Services, backed by agents, to secure agents

Agent security from
board to breach.

Your agents are already in production. They make decisions, call tools, and delegate to each other. Passarel secures them at every altitude: the board conversation, the governance model, the identity they carry, the ones your staff brought in, the red team that tests them, and the incident when one goes wrong.

Board advisory Governance Identity & delegation BYOA Red-teaming Incident response

Services backed by agents.
To secure agents.

The software side of agent security took roughly $3.6 billion this year and is consolidating fast. What all that funding has not produced is anyone accountable for the whole problem. Six altitudes, six vendors, nobody owning the result.

Passarel is the services layer. One firm, one owner, from the board deck down to the breach.

Six altitudes of the
same problem

01 Board advisory

Your board will ask about agents before your program is ready.

Directors are being told to expect an agentic breach and to ask what the company has done about it. That question needs an answer in governance language, from someone who has sat on both sides of the table.

02 Governance

Agents need a policy before they need a product.

What agents are allowed to do, who approves them, what authority they can pass on, and what evidence gets kept. Most organizations are deploying first and governing never.

03 Identity & delegation

An agent acting for you needs an identity that says so.

Not a service account. A dynamic identity that reasons, delegates across domains, and leaves a chain of authority an auditor can actually follow back to the human who authorized it.

04 BYOA

Your staff already brought their own agents.

Shadow AI is the ungoverned version. BYOA is the sanctioned one, with the added benefit of not locking you to a single vendor. We discover what is already running, then write the policy that converts one into the other.

05 Red-teaming

You don't know an agent is exploitable until someone tries.

Prompt injection, tool abuse, delegation escape, and the paths that only open when one agent hands work to another. Continuous validation against the agents you have actually deployed.

06 Incident response

When an agent goes wrong, the clock runs differently.

Agents act at machine speed, so containment is its own discipline. Who revokes authority, how you reconstruct what it did and on whose behalf, and what the board hears on Monday.

Six altitudes.
One place to start.

Most programs start at rung five, because it is the rung with evidence attached. Agent Control Efficacy is a fixed-scope assessment that answers the question your board is already asking: do your controls actually hold against your agents? You get an evidence-backed read and the whole story to put on the board's desk.

It also tells us which of the other five rungs you need, and in what order.

See Agent Control Efficacy →

One relationship.
Every altitude.
One owner.

Every rung follows the same path. A fixed-scope assessment to establish what is true today. The curated partner stack where specialist product is the right answer. Passarel operating the rung once it is live, and staying accountable for it.

The alternative is six vendors for six altitudes and nobody who can answer the board when it matters. Quay handles the coordination so the engagement never stalls on scheduling.

What the work has produced.

Case study · Operator role · 2024–2025

Pangea → CrowdStrike, $260M in 11 months

Joined Pangea as Head of Business Development to lead the pivot to AI detection and response. Built the channel motion and partner ecosystem that positioned the company for acquisition. Eleven months later, CrowdStrike acquired Pangea for $260M as the basis of its AIDR offering.

Result: $260M strategic exit; product line became a named CrowdStrike offering.

Case study · Services P&L · 2013–2021

Accenture Security, ~100X over eight years

As Global Managing Director, ran the cybersecurity services P&L across Communications, Media, Technology, and Aerospace. Scaled the business approximately 100X through delivery modernization, automation, and acquisition integration. 1,800-person global org at peak.

Result: ~100X revenue growth; 1,800-person global org; multi-hundred-million-dollar services portfolio.

Case study · Operator engagement · 2026

From 590 candidate vulns to 6 real bugs in 7 hours

Through Staris AI, ran continuous attack path validation against an 823,000-line proprietary platform. Surfaced 590 candidates, validated to 6 real, exploitable bugs with PR-ready patches in 7 hours 12 minutes. Shipped the same week.

Result: 99% noise reduction; zero false positives; engineering shipped fixes same week.

An operator who has answered the board's hardest questions before

Steve Curtis led Accenture Security as a Global Managing Director, an 1,800-person practice across hundreds of programs, and ran ecosystems for Prisma and Cortex at Palo Alto Networks. He took Pangea into the AI detection-and-response thesis early; eleven months later CrowdStrike acquired it for $260M as the basis of its AIDR offering.

