SPEAKER_00

This episode is brought to you by ChiefAIOfficer.com. Most companies know AI can slash costs and free up teams, but they get stuck on the first step. ChiefAIOfficer.com can identify your highest value use cases, train your people, and build the workflows that do the work for you. Book your free private 15-minute executive briefing by going to ChiefAIOfficer.com and scheduling a call. You'll leave with a clear, no-jargon roadmap for your goals. Now, enjoy the show. And a quick note before we start this episode. Starting August 29th through October 29th, we're actually taking our AI executive immersion on the road. This is a free, half-day, in-person, no fluff workshop for executives of lower middle market and above-sized companies. You'll leave with a 90-day plan, a simple AI policy and guardrails, and a personal AI stack that gives you hours back every week. If you'd like to bring your executive team at no cost, go to chiefaiofficer.com forward slash roadshow to see the dates and locations where we'll be. Seats are limited to keep it hands-on. Hopefully, this is an opportunity for us to meet in person and for you to learn exactly how we're teaching busy executives to take advantage of AI and their role and across their companies. Now, let's start the episode. Welcome to Using AI at Work. I'm your host, Chris Dagle. Each week we'll be learning how today's business owners, entrepreneurs, and ambitious professionals are getting more done with smart use of tomorrow's tech. Let's get started. Hi, everybody. Welcome to Using AI at Work. And today is a topic that I have a lot of personal interest in with our guest, Orrin Michaels. He's the founder of Barn Door AI. And Orrin, before we get started, if you don't mind, maybe take a moment and just kind of share kind of what your background has been and how you arrived here today.

SPEAKER_01

Yeah, uh, my background is um I was trained as an engineer, but haven't really written code in a very long time. Um I'm more of an entrepreneur, a serial entrepreneur. I uh uh started a company in 2006 called Mashery, which was a platform for API management, which uh is AI with the P inside it. Um and that is that was a means of connecting companies together and building you know new ways for companies to do business with each other. And uh what I found after um building that company, I I you know sold it to Intel. It was a good exit, um, was working on advising a lot of companies. And I noticed as the AI thing started happening, um, yeah, there was a lot of questions around how you can get AI to really be an effective tool for enterprise deployment. And there was a lot of conversation around how it just wasn't happening yet. And that I felt that there was a lot of uh similarities to what we saw back in the API days. Uh, that yes, it's a technology, but you really have to look at it business first. And how do companies actually do work? How do people work in companies and how can AI make them more productive and more effective at actually doing their jobs? And I felt that there was not really uh an approach being taken for that um that was that was bearing fruit. Uh so I started Barn Door to build what uh what we believed was necessary um for AI to be an effective tool in the enterprise.

SPEAKER_00

So uh, and again, I as I referenced earlier, we we kind of focus on the non-technical discussion related to generative AI's application in business and um producing more, faster, better quality, blah, blah, blah. Um, one of the things that we've noticed a lot with clients recently, very eager. Um, like the the the market narrative is is accelerated to the point to where I I don't think I think they're aware that sitting on the the sidelines is no longer an option. Yep. But the number one thing that they're concerned about is the the security angle, the governance angle, and that sort of thing. Um, and that's just with using like chat GPT for business. Sure. But you guys are actually focused on almost the next step of so can we talk a little bit about that?

SPEAKER_01

Yeah, I mean, what chat what what chat interfaces do very effectively, they basically suggest things humans should do. They give you a lot of information, and you say, I need to do this thing, and here's my context, and here's this. And if I'm good at prompt engineering, I give it a bunch of stuff and it says, Great, you should do these things. And what Agentic AI, of course, wants to be is let's skip the step of telling me to do the things and actually have the AI go do those things, right? But what is scary, of course, is that AIs are um they have a pretty large blast radius, right? They they can cause a lot of trouble very, very quickly. And and also, you know, the fact that that a user asks an AI to do something, if they don't do it exactly right, or even if they do do it exactly right, there's oftentimes the AIs will go off and do things that weren't intended, right? And so um we sort of treat this as we like to say that you know these AI agents sort of show up to work as a really enthusiastic intern. They don't necessarily have all the context, they don't have all of the knowledge, and they they really need to be sort of monitored and watched and given gently increasing levels of authority, responsibility, and access as they sort of prove themselves to be worthy of that. And that's kind of how we we uh manage new employees and and and people who maybe have a lot of education but don't yet have all the context that they need in our in our company.

