HIT Consultant September 2, 2025
As artificial intelligence agents become increasingly embedded in clinical workflows – making decisions, accessing records, and interacting with patients – the traditional boundaries of identity and access management are blurring. In healthcare environments where clinical staff already represent a significant security risk due to complex workflows and high-pressure conditions, the introduction of AI agents acting on behalf of humans adds a new and underregulated attack surface.
These agents must be held to the same standards of accountability and oversight as their human counterparts. Human Risk Management (HRM) principles offer a path forward, providing a unified framework to govern behavior regardless of whether it’s driven by a clinician or an algorithm.
By focusing on behavior as the shared denominator, healthcare IT...







