AI Governance Institute
← News
Standards2026-09-18

South Korea Drafts Agentic AI Security Rules as Multi-Jurisdiction Pressure Builds

Source

South Korea to develop new security guidelines for autonomous AI agents

Reuters

Via Reuters

What happened

South Korea's Korea Internet and Security Agency (KISA) has announced it is developing new security guidelines targeting AI systems that operate with greater autonomy and reduced human supervision, as reported by Reuters. The initiative is a direct response to the accelerating enterprise deployment of agentic AI, where systems take actions, make decisions, and interact with external services without continuous human review. KISA's stated focus areas include governance of autonomous behavior, operational accountability, and review mechanisms for high-stakes agent actions. The announcement follows a wave of international agentic AI guidance, including the Five Eyes Guidance on the Careful Adoption of Agentic AI Services and Singapore's MDDI Response on Extending AI Governance to Agentic AI Systems, reflecting a clear cross-jurisdictional consensus that existing frameworks do not adequately govern agentic deployments. This also comes amid a documented pattern of agentic AI governance becoming binding across jurisdictions as regulators shift from guidance to enforceable standards.

Why it matters

  • ·Enterprises operating in South Korea now face a credible near-term regulatory obligation for agentic AI. The Korea AI Basic Act already establishes a baseline legislative framework, and sector-specific security rules from KISA would add binding operational requirements on top of it.
  • ·The KISA initiative exposes a common gap: most enterprise AI governance programs treat agentic systems under generic AI risk frameworks rather than with purpose-built controls. Organizations that have not separately classified and governed their agentic deployments will face remediation pressure once guidelines are finalized.
  • ·Multinationals with APAC compliance programs face compounding multi-jurisdiction obligations, since Korea, Singapore, China, and the Five Eyes nations are all converging on agentic AI controls simultaneously. Compliance teams that have not begun cross-jurisdiction mapping will find the requirements increasingly difficult to reconcile on a single timeline.

Governance controls affected

What to do now

  • Inventory all agentic AI systems deployed in or accessed from South Korean operations and document their current human oversight levels.
  • Map existing agentic controls (permission boundaries, kill switches, audit trails) against the stated KISA focus areas of autonomous behavior governance, operational accountability, and review gates.
  • Assign a compliance owner to monitor the KISA guideline development process and flag the finalization date as a regulatory deadline trigger.
  • Review your multi-jurisdiction agentic AI compliance map to confirm South Korea is included alongside existing Five Eyes and Singapore agentic guidance obligations.
  • Update your AI vendor due diligence questionnaire to ask third-party providers deploying agentic systems into Korean environments about their readiness for KISA security requirements.

What to watch next

Compliance teams should monitor KISA for the draft guideline publication, which will reveal whether requirements are advisory or carry enforcement mechanisms. Watch for the Korea AI Basic Act to be referenced as the legislative basis for any binding security obligations that follow. More broadly, the APAC agentic governance landscape is moving fast: Singapore's MDDI Response on Extending AI Governance to Agentic AI Systems and China's Implementation Opinions on the Administration of Intelligent Agents may both influence how KISA frames its final requirements, making cross-jurisdiction monitoring a near-term priority.

Stay ahead of stories like this

Get every Korea AI governance development like this one, plus the rest of the week's developments. Every Thursday.

Powered by Buttondown.

Related Coverage

Research2026-09-16

Accountability Gap in AI Agent Governance: Who Owns the Gateway?

NHIMG has published practitioner guidance arguing that accountability for AI agent risk should attach to the gateway between agent and tool, not to a job title. The guidance identifies three unresolved ownership questions: who enforces controls, who approves exceptions, and who produces evidence that controls are active in production. Compliance teams with agent governance policies on paper but no named functional owners are the primary audience.

Research2026-09-14

$50K in Bug Bounties Confirms AI Customer Service Agents Are Live Attack Targets

Intigriti researchers demonstrated successful attacks against deployed AI customer service agents at DEF CON 34, earning over $50,000 in bounties without automated scanners. Attack techniques included prompt injection via email, phishing from legitimate support addresses, MFA bypass, and OTP exfiltration. Enterprises running AI agents in customer-facing roles face structural security gaps that traditional application controls do not cover.

Research2026-09-14

Agentic AI Crimes Emerge as a Named Fraud Category Compliance Teams Must Address

The Washington Post's AI & Tech Brief has dedicated coverage to 'agentic AI crimes,' signaling that autonomous AI systems are now recognized as a distinct and active fraud vector. Compliance teams face a structural gap: most fraud controls were built for human or rule-based actors, not for agents that can chain actions autonomously. Organizations deploying agents with payment, data-access, or communication authority face the most immediate exposure.