SPEAKER_00

So, you know, uh in 2023, we launched our business, which was um primarily focused on upskilling non-technical business professionals on the use of generative AI, specifically chat in their business. Um we were early. 2024, I thought for sure, I mean, because I was seeing the impact it was having, thought for sure 2024 was going to be the year. And for us, it wasn't. Now, this this year that's changed. It's the acceleration of of interest and adoption has certainly grown, but that's just like chat interface with chat GPT. You guys are focused on uh uh like agents.

SPEAKER_01

Yeah, well, think about it that chat GPT is I think part of the reason it took longer than you expected, um, is that the chat interface and the concept of do it of chatting in that way isn't a natural workflow for most people in most jobs. One of the jobs that really is a natural workflow is coding. Like in coding, you have a problem with your code, you take your code to a smart Phil HD who happens to be your CTO, and you say, Here's my code, please fix it, you know, help me fix this and make it run better. And so, as engineers began developing these LLMs and these interfaces into it, that became a very natural thing because it was kind of natural to how the engineers worked. Um, but most of us in most business jobs don't start our day chatting with a PhD about what we might think about doing. Um, we actually sit down and we access some tools, we access some data, we do things to that, perhaps we create a work product and give it to our boss. But that is a different thing than this constant chat. And so if you just hand a chat interface that looks kind of like a Google search box to your average employee, don't really know what to do with it. And and as you know from what you do, it's just not that simple. You you you have to give context, you have to really to gain that kind of benefit, it's kind of like managing a you know, a human employee that doesn't necessarily have much context, but has a lot of intelligence and you know, sort of is there to help. And people needed to understand the possibilities of what to do with that um and really see examples of it. And I think with the agent thing, we're kind of in that same situation right now where people need to really look at at companies that are succeeding and getting getting actual um value uh from agents doing things. And if you start seeing what happens in businesses that are kind of like yours or jobs that are kind of like yours, then you'll be able to start start um putting that to work in your own context.

SPEAKER_00

How would you, I guess we should probably start start it here, but how would you define an agent?

SPEAKER_01

An agent, it's essentially what we talked about before, but it's it's uh an agent takes action rather than merely suggesting action. Right? So an agent in a very basic sense, an agent not doesn't just read and tell you something, but it actually takes it it can write back to things, it can perform actions, it can, you know, if we're a human, it can click on things, it can write things, it can delete things, it can insert things, it can do those various things. So going back to the API world, um, and you know, for for the non-technology technical audience, API application programming interface, it's basically an open pipe into and out of a computer or a software or product that allows you to programmatically, so it allows one computer to read and potentially write into that piece of software. And it's how you know your mobile apps, you know, if you book a hotel room on a mobile app, that app talks through an API to the hotel system and books, right? So, so in that example, a non-agentic thing, a read-only thing, would be tell me the hotel rooms that are available and look at my schedule and look at my when I'm traveling and look at the weather and recommend a resort for me to go to. That would be a something you could probably do with with your average chat interface. But then if it's going to be and then use my credit card to book the hotel, well, now we're starting to get into the realm of of an agent actually taking action.

SPEAKER_00

So the the the word, the vocabulary of agents has been around, you know, I'm just familiar with it, and at least the concept of it, the uh the performance and application, uh like delivering the result of what I thought it could do, getting better for sure. Um are are you finding that we are still in a like a super nascent stage?

SPEAKER_01

Very much, very much. And and you know, you you think about these agents, each of the agents have means by which people will tell them what to do, right? Some of them require you to really kind of know how to code, others are more plain English, but then the agents typically then are talking to some AI model behind the scenes that's actually sort of helping tell it what to do, right? So so there's that level of complexity, and then as with humans, some agents are better at some things than other agents are, right? And so there's no sort of one-size spits all. Um, the big AI companies are all wanting to be the only AI you will need. And so they're now saying, okay, we're agency, great. So that's fine, but they may not be the best tool. Like, you know, most of us who use tools for a living realize that that the universal tool isn't really a thing, and you really want to have the right tool for the job. And so trying to get a tool that's intended to be the everything tool, do very specific things is is always going to be kind of difficult to do. So I think what we're going to be seeing is purpose-built tools that initially will handle fairly narrow tasks, but do them incredibly well. And then as creative people start seeing some of these things that are happening, they'll say, well, if you can do that and that and that. Well, how about this thing over here that that we the humans can't even really do much at all, but we can maybe get agents together to to um to succeed at. And I think that the the innovation, it's a lot of the innovation is going to come from folks, not necessarily, you know, Joe over in finance, grabbing an agent to create a finance report, but people who are really fundamentally very good at at solving business problems with technology, figuring out how they can do so more effective efficiently and effectively using these new agentic tools.

