cs.AIOct 5, 2026

Agentic-ZTA: A Multi-Agent Architecture for Autonomous Zero Trust Enforcement

Authors: Shovan Roy, Lopamudra Praharaj, Maanak Gupta, Bhavani Thuraisingham

Organizations: Department of Computer Science, Tennessee Tech University, Cookeville, TN, USA · Department of Computer Science, University of North Carolina Pembroke, Pembroke, NC, USA · Department of Computer Science, The University of Texas at Dallas, Richardson, Texas, USA

Abstract

Agentic AI is emerging as a promising paradigm for automating complex cybersecurity decisions, yet its use in enforcing zero trust introduces significant challenges in safety, reliability, and policy compliance. This paper presents Agentic AI based zero trust architecture (Agentic-ZTA) that operationalizes the NIST SP 800-207 ZTA architecture control loop through coordinated multi- agent decision pipeline. In the proposed framework, policy knowledge is embedded into a retrieval-augmented generation pipeline and retrieved at inference time as top-k relevant policies. Access requests are intercepted by the Policy Enforcement Point (PEP), enriched with contextual metadata. The request context is routed to a policy engine agent which invokes domain-specialized core agents first followed by supporting agents, if further evaluation needed. AI agents reason over access context, policy constraints and determine trust. The retrieved policies are embedded into agent prompt during inference time and agentic trust scores are aggregated and evaluated by a trust-algorithm, producing the final access decision for enforcement under continuous verification. We implement Agentic-ZTA in a testbed and evaluate it on representative access-control use cases scenarios. Our Agentic-ZTA framework achieves 95.0% accuracy, 93.9% precision, and 96.3% recall, and demonstrate the feasibility of enforcing zero trust using AI agents.

Figures & tables

Explore similar work

CardsList
  1. Skillsets on the Chain: A Blockchain-based Zero-Trust Framework for Agentic AI Networking

    Jul 31, 2026Yayu Gao, Yong Xiao, Hao Hu +5Trustworthy Artificial IntelligenceAI Trustworthiness

  2. Securing Agentic AI: From Per-Action Checks to Trajectory Assurance

    Aug 3, 2026Alireza Lotfi, Subangkar Karmaker Shanto, Imtiaz Karim +1Agentic DeploymentsDelegation

  3. Hybrid Inspection and Task-Based Access Control in Zero-Trust Agentic AI

    May 4, 2026Majed El Helou, Benjamin Ryder, Chiara Troiani +3Access ControlAgentic Deployments