News

Rubrik Adds Agent Governance and Rollback to Amazon Bedrock AgentCore at AWS re:Invent

Rubrik used AWS re:Invent 2025 in Las Vegas to announce Rubrik Agent Cloud for Amazon Bedrock AgentCore, a new integration meant to help organizations manage the risks and operational realities of agentic AI.

The company said the service is designed for teams building AI agents on Amazon Bedrock AgentCore who need centralized visibility, governance and recovery when those agents act on enterprise data and systems.

The integration is positioned as a control plane for AI agents. Rubrik said Agent Cloud will automatically discover agents running on Amazon Bedrock AgentCore as well as custom agents, then provide unified monitoring across multi-cloud environments. The goal is to give security and IT teams a single place to see which agents exist, what resources they touch, and what actions they take.

Rubrik framed the launch around the idea that AI agents can improve productivity but also create new categories of risk because they can perform real-world actions without constant human supervision. The company pointed to a broader threat landscape where cyber risks are rising and where generative AI is accelerating attack sophistication. In that context, Rubrik argued that agent deployments need the same kind of oversight and recovery planning that enterprises already apply to human users and automated systems.

Rubrik Agent Cloud is built on the Rubrik Platform, which combines data, identity and application context. Rubrik said this combined context lets Agent Cloud monitor and audit actions, enforce guardrails in real time, and reverse mistakes. Devvret Rishi, general manager of AI at Rubrik, said, "With Rubrik Agent Cloud, organizations will have a single plane of glass for the complete AI agent lifecycle, one that enables customers to see every agent in action, enforce policies in real-time, and instantly rewind mistakes before they become catastrophic errors."

The company described three main capability areas:

  • Agent Monitor: Rubrik said this component auto-discovers Bedrock AgentCore agents, maps the "blast radius" of active agents, and continuously tracks activity and data access. It also records immutable audit trails that preserve who or what initiated actions, against what data, and under which identities.
  • Agent Govern: This area focuses on usage tracking and behavioral control. Rubrik said it will assess agent performance against prompts, flag undesired behavior, and allow teams to define and enforce policies over agent access and actions. Centralized integration with enterprise identity systems is intended to keep agents operating within approved boundaries.
  • Agent Remediate: Rubrik tied remediation to Agent Rewind, announced earlier in 2025, which integrates with Rubrik Security Cloud. The company said Agent Rewind enables selective rollback to undo specific agent-driven changes, based on time and blast radius, without taking systems offline or losing unrelated data.

Availability is expected in "the coming months," with Rubrik noting that some features are still in development. A preview of the integration is being shown at re:Invent booth #1439. The company did not announce pricing in the release.

Alongside the Agent Cloud news, Rubrik said it has achieved the AWS Resilience Software Competency in the Recovery category. This AWS Partner competency validates solutions that improve availability and resilience on AWS, and Rubrik positioned the designation as recognition of its recovery-focused capabilities for customers running on AWS.

About the Author

David Ramel is an editor and writer at Converge 360.

Featured

Subscribe on YouTube