Skip to content
The Chicago Today
Quantum Aerospace
  • Home
  • Current News
  • Explore & Enjoy
  • Sports
  • Sound & Screen
  • Sip & Savor
  • Style & Innovation
  • Editors Take
Trending
May 16, 2026Cubs Aim to Extend Lead Over White Sox in Game 2 May 15, 2026Di’Anno’s Final Chapter: New Doc Explores Iron Maiden Legend’s Life May 15, 2026Mayor Johnson Marks 3 Years; DNC Bid for Chicago Heats Up May 15, 2026Bald Eagle Hatchlings Emerge in Chicago First in 100+ Years May 15, 2026Chicago: Museums, Architecture & Foodie Delights May 15, 2026SCOTUS Upholds Broad Access to Abortion Pills May 14, 2026El Bar: A New Cultural Hub for Chicago’s Latino Community May 14, 2026Global AI Governance Body Proposed by OpenAI May 14, 2026Restaurant Show Chicago: Innovation Takes Center Stage May 14, 2026TV’s Binge-Worthy Thursday: Finales & Fan Favorites!
The Chicago Today
The Chicago Today
  • Home
  • Current News
  • Explore & Enjoy
  • Sports
  • Sound & Screen
  • Sip & Savor
  • Style & Innovation
  • Editors Take
  • Blog
  • Forums
  • Shop
  • Contact
The Chicago Today
  Style & Innovation  Stop AI Agent Sprawl: Gartner’s 6-Step Enterprise Guide
Style & Innovation

Stop AI Agent Sprawl: Gartner’s 6-Step Enterprise Guide

Malcom GreenMalcom Green—April 28, 20260
FacebookX TwitterPinterestLinkedInTumblrRedditVKWhatsAppEmail

As the enterprise landscape braces for a massive shift in automation, Gartner has issued a critical warning regarding the rapid proliferation of autonomous software. By 2028, the average global Fortune 500 enterprise is projected to juggle over 150,000 AI agents—a staggering jump from fewer than 15 in 2025. This explosive growth, identified by Gartner analysts as “AI agent sprawl,” threatens to introduce uncontrollable IT complexity, severe data privacy risks, and operational chaos. To combat this, IT leaders must transition from a reactive posture of blocking AI tools to a proactive strategy of governance, ensuring that the promise of AI innovation does not collapse under the weight of its own unmanaged infrastructure.

Key Highlights

  • Exponential Growth: Enterprises face an astronomical rise in AI agent deployment, with counts expected to reach 150,000 per company by 2028.
  • The Governance Gap: Currently, only 13% of organizations report having sufficient AI agent governance, leaving the vast majority exposed to misinformation, oversharing, and data loss.
  • The Failure of Prohibition: Attempting to block AI agents entirely often backfires, driving employees toward unapproved “Shadow AI” that bypasses corporate security.
  • Six-Step Framework: Gartner outlines a mandatory lifecycle approach involving centralized inventory, identity management, and continuous monitoring to maintain order.

Mastering the Agent Lifecycle in a Decentralized Enterprise

The current state of AI adoption within the enterprise resembles the “Wild West” phase of the early internet. While individual departments rush to deploy agents to improve efficiency in customer service, coding, and data analytics, the lack of a centralized, cohesive strategy is leading to a fragmented technological landscape. This is not merely an IT headache; it is a fundamental business risk. When agents operate without oversight, they often become “black boxes”—autonomous entities that consume, process, and potentially leak proprietary data without leaving a clear audit trail.

1. Establish Agent Governance and Policies

The first line of defense is the establishment of a formal constitution for AI agents. Organizations must stop viewing AI agents as mere productivity “plugins” and start treating them as software assets. This step involves defining clear rules of engagement: What is the specific purpose of an agent? Who is authorized to build, deploy, or modify it? Which third-party connectors are permitted? Without a documented policy, the organization remains vulnerable to mission creep, where agents begin to exceed their intended scope.

2. Build a Centralized Agent Inventory

You cannot manage what you cannot see. The proliferation of AI agents across disparate SaaS applications makes visibility a primary challenge. Organizations should leverage AI TRiSM (AI Trust, Risk, and Security Management) tools to create a single source of truth. This inventory must catalog both sanctioned tools—those approved by IT—and “Shadow AI,” which are unauthorized tools adopted by teams working outside of official channels. A centralized inventory is the foundation for all subsequent security and compliance efforts.

