MiddlebrookData & AI Governance← All insights
Insight · Agentic AI

Governing agentic AI in the reporting stack

By Barry Middlebrook · Middlebrook Data & AI Governance

A copilot answers a question. An agent takes the next step — and then several more on its own: it queries systems, joins data, computes a figure, drafts the commentary, and increasingly acts. That autonomy is exactly what makes agentic AI valuable in reporting, and exactly what makes it the hardest thing in your stack to govern.

Why agents slip through the cracks

Your model-risk framework was built for a model that takes an input and returns an output you can validate. An agent is a moving target: it's non-deterministic, multi-step, and it holds access — to data, to tools, sometimes to systems that change state. Tellingly, the OCC's revised model-risk guidance explicitly leaves generative and agentic AI out of scope. So the most consequential AI in your reporting stack is also the least covered by the controls your second line actually runs.

An ungoverned agent doesn't make one wrong number — it makes a chain of decisions, fast, with no one watching the steps.

The five controls that matter

You don't need to ban agents — you need to put rails around them. Five controls do most of the work:

Done right, you keep the speed and the leverage — and the agent's every move is traceable, bounded, and explainable. That's governance an examiner recognizes, applied to systems your existing framework was never written for. It's also exactly the ground the Treasury's FS AI RMF now covers — its control objectives reach the generative and agentic systems SR 11-7 leaves out, so these five controls line up with a framework your supervisors already have in hand.

The first agentic incident is a board-level event

Agents are the highest-risk, least-governed form of AI in your stack — and if you're like most reporting shops, you're already piloting them. That's the exposure: an agent takes an action no one can explain or undo, and you find out after it's hit the board pack, a customer, or a filing. When that happens, it doesn't land on the help desk as a tech ticket — it lands in the boardroom as a governance failure with your name on the owner line.

By the time an ungoverned agent makes the wrong move, the cost is already booked — you just haven't seen the invoice yet.

Is your agentic AI governed — or just live?

Take the free 4-minute risk assessment to find the gaps, or book a call to scope a full, expert-led review.

Take the free assessment See pricing & engagement →