SPEAKER_00

So we're kind of going stream of thought here because this is a topic that um I'm I'm eager to master because of the demand from clients, or at least the expectations from clients when it comes to this word agent. You know, what people in in when ChatGPT 3.5 came out, there was this narrative in the market about it's going to be taking jobs. Chat GPT is not going to take anybody's job, right? However, an AI-powered agent is really what they were fearful of.

SPEAKER_01

So so I would say ChatGPT is not taking jobs necessarily, but it is certainly um changing how work gets done in a way that's um that in theory certain kinds of jobs can be done with fewer people, right? So that but that's that's what technology has always done. You know, the industrial revolution, you know, picketed. Uh you know, Excel didn't put all the accountants out of work just because Excel came to exist, right? It just gave them the tools. We probably have more accountants to live than we did back when Excel was first brought out. So I think that here you have you still have a level of how do you take the humans who are who are doing the creative thinking and coming up with the ideas and saying, I want to build this kind of business, and giving them tools to do so more effectively, more efficiently, less expensively, faster, etc. And um and really removing a lot of the the rote uh elements of of work that really are are kind of you know, it's some someone saying the the sort of soul-crushing repetitive work as opposed to the actual true thought work.

SPEAKER_00

So I can train a human how to use Chad GBT, I can tell them, hey, don't put this in there because of of uh you know data issues and things like that. And the human still has the discretion before they hit interact. Absolutely, absolutely to be able to review the the policy or the guidelines. Nope. And I there's still the business owners are still fearful about that leading to issues. And you mentioned the blast radius earlier. With agents, that that human discretion isn't present before that.

SPEAKER_01

There's two things that the agents don't show up with. One is a conscience, what you're calling a discretion, and the other is a fear of being fired. Right? Agents have neither of those two things. And so if you have employees who have no conscience and no fear of being fired, uh problems will happen, right? Yeah. Right. And so, how do you then choose to manage those folks in a way that will still allow them to be effective? Well, you can't really drill inside their brains and see what their intentions are, but you can watch what they try to do and watch what they succeed at doing and see if that makes sense in the context of what you're asking them to do. And that's essentially the product that we built is a means of saying, okay, I have tasked this agent with doing these things on behalf of that employee who has certain roles and access that they can have. And now I have full visibility as the agent goes off and tries to do things, I'm watching it, it's attempting to access that record. It's attempting to write this thing, it's attempting to pull data from over here. And if those actions are consistent with what we're expecting the agents to do, then we will start allowing those actions to take place when the agent attempts it. But if you start seeing the agent attempting to do things that are outside the context, like having an employee who you know is supposed to work in this part of the company and they're randomly overlooking at stuff over there, that might be a problem. And you probably want to take a look at that and see what's going on. And and so it's it's really that mentality that we have to um that we have to bring to bear here.

SPEAKER_00

You know, we were just in Orange County working with some clients, and they had some some questions about the introduction of AI. And it was fearful questions, but it was I had this realization that it doesn't matter how scared you are, if you want to compete, like the arms race has begun.

SPEAKER_01

Oh, yeah.

SPEAKER_00

You have to do this. You have to do this. You have to do this. The challenge, I guess, would be those frameworks for the control, the observation, the measurement, the governance.

SPEAKER_01

Absolutely.

SPEAKER_00

And that's where barn door specializes. That's correct. Right? Yeah. What what constitutes a uh a viable framework for governance um at the agentic level? Well, so it's context, right?

