Securing agentic AI workflows: A defence-in-depth framework for autonomous systems
This paper proposes a five-layer defence-in-depth framework encompassing input validation, identity and least privilege, runtime sandboxing, human-in-the-loop governance, and continuous behavioural monitoring, and identifies sandboxing and least-privilege enforcement as the highest return on investment controls.