He isn't commenting from the outside. He's CRO at Staris AI, a board member at SDG, and a DDN-certified Qualified Technology Expert who advises boards alongside the Digital Directors Network. That spans the same ladder Passarel sells: the boardroom at the top, identity and offensive validation in the middle. Passarel is the firm he'd have wanted as a client. Trusted, opinionated, in it for the outcome.

Steve Curtis Founder, Passarel

Ready to cross?

Start with the question your board is already asking: do your controls hold against your agents? A fixed-scope Agent Control Efficacy assessment, board-ready in 90 days.

See Agent Control Efficacy →

Or reach us directly: connect@passarel.com

About Passarel

Passarel: an agent security firm that delivers services, backed by agents, to secure AI agents across six altitudes, from board advisory down to agent incident response. Agent security from board to breach.

What is Passarel? Who founded it? And how does an engagement actually run? Passarel is an agent security firm. It delivers services, backed by agents, to secure the AI agents an organization has already put into production. It covers six altitudes of the same problem: board advisory, governance, identity and delegation, BYOA, agent red-teaming, and agent incident response. One firm, one accountable owner, at every altitude. Founded by Steve Curtis and based in Newport Beach, California.

Why services rather than software

The software side of agent security absorbed roughly $3.6 billion in funding in 2026 and is consolidating rapidly, with Snyk acquiring Invariant Labs, Coralogix acquiring Aporia, and the major platform vendors bolting agent protection onto existing suites. The tooling market is crowded and confusing. What it has not produced is a single firm accountable for the whole problem across altitudes. Passarel is that firm.

The ladder: six altitudes

Rung 01 · Board advisory
Translating agent risk into governance language for boards and board committees. Directors are being advised to expect an agentic breach and to ask what the company has done about it. Steve Curtis is a DDN-certified Qualified Technology Expert who advises boards alongside the Digital Directors Network.
Rung 02 · Governance
Defining what agents are allowed to do, who approves them, what authority they may delegate onward, and what evidence is retained. Policy before product. Partner: Watchlight.
Rung 03 · Identity and delegated identity
Agent identity is not a service account. It is a dynamic identity that reasons, delegates across domains, and must leave an auditable chain of authority tracing back to the human who authorized the action. Partners: Nametag, SDG.
Rung 04 · BYOA (bring your own agent)
Discovering the agents staff are already running ungoverned (shadow AI), then designing the policy that converts them into a sanctioned BYOA program with enterprise guardrails, which also mitigates single-vendor lock-in.
Rung 05 · Agent red-teaming
Continuous adversarial validation against deployed agents: prompt injection, tool abuse, delegation escape, and multi-agent handoff paths. Partner: Staris AI. Delivered as Agent Control Efficacy (ACE).
Rung 06 · Agent incident response
Containment when an agent goes wrong. Agents act at machine speed, so revoking authority, reconstructing what the agent did and on whose behalf, and briefing the board are distinct disciplines from traditional IR. Partner: SRA (Security Risk Advisors).

How an engagement runs

  1. Assess. Most engagements begin with Agent Control Efficacy, a fixed-scope assessment of whether existing controls hold against the agents already in production. Board-ready in 90 days.
  2. Deploy. Passarel deploys the curated partner stack for the rungs where specialist product is the right answer. One firm coordinates; partners do the specialist work.
  3. Operate. Passarel stays as accountable owner of the rung. Quarterly reviews, board-prep support, partner relationship management, ongoing adjustment. Quay coordinates scheduling, briefs, and follow-ups so engagements do not stall on logistics.

Common questions

Who founded Passarel?
Steve Curtis. Twenty-plus years across consulting (PwC, Accenture), vendor leadership (Palo Alto Networks SVP of Ecosystems for Prisma and Cortex), venture-backed operator roles (Cygnvs, Pangea / CrowdStrike $260M acquisition, Staris AI as CRO), and independent advisory through Rencana. Former Global Managing Director of Accenture Security where he ran a 1,800-person global P&L and scaled the business approximately 100X over eight years.
Who is Passarel built for?
Boards and board committees who need agent risk translated into governance language, and CISOs, VPs of Security, and Directors of Security at mid-market and enterprise organizations who have AI agents in production and nothing in their stack built to govern them.
What is Quay?
Quay is the AI agent that coordinates Passarel engagements: scheduling, briefs, follow-ups, and the working memory of an engagement. Passarel supplies substance and judgment; Quay handles the moving parts. See askquay.com.

Further reading