SPEAKER_01

So if if you're talking about humans, again, they come with a conscience and they come with a fear of being fired. So you have that, but you still say, okay, we have a company, we have probably some kind of an identity access management system that says a person who has this job description and is named this and is at this level in the company gets to do these things. And there's systems that exist to do that. That's one element with the agent. So with an agentic question, it's okay, you have you're doing it on behalf of this person and they have certain rights. Then the next question is well, what is the agent? And is that agent an agent that we trust to be doing certain things? What system are they trying to access to do this? Again, agenc things both read and write to things you use, Salesforce, to Gmail, to data stores, to Notion, to whatever it might be, right? So what are they trying to access? What specific task are they trying to do? We might say, well, base on all these things, uh, we're okay with agents updating certain fields in this record, but we're not okay with them deleting them. We're not okay with that, you know. So there you start sort of narrowing down, and you know, an agent working on behalf of the VP of sales might be allowed to change the value of an opportunity, but working on behalf of an SDR is not, right? So so all these different elements of context or sort of vectors that come to a central point and the intersection of that point is either, yeah, that's okay for the agent to do, or no, it's not. And and so it it's it's that kind of decision-making process that that has to exist for each thing that an agent tries to do.

SPEAKER_00

Okay, so so that's helpful. That the you would essentially map the permissions that a human would have over into the state.

SPEAKER_01

But it's it's generally a subset of that, because then you say, okay, but the agent, because of the power of an agent being in many ways, you know, the power to do much more, much more quickly uh than the human, you then further limit it based on how you see each particular agent attempting to do things or not. Okay.

SPEAKER_00

Helpful. Where would you suggest companies that are, I guess, uh have adopted more than than perhaps their competitors and they're ready to take it to the next level and really explore a gentic application within their business, where would be some of the areas where the trial and error would be less risky that you would suggest they get started?

SPEAKER_01

Well, if you if you sort of look at at all the various, I'm sure you know you've had various guests talk about this, but you look in each area of a company, right? And depending on the the area of the company, there are different tasks and different uh um things that people need to get accomplished where they can do it better, stronger, faster. So if you look at marketing, right, marketing has you know not just the automation tools, but there's a lot of a lot of ways where you can really use um agents to automate the process of managing and running, let's say, campaigns or or uh you know, doing a lot of we're using them, for instance. Like I have a bunch of investors in my company. I have agents that sort of go through their portfolios, go through certain context we know of for what makes a good customer prospect for us, um, does it some research on the web and basically helps me create things where I can go to my investors and say, please use this to make this context, this introduction to that CEO. Right. So, so low risk. Low risk, right? But it's actually accomplishing things and it and it can actually generate these messages and send them on. Um fairly low risk, right? Higher risk would be actually, you know, but but you know, we do this already. If you advertise on Google, you're saying to Google, here's you know, 5,000. And it's an agent that's going placing those ads, right? So whether you like it or not, you may not be running that agent, but an agent is doing that for you, right? That is entirely automated through AI and through through an AI that actually takes action. Right. So you're most of your listeners are probably already using some form of that, whether they whether they think of it that way or not, right? So then, you know, again, finance, another element. There's a lot of repetitive work that happens, um, and that you can sort of spot check afterwards to make it make sure it's been correct. But um, you know, I I have I I think the days of um waiting 30 or 45 days after a month or quarter ends to have reporting is going to become 30 or 45 minutes and then 30 or 45 seconds, right? I just I it just seems a lot of that is is very repetitive work that that you can um create and and and and work in that way. So if you sort of go through each of these things, there's a um there's a a company I actually am on the board of that that redlines contracts, right? You get a you get a contract and you either redline it or you get the red line back if you're a sales team and you say what you can and can't accept. And that's a an AI workflow that it's it's low risk in, you know, in some it's it's not going to um uh it's not going to destroy you know reams and reams and reams of data overnight, but it is going to accelerate, hopefully accelerate revenue. Right. So so looking at the places, you know, it's also look at the things that um that are kind of needing to get done repetitively in order for you to be successful at whatever you're trying to do, but that are not requiring the brain power of the executive doing it. And let's try to make those things happen more quickly.

SPEAKER_00

I hope you're enjoying the episode. Did you know that while you're listening to this, competitors are already boosting EBITDA with generative AI? If you're still stuck in pilot mode, margin and market share are leaking every quarter. CheapAIOfficer.com guides executive teams to the three moves they need to be doing. Identifying the top AI plays that will lift revenue or slash cost within 90 days, de-risk adoption with team training, airtight governance, and change management best practice, and then building and deploying production grade AI-powered tools. No extra headcount, full ROI tracking. The results? Operators at Scale Generative AI cut process costs 22% last year. Let's talk. Claim your free, private, 15-minute executive briefing by going to chiefaiofficer.com and walk away with a board-ready roadmap. Slots fill fast, so lock yours in. Now, enjoy the rest of the episode. So does barn door come in once the agentic architecture has already been developed and then introduce the the governance layer? Or are you guys actually being involved from the idea?

