Role and authority
How should an agent’s role, delegated authority and prohibited actions be made operationally clear?
Flagship research programme
As AI agents gain the capacity to interpret, decide and act within organisations, assurance must address not only what a model can do, but how agency operates inside real work.

Programme status
This is a developing research programme. Its questions and themes are being defined openly; no findings, study participants or completed publications are implied.
The research question
Task completion alone does not establish that activity was appropriate, authorised or aligned with organisational intent.
The programme investigates the operational conditions needed for AI-agent activity to remain within defined roles, permissions, policies, responsibilities and escalation paths as work unfolds.
The question is not only whether an agent is capable. It is whether its activity can be understood, bounded and assured in context.
Research themes
How should an agent’s role, delegated authority and prohibited actions be made operationally clear?
How can current policy, process and situational context reach an agent at the moment of action?
Which decisions require human judgement, approval or the ability to interrupt activity?
Where can consequential activity be evaluated without creating indiscriminate checkpoints?
How should uncertainty, ambiguity and out-of-bound conditions be recognised and escalated?
What records are needed to understand decisions, actions, approvals and outcomes?
How should operational evidence improve instructions, controls and future assurance?
How do responsibilities remain clear across leaders, process owners, technology teams and users?
Two assurance questions
Model assurance and operational assurance address related but different concerns. Organisations may need both.
Primary signal
Relevant boundary
Question
Evidence
Agency in workflow
This illustrative workflow shows where roles, boundaries, human judgement and evidence may need to meet AI-agent activity. It is not a universal control design.
Illustrative workflow
Assurance is placed at material moments—not around every action.
Human activity
Agent activity
AP 01Shared activity
AP 02Agent activity
AP 03Human activity
Define authority and boundaries
Evaluate material moments
Retain usable evidence
Questions for practitioners
What work has the agent been authorised to perform?
Which source expresses current organisational intent?
Where could an incorrect action materially affect the intended outcome?
When must a person review, approve or interrupt activity?
How are exceptions recognised and escalated?
What evidence would allow the organisation to reconstruct what happened?
Developing research agenda
The Institute intends to develop the programme through research papers, executive interviews, practitioner conversations and roundtables. Methods, limitations and evidence will be stated alongside any future findings.
Participation or contribution does not imply endorsement, partnership or a published finding.
Explore the communityRelated concepts
Participate
The Institute welcomes relevant perspectives from people working across enterprise AI, operations, governance, risk, audit and behavioural systems.