, irreversible actions: the agent must not email clients, move money, or share financial data on its own.
Decide in advance who is responsible for an AI mistake, how an incident is escalated, and how its impact will be limited. Write and share an organization-wide policy that names permitted tools and prohibited uses.
Reference points and cautionary tales
- •Apple: restricted employee use of ChatGPT over data-leakage concerns.
- •Amazon: warned employees not to use unauthorized AI tools for work, citing privacy concerns.
- •Samsung: banned ChatGPT after sensitive source code was leaked in three incidents within 20 days of access being granted.
Tool recommendations
Tool choices change quickly and should be reevaluated. The original guide discussed Claude Cowork, Microsoft 365 Copilot Cowork, and Manus as examples of agentic tools. Evaluate their permissions, retention, integrations, cost, reliability, and fit for your organization before adoption.
Bottom line
The organizations that adopt agentic AI responsibly are not necessarily the fastest adopters. They set clear boundaries first, vet the tool, define permissions, and keep a named human accountable at every step.
Stay Protected
Use our free tools to protect yourself from the threats discussed in this investigation.