Let me start by making something very clear: I am a huge believer in AI. I use it, I see tremendous value in it, and I think tools like ChatGPT, Claude, Copilot and whatever comes next are going to fundamentally improve how we work.
AI can make people faster, eliminate repetitive work, help us analyze problems, write software, research ideas, improve customer service and automate processes that have frustrated businesses for years. The argument I'm making isn't that AI is bad. The argument is that something this powerful shouldn't be unchecked.
For the last 20-plus years, IT organizations have spent enormous amounts of time limiting what users, applications and systems are allowed to do. We removed local administrator rights, implemented MFA, restricted Remote Desktop, created firewall rules, segmented networks, introduced conditional access, built privileged accounts and implemented change control.
Behind nearly all of those decisions was one very old security principle: Give someone only the access they actually need. Least privilege.
But now something interesting is happening. After spending decades locking everything down, we're beginning to hand increasingly powerful access to AI.
AI Is No Longer Just Answering Questions
When ChatGPT and Claude first appeared, most people interacted with them primarily as assistants. Ask a question, get an answer. Write an email, summarize a document, analyze some code or brainstorm an idea.
We're quickly moving beyond that. AI is becoming agentic. Instead of simply telling us what to do, we're increasingly allowing AI to do things for us.
Give AI access to email. Then calendars. Then OneDrive or Google Drive. Then GitHub. Then the CRM. Then the browser. Then local files, APIs and business applications.
Every one of those connections makes AI more useful, and that's a good thing. But every connection also gives AI more authority.
At some point, AI isn't simply another application. It's another identity inside the business, and potentially a very powerful one.
We've Seen This Movie Before
Anyone who has worked in IT long enough remembers when Remote Desktop was primarily viewed as a convenience. Why drive somewhere when you can remotely connect to the computer?
Remote access wasn't bad technology. It was incredibly useful technology. The problem came when powerful remote access was deployed without adequate controls. Attackers learned to exploit poorly secured remote access for compromised systems, ransomware, credential theft and lateral movement.
The lesson wasn't "Stop using remote access." The lesson was "Powerful capabilities require appropriate controls."
So we adapted. VPNs, MFA, firewalls, conditional access, network segmentation, privileged access management and logging. We didn't abandon the technology. We learned how to use it responsibly.
AI deserves exactly the same approach.
The More AI Can Do, the More Governance Matters
Imagine an AI agent with access to your email, files, source code, customer database, CRM, accounting system, browser, internal applications and APIs.
Now ask yourself: If this were a human employee, would I give one person unrestricted access to all of this?
Probably not.
That doesn't mean we shouldn't connect AI to these systems. There are enormous productivity benefits in doing so. But access should be intentional.
If AI needs to read something, does it also need permission to modify it? If it needs to prepare an email, does it automatically need permission to send it? If it analyzes financial information, does it need authority to execute a transaction? If it examines production systems, does it need permission to make production changes?
Those aren't arguments against AI. They're the same access-control questions IT has been asking for decades.
Shadow IT Is Becoming Shadow AI
There's also a much more immediate challenge. While executives and IT departments debate which enterprise AI platforms they should approve, employees are already using AI.
Someone uploads an Excel spreadsheet to a personal AI account. Someone pastes company information into an AI assistant. A developer installs an AI coding tool. Someone connects an AI assistant to cloud storage. Someone else gives an AI agent access to their browser.
We've dealt with Shadow IT for decades. Now we're beginning to deal with Shadow AI.
Simply banning AI probably isn't the answer. If a technology genuinely makes people more productive, people will find ways to use it. Organizations should instead provide employees with approved, secure ways to use these tools.
Governance should enable AI, not prevent it.
Use AI Aggressively. Govern It Intelligently.
There are two extremes. One organization says, "AI is too dangerous. Nobody can use it." Another says, "AI is amazing. Connect it to everything."
Neither approach makes much sense.
The better answer is somewhere in the middle: Use AI aggressively, but govern it intelligently.
Give employees access to approved AI platforms. Protect corporate information. Apply least privilege. Require human approval for consequential actions. Log what AI systems access and change. Review integrations before connecting AI to critical systems. And don't give an AI system authority simply because giving it that authority is convenient.
We've traditionally managed identities for employees, administrators, contractors, applications, service accounts and devices. Now we're adding another: AI agents.
What systems can the AI access? What information can it read? What can it modify? What actions can it perform? Who authorized those permissions? Can those permissions be revoked? Can we determine what it did afterward?
Those aren't anti-AI questions. They're responsible IT governance questions.
Don't Fear AI. Manage It.
AI has enormous potential, and I believe businesses that embrace it intelligently will have a significant advantage over those that don't.
But embracing AI doesn't mean abandoning decades of good IT practices.
Least privilege still matters. Separation of duties still matters. Change control
Thanks,
Michael Cronin
Website: https://www.michaelcronin.info
LinkedIn: https://www.linkedin.com/in/michaeltcronin/details/experience/