SPEAKER_01

Ideally, we want to be involved beforehand, hence the company's name. You want to have the barn door closed before the horses all get out and bad things happen, right? But um so there's a protocol um that has been um brought forth uh in the last six months called MCP, model context protocol. And it's a a fancy you know acronym for how AIs and agents talk to systems that are out there, whether it's it could be Salesforce, it could be Notion, or it could be internal personal stuff, right? So that protocol is very, very effective. However, it does not come with any security, right? It there's no, it's it's essentially the pipe and the language and the conversation, but no rules. And so if you're going to make use of this protocol MCP, um, to have your, whether it's your chat or your agents, interact with these back office systems that you're using in your company, you need to have the visibility and the management and the governance, or else bad things are going to happen. So if you're contemplating anything that uses MCP, and most people are at this point, yeah. Um the the they sort of say the S in MCP stands for security, and there is no S in MCP, right? So on so you need some means. And so there's there's there there are some sort of ham-handed ways of doing this where it's just okay, well, we'll see what the agent is. And if we like the agent, we'll let it in. Well, that's that's only part of the context, and the human is part of the context, and what you so all these things, context together, again, sort of meet in the middle to determine what the um you know what you should and should not be allowing to happen at each of these times.

SPEAKER_00

Has the I guess the prevalence of MCP accelerated interest and demand from your customer profile? Absolutely.

SPEAKER_01

Absolutely. And and for two reasons. One is that the positive of it is that it really allows, if we go back to how people do their job, right? It allows programmatically, allows an AI or an agent to access all the tools and the systems and the data that the humans were doing in their jobs, accessing in their jobs. So that was one element that really the existence of MCP is really accelerating the move to agents. But the flip side is that since there's lots and lots and lots of MCP servers out there and they're not terribly secure at this point, there's a lot of fear that if you start hooking up random MCP servers to any agent you want, that uh you will suffer data leaks, you will suffer prompt injections, you know, there are all these, you know, all these horribles that can happen if you don't have governance and visibility into what's going on. And so every single customer call we have, one of the first questions is how do you deal with um and and manage around unsanctioned MCP traffic where where people, yeah, they're they're well mean. They just want to get their jobs done. But yeah, but there are there need to be governance on that um in order to keep unintended consequences from happening. And you know, this is this is a really interesting thing around AI and around um agentic in particular, but really all AI. When you think about security for AI, if you think about cybersecurity in general, it's usually this concept of you know, the nefarious actor is trying to get in and steal your stuff, right? Whereas with AI, most of the security issues are around well-intentioned people in your company trying to get their job done and not necessarily knowing the consequence of saying to an AI, go do this. And so, so it's really it is you know, the security thing has to be there, but it is more than merely you know securing yourself from intentional bad actors.

SPEAKER_00

So, just out of curiosity, you mentioned earlier that when you're on the phone with clients, what roles are typically represented on that call on the client side? So it's interesting.

SPEAKER_01

Um, at this point, you know, you you have a a great name for your company, chief chiefaiofficer.com. That is a thing, right? I actually spoke at a conference for an entire conference for chief AI officers, which I don't think such a conference existed a year ago, right? So um, so there is often that role, but what I you say is it's the it's the person in the company. Yeah, you you said everybody has a mandate to figure this out, right? So there's someone in the company where the CEO said to that person, you go make AI happen, and I want to see real results and ROI from it, right? Every company has a person the CEO has said that too. Um, that person, and it could be a CIO, it could be a CISO. We're seeing HR people having that role. We're seeing sometimes it's just a lineup business person, maybe a CRO or a product, you know. It happens if a company is big enough, they have an innovation group, but there's some place where that is happening, right? So they have an issue. Then there's usually someone on the call who's actually from a line of business person. Because you think about it, like your CIO and your CISO, they don't have an AI need, right? They don't care either way, generally. It's not going to change their lives. They're not the one who are being told, unless you use AI, you're not gonna hit your number, you're not gonna sell. So someone needs that to happen. So they or someone on their team is usually on the call. And then there's usually, because this is sort of a mix of security, traditional, you know, security with the capital S security, as well as this other issue that we just talked about, but there's usually someone from the infrastructure slash security realm who is on the call as well, because they they need to be satisfied that whatever you're doing here is actually going to be a secure situation. So it's usually a group of folks that sort of meet those various personas, um, generally starting with whoever um is sort of leading the charge on coming up with with uh you know AI wins for the company.