3. Define Agent Identity, Permissions, and Lifecycle Models

In a mature digital ecosystem, every agent needs a unique digital identity. Treating agents as anonymous background processes is a recipe for disaster. By assigning identities, IT departments can implement granular access controls—ensuring that an agent has access only to the data absolutely necessary for its specific function (the principle of least privilege). Furthermore, organizations must implement a lifecycle model. Just as software is updated, patched, and retired, agents must be reviewed periodically. Redundant or obsolete agents should be decommissioned to reduce the attack surface.

4. Develop AI Information Governance

More stories

UK Government Launches Women in Tech Taskforce to Combat £3.5 Billion Economic Loss

December 16, 2025

FashionBar Elevates Industry Talent at April 2026 Shows

April 6, 2026
From Chicagos Streets to National Kitchens Stock Manufacturing Redefines Hospitality Wear

From Chicago’s Streets to National Kitchens: Stock Manufacturing Redefines Hospitality Wear

August 16, 2025

Chicago Milliner Laura Hubka Creates Wearable Art at Drake Hotel

December 20, 2025

The lifeblood of any AI agent is data. Information governance ensures that the data an agent accesses is accurate, current, and authorized. This requires strict boundaries on what data an agent can “read” or “write” to. Organizations must implement automated processes to check if the data feeding an agent is obsolete or if it contains sensitive information that should not be part of the AI’s training set or processing loop. Data oversharing is the single most common cause of security breaches in AI deployments.

5. Monitor and Remediate Agent Behavior

Static security is insufficient for dynamic agents. Modern enterprises require continuous, real-time monitoring of AI agent behavior. If an agent starts performing actions outside of its defined scope—such as attempting to scrape an unauthorized database or exhibiting anomalous latency—the system must trigger an automated remediation response. This allows for proactive defense, stopping “rogue” behavior before it impacts the broader IT environment or customer experience.

6. Foster a Culture of Responsible AI Usage

Technology alone cannot solve the problem of sprawl; it requires cultural change. Max Goss, Sr. Director Analyst at Gartner, emphasizes that blocking agents is a futile effort that encourages shadow behavior. Instead, IT and business leaders must collaborate to create an environment where employees are trained in responsible AI use. This includes establishing “communities of practice” where departments can share best practices, approved toolkits, and secure methodologies. When employees feel empowered to use sanctioned tools, they are far less likely to seek out high-risk, unapproved alternatives.

Secondary Angles: The Future of Enterprise Intelligence

To fully grasp the magnitude of this transition, it is helpful to look beyond the immediate checklist. First, we must acknowledge the transition from ‘Tool-Based’ AI to ‘Agentic’ AI. We are moving from simple chatbots that answer questions to autonomous entities that execute complex, multi-step workflows. This shifts the management burden from simple API oversight to complex behavioral orchestration.

Second, the economic impact of this sprawl is nuanced. While ‘Agent Sprawl’ sounds exclusively negative, it is the byproduct of massive productivity experimentation. The organizations that win will be those that strike the optimal balance between high-velocity innovation and high-integrity governance. Finally, we must look at the ‘Shadow AI’ factor through a sociological lens. In the corporate world, if the sanctioned tools are too restrictive, employees will always find a path of least resistance. Therefore, governance must be streamlined and user-friendly, rather than burdensome, or it will inevitably be bypassed.

FAQ: People Also Ask

Q: What is the biggest risk of AI agent sprawl?
A: The primary risks include uncontrolled data loss, where sensitive information is exposed to unauthorized systems, and the creation of “Shadow AI” ecosystems that IT security teams cannot monitor or patch.

Q: Is blocking all AI tools an effective management strategy?
A: No. Experts at Gartner emphasize that blocking agents often forces employees to adopt unauthorized, risky alternatives, which increases the organization’s vulnerability. The goal should be governance, not prohibition.

Q: What are AI TRiSM tools?
A: AI TRiSM stands for AI Trust, Risk, and Security Management. These tools are designed to provide visibility, security, and governance over AI applications, helping enterprises manage the entire lifecycle of their AI deployments.

