About

Tom Mooney.

Author of Agentic AI Security — working at the intersection of security leadership and hands-on engineering, on the new attack surface that opens when AI stops talking and starts acting.

Tom leads cloud, data and AI security for a global financial services group, with 15+ years securing complex systems at global scale — from national-security architecture for the UK government to global cloud transformation at a leading technology firm. His focus now is the execution layer of AI security: the permissions, controls and governance that decide what autonomous systems are allowed to do.

Tom Mooney

The thesis

Autonomy is blast radius.

For a decade, AI security meant worrying about what a model would say. Agentic AI changes the model: these systems now hold credentials, call tools, move data and take actions. The risk is no longer the output. It’s the action.

The more autonomy you grant, the larger the blast radius when an agent is talked into a mistake. Securing that means securing the execution layer — and testing what agents actually do under adversarial pressure, not what their model cards promise.

Background

01

15+ years securing complex systems at global scale

02

Financial services, cloud platforms and government

03

National-security architecture for the UK government

04

Board-level security leadership in financial services

05

Executive MBA, University of Cambridge

06

Author of Agentic AI Security

Per the firm’s policy, current and former employers are abstracted by sector rather than named.

The newsletter

One brief.
Every week.

News, new attacks, and practical guidance for defending AI agents — written for security leaders and the engineers shipping them. Free, and the first three chapters of Agentic AI Security (draft) land in your inbox when you confirm your email.

NO SPAM. UNSUBSCRIBE ANYTIME.

  • First 3 chapters of the book, free
  • New threats & incidents
  • Defensive patterns & checklists
  • Tooling and research worth your time