SPEAKER_00

Let's let's say a client engages with you guys. How how quickly are you able to start to introduce the result that Barndor brings into their efforts?

SPEAKER_01

It's really quick. I mean, the the deployment is very simple and you know, software is a funny thing, and enterprise software is a funny thing. Um the concept of integrating these things, particularly since there's a protocol like MCP that is established, right? Um, we drop our proxy and it can come in in in you know it's containerized, we'll get, you know, there's the geeky stuff, but the bottom line is it's very simple to drop in, and then we simply we know we we have an interface and we spin up you know a new a new client for it. Um you know, Salesforce was a big early place where the concept of you know implementing a new customer was you know, you enter the customer's name and say go and you have a customer, right? So so software platforms have evolved to a point where where that part is all pretty pretty easily done.

SPEAKER_00

This governance again, the the the the fear of the unknown for at least the clients, and we focus on like lower middle market and and a we don't really mess with enterprise, so it's it's a different conversation. There's people probably wearing multiple hats that you guys don't encounter necessarily at the enterprise level. They may not know what a good governance framework or policy looks like, right? Do you do you guys advise them on the development of it?

SPEAKER_01

Sure, but they they actually probably do know what it is because one way or another, let's say they run Salesforce, right? You're running Salesforce, you have someone administering that that instance of Salesforce who has decided that this group of people are allowed to do these things, but that group of people are not allowed to do those things. So then that that administration and and managing that for each of the pieces of you know software and tools that you use, that's a known set of issues that comes into the enterprise, right? And so what's interesting about this this you know move to the agents is it's essentially just that on steroids. So you have that set of issues plus the issues that are inherent with having you know these very powerful workers that show up without a conscience and a fear of being fired. Um and so really the the advice we give that maybe is a little bit different, but it's kind of an extension of how these companies have always always done it before is start small and you know start with start start by saying no, see what they try to do, and um and then gradually give more and more you know access. Um keep things narrow until you truly trust them. And if you're going to have new use cases where you're where you haven't necessarily deployed it, perhaps create a a different persona around that so that you you basically, oh, we've got this new use case. Okay, once again, we're gonna start small and gradually let it you know let it move out. So yeah, we definitely have folks who know how to um you know engage with with our customers and uh help them do that. Uh we just it it's really comes down to what is the culture of the company in question in terms of of how open and trusting they are.

SPEAKER_00

So the typical client that you guys work with is enterprise?

SPEAKER_01

Yeah, it's usually it it ties into an act an enterprise access management system like an Okta or a Microsoft Enter or something, right? So our our customers are large enough to use something like that, which means they have they have roles, they have levels. So it's usually hundreds or thousands of employees, not a dozen, right? Um, because if you have a dozen employees, you probably aren't running something like that. Um and your biggest issues are not really around um, you know, you you you kind of have an eye on what everybody's doing. Um so I would say that it's it the size range really starts in the hundreds.

SPEAKER_00

So for those clients that are listening or those listeners who are listening to this podcast and have probably already maybe gotten started with the agency side, but didn't necessarily think about the barn door element of it. Um, what would be some advice for them? Um the same start small. Start small, definitely.

SPEAKER_01

I mean, I think I think it's it's and and just you know, it's it again, you think about how you bring a new employee on, right? So you have a you you just hired this you know young person straight out of college with lots of excitement and lots of energy, and you're gonna give them something to do, and then you're gonna go look and see how it went, right? And then if that went well, you'll give them something else to do, and maybe you'll start letting them come up with things to do on their own. But uh, but you know, no one succeeds in business without um you know keeping an eye on exactly what's going on and and uh testing things and then seeing how they turn out. That's kind of how we do it.

SPEAKER_00

Okay, so that's not too scary.

