Oct 29, 2025 · 30m · big-technology
AI Agents: Hype or Hope
gold bands on the timeline = statements, start to end. Hover to read, click to jump. CC turns on captions
In this interview, Okta President and COO Eric Kelleher joins host Alex Kantrowitz to examine the rapid enterprise adoption of autonomous AI agents, addressing the critical security and governance deficit facing organizations and outlining how standardized agentic identity management can safeguard corporate data.
How this conversation actually went
Every chapter scored 0–10 on four independent dynamics. Hover any point for the reasoning behind the score. Alex holds 21.2% of the talking time here. How this is scored →
speaking balance: gold is Alex, purple is the guest (3 minute bins)
Eric explicitly rejects engaging with Alex's premise regarding macro infrastructure overbuild, redirecting the focus entirely back to Okta's enterprise security lens.
Hardest push from Alex ▶ 26:02 Host questions whether AI infrastructure is being overbuiltAlex refuses to stay purely on the optimistic adoption framing and directly confronts the guest with the risk of a massive capital expenditure overbuild.
Biggest teaching moment ▶ 10:50 Guest explains default password vulnerability in recruiting agent breachEric provides a concrete, revealing case study of a major restaurant chain exposing 60 million applicant records due to rushing a prototype with a default password into production.
Alex holds their own ▶ 27:31 Host cites Wiz and market acquisitions to reinforce security thesisAlex demonstrates his domain grasp by connecting the conversation to industry insider interviews and major cybersecurity M&A deals like Google's bid for Wiz.
the scores for every segment, with the reasoning behind each
| Chapter | Topic | Alex as informed peer | Guest teaching | Guest disagreement | Alex pushing back | Why |
|---|---|---|---|---|---|---|
| Defining AI Agents: Autonomous Judgment and Action Execution | 4 | 5 | 1 | 4 | Alex challenges Eric with audience skepticism comparing agents to old API promises and highlights the contradiction between autonomy and human-in-the-loop requirements. Eric clarifies by defining agentic autonomy as asynchronous execution with independent judgment. | |
| The Evolution of Identity: From SaaS to Agentic Identity | 1 | 6 | 0 | 0 | Alex asks an open-ended question about risk, allowing Eric to give an extended technical overview of identity evolution from SaaS human credentials to non-human machine APIs and now agentic identity. | |
| Innovation Pressure and Security Pitfalls: The Restaurant Case Study | 2 | 6 | 0 | 1 | Eric educates Alex on the severe security fallout of rushed agent prototyping, citing a major restaurant chain that leaked 60 million applicant records due to default passwords. | |
| Comparing the AI Wave to Prior Generational Tech Shifts | 3 | 5 | 1 | 2 | Alex probes whether the high deployment stat reflects true enthusiasm or executive pressure. Eric draws on his multi-decade perspective across mainframe, cloud, and mobile shifts to explain why AI feels larger than prior waves. | |
| Standardizing Agent Identity Management Through Cross-App Access | 4 | 6 | 0 | 3 | Alex presses on how companies justify deploying insecure agents and asks for concrete differences cross-app access makes. Eric details shadow agent data access in personal accounts and how open standards resolve credential rotation. | |
| AI Data Governance and Protecting Proprietary Corporate Information | 3 | 5 | 0 | 1 | Alex brings up fears around agent actions in enterprise data, prompting Eric to differentiate data visibility from cross-query LLM data harvesting risks. | |
| The Velocity of AI Innovation and Measuring Real Business ROI | 3 | 6 | 0 | 1 | Alex asks about innovation velocity and planning horizons. Eric explains enterprise ROI struggles, citing internal Okta experimentation and the MIT study indicating 95 percent of AI projects lack tangible return. | |
| Assessing AI Infrastructure Overbuild Risks and Cybersecurity Priorities | 6 | 3 | 2 | 5 | Alex challenges Eric on potential trillion-dollar infrastructure overbuilds and backs up the security discussion by citing Wiz and recent cybersecurity acquisitions. Eric deflects macroeconomic questions to refocus strictly on enterprise vulnerability. |