Skip to content
theCUBE

UPDATED 18:55 EDT / SEPTEMBER 01 2026

Broadcom’s Umesh Mahajan and Clayton Donley talk with theCUBE about how Infrastructure software is shifting to the network and identity layers as Broadcom moves to secure agentic AI workloads and spot shadow AI tools during VMware Explore 2026. INFRA

The packet path becomes the place to catch shadow AI before it spreads

Enterprise infrastructure software is being redrawn around a user that never sleeps, never logs off and can act thousands of times a minute. As autonomous agents move from pilots into production, the controls built for human employees are proving a poor fit for machine identities operating at speed.

That shift is turning the network and identity layers into the front line for agentic deployments, a theme running through much of this year’s VMware Explore coverage. Securing those workloads has to start before the first agent ships, according to Umesh Mahajan (pictured, left), vice president and general manager of the Application Networking and Security division at Broadcom Inc.

“If you don’t have security, you really can’t go deploy agentic AI,” said Mahajan. “First, you have to make sure that the agentic AI workloads don’t get compromised from the outside. Then, we see the agentic AI workloads can themselves go rogue and start attacking outwards, so you need security both inwards and outwards.”

Mahajan and Clayton Donley (right), vice president and general manager of the Identity Management Security division at Broadcom, spoke with theCUBE’s Christophe Bertrand and co-host Alison Kosik at VMware Explore, during an exclusive broadcast on theCUBE, SiliconANGLE Media’s livestreaming studio. The discussion centered on how enterprises can secure agentic AI by combining network-level visibility, machine identity, policy enforcement and observability across Broadcom’s VMware Cloud Foundation security stack. (* Disclosure below.)

Identity and network controls converge in infrastructure software

Decades of access management were designed for people, and that inheritance does not transfer cleanly to software that acts on its own behalf. Broadcom’s answer includes AgentMinder, which pairs signed agent identities with runtime inspection of application programming interface traffic and observability, Donley explained.

“We’ve had 50 years of figuring out how to manage your employees or customers or other people accessing your computer systems,” Donley said. “We’ve had about 15 minutes to figure out how to do it for AI agents. The problem is that we’re giving these agents more and more autonomy, more ability to do things on their own without those controls.”

Sitting in the packet path lets the network tier discover Model Context Protocol servers, agents and models, then flag unauthorized ones as shadow AI, Mahajan noted. Putting that together from separate products is where customers stumble, which is why he advocates for a single infrastructure software stack.

“If we make a customer stitch together multiple products, they have an awful time; they make mistakes,” Mahajan said. “Having a curated security stack completely from Broadcom goes a long way in securing them.”

Here’s the complete video interview, part of SiliconANGLE’s and theCUBE’s coverage of VMware Explore:

(* Disclosure: TheCUBE is a paid media partner for the VMware Explore event. Sponsors of theCUBE’s event coverage do not have editorial control over content on theCUBE or SiliconANGLE.)

Photo: SiliconANGLE

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network

Are you an AWS customer?  Support SiliconANGLE financially by buying your AWS services from our Marketplace portal page and links: https://siliconangle.com/aws-marketplace/

 

About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.

Send us a news tip

Send us a News Tip

  • This field is for validation purposes and should be left unchanged.
  • Max. file size: 244 MB.

Sign in

SIGN IN

Bio

Ethics statement

Extract the signal from the noise

Get SiliconANGLE updates and analysis.

Contact us

Partner with us

Contact us

Guest inquiry