Q: How does the number of AI agents impact IT complexity?
A: As the number of agents grows into the hundreds of thousands, the sheer volume of API connections, permission models, and data dependencies becomes unmanageable without automation, leading to increased technical debt and operational silos.

author avatar
Malcom Green
Malcolm Green is a versatile journalist who covers a wide range of subjects, including technology, culture, current events, and lifestyle trends. With his work featured in numerous reputable publications, Malcolm brings insightful analysis and engaging storytelling to every topic he explores. His ability to break down complex issues into accessible narratives makes his writing both informative and compelling for a diverse audience. Malcolm’s passion for uncovering the stories behind the headlines drives him to stay ahead of emerging trends and deliver content that resonates with readers. Whether he’s delving into the latest tech innovations, exploring cultural phenomena, or reporting on significant global events, Malcolm ensures his work is both relevant and thought-provoking. Outside of his professional pursuits, Malcolm enjoys traveling, reading, and exploring local cuisines, which often inspire his creative approach to journalism. Connect with Malcolm on LinkedIn or follow him on Twitter to stay updated on his latest articles and insights.
See Full Bio
FacebookX TwitterPinterestLinkedInTumblrRedditVKWhatsAppEmail

Malcom Green

Malcolm Green is a versatile journalist who covers a wide range of subjects, including technology, culture, current events, and lifestyle trends. With his work featured in numerous reputable publications, Malcolm brings insightful analysis and engaging storytelling to every topic he explores. His ability to break down complex issues into accessible narratives makes his writing both informative and compelling for a diverse audience. Malcolm’s passion for uncovering the stories behind the headlines drives him to stay ahead of emerging trends and deliver content that resonates with readers. Whether he’s delving into the latest tech innovations, exploring cultural phenomena, or reporting on significant global events, Malcolm ensures his work is both relevant and thought-provoking. Outside of his professional pursuits, Malcolm enjoys traveling, reading, and exploring local cuisines, which often inspire his creative approach to journalism. Connect with Malcolm on LinkedIn or follow him on Twitter to stay updated on his latest articles and insights.

French Shoemaker Arche Bets on Chicago for US Market Surge
FashionBar Chicago Champions Trans Visibility on Runway
Related posts
  • Related posts
  • More from author
Style & Innovation

Global AI Governance Body Proposed by OpenAI

May 14, 20260
Style & Innovation

Johnson Heir: EBONY Sale Betrayal

May 13, 20260
Style & Innovation

WhatsApp Unveils Meta AI Chat for Private Conversations

May 13, 20260
Load more
Read also
Sports

Cubs Aim to Extend Lead Over White Sox in Game 2

May 16, 20260
Sound & Screen

Di’Anno’s Final Chapter: New Doc Explores Iron Maiden Legend’s Life

May 15, 20260
Headlines

Mayor Johnson Marks 3 Years; DNC Bid for Chicago Heats Up

May 15, 20260
Featured

Bald Eagle Hatchlings Emerge in Chicago First in 100+ Years

May 15, 20260
Explore & Enjoy

Chicago: Museums, Architecture & Foodie Delights

May 15, 20260
Current News

SCOTUS Upholds Broad Access to Abortion Pills

May 15, 20260
Load more
Recent Posts
  • Cubs Aim to Extend Lead Over White Sox in Game 2 May 16, 2026
  • Di’Anno’s Final Chapter: New Doc Explores Iron Maiden Legend’s Life May 15, 2026
  • Mayor Johnson Marks 3 Years; DNC Bid for Chicago Heats Up May 15, 2026
  • Bald Eagle Hatchlings Emerge in Chicago First in 100+ Years May 15, 2026
  • Chicago: Museums, Architecture & Foodie Delights May 15, 2026

    # TRENDING

    chicago20252026aiFashionStreamingreviewaccountabilityinnovationfundingfestivalmusicnetflixalbumculinaryactionacquisitionnascarhululineup
    © 2024 All Rights Reserved by Chicago Today
    • Contact
    • Cookie Policy
    • Privacy Policy
    chiago today lower txt logo colroed and finished wbg
    Manage Consent
    To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
    Functional Always active
    The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
    Preferences
    The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
    Statistics
    The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
    Marketing
    The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
    • Manage options
    • Manage services
    • Manage {vendor_count} vendors
    • Read more about these purposes
    View preferences
    • {title}
    • {title}
    • {title}