SPEAKER_01

No, no, it's not it's it's I think it's a lot of it comes down to understanding the difference between uh and Jensen Huang at at uh Nvidia said at the conference after that. He said, you know, you you have your what he called your biological workforce um that sort of managed by HR, and you now have this agentic workforce that's managed in his mind by IT. I think it's a little more complicated than that. But you know, essentially it's a different workforce. Try to understand the differences between how the humans work and how the AIs work. And if you understand that difference, it's kind of like understanding the difference between a person with this set of training who works in finance versus that set of training who works in marketing, right? And and the more you can think of it in that terms, the more comfortable as a manager you should be in in managing this workforce and getting value out of it.

SPEAKER_00

So you you mentioned that it's a little more complicated than just having the IT team handle that.

SPEAKER_01

Is that because the agents are mimicking human Well, it's partly, but it's also it's also because we're going back to it's not just traditional cybersecurity, you know, do with a capital S. So you take your go to the enterprise, right? You have a a security person, usually has a title of CISO or something like that. They are an expert in true security or people attacking your systems, people hacking it, all that kind of stuff. They are not an expert in what happens if someone uses this particular function of Salesforce and misuses it. They're not an expert in what happens if if a person um you know does this thing to a bunch of pages in notion and what that's going to mean. And so they don't know what that it's not in their remit to be the expert on each of this the things you're operating. So you then have a different person, maybe it's a Salesforce administrator or you know, a uh um you know someone who manages that particular piece of software, they also have have certain things that they need to enforce that's different than the true security person. And then there's another level, which is okay, but you're part of the team that's allowed to know about that secret client project that we're doing, and everybody else isn't. Well, okay, well, that is a different level of quote security, right? That you that you kind of have to deal with. And so, so it's it's that kind of management. And again, if you're if you're managing the humans, well, we show up in the conscience. So it's like, oh, the company culture is don't go looking at projects that aren't yours. Okay, well, I'm not gonna do that because they're gonna fire me if I do, right? Well, we have to enforce that if it's if it's an agent.

SPEAKER_00

So whereas IT would be with Capital S security uh as a focus, they're perhaps more focused on outside intentional malicious efforts. And with the ejectic side, it's accidental or internal typical. I mean, of course, they're technically and also the and also that other part. Yes, it's it's yes and interesting. So um for the clients that you're working with that that are um like in motion with a gentic deployment, just out of curiosity, where did where are they seeing the biggest wins? Like, like what are some of the anecdotal examples that you've seen?

SPEAKER_01

If you think about when we look at jobs and and the things we want to quote automate, unquote, right? The the the low-hanging fruit are the are are some of the really, really obvious ones. It's like you know, you have um you have people spending a lot of time doing repetitive efforts in financial reporting, in marketing, and things like that. So, so certainly it starts with those, and um, and you see a lot of quick wins there. Um, but it's also uh spotting anomalies and and really looking at how people uh you know looking for patterns, whether it's in customer data or um interaction data with users, if you're a software company, and trying to discern from that um the ways that you can better serve your customers. And I think that if that anything you can do, you know, you start with, okay, let's get let's get efficient at things that we're currently inefficient at. But to me, just speeding up human processes is not as interesting as learning and managing things that by their nature humans aren't particularly good at doing. And this sort of goes back to your concept of they're not here to take your jobs, they're frankly here to do jobs that we don't know how to do anyway. Or want to do. Or want to do, exactly.

SPEAKER_00

So many questions here because this is a level of of conversation on the topic with somebody who's got a level of experience with the topic that I just don't interact with much. I'm typically dealing with clients who um they're good at at their business and their job and that sort of thing, but uh they really don't have much of a foundation when it comes to understanding the the paradigm of AI. So you mentioned a word earlier, automate. In my experience, there's been a lot of um lumping automation and agents in together. Yeah.

SPEAKER_01

And you know, we had a we had a thing a few years ago called robotic process automation, RPA. It was yes, it was a thing briefly, and it stopped being a thing, right? And and it stopped being a thing for a couple reasons. It was kind of janky, it didn't really work very well, right? But the other thing is that and and some agents are still trying to do this where they say, okay, I'm going to watch how you move your cursor and what you do on the screen, and I will mimic that in a browser. Um, and again, just making making faster work of what we humans are already doing in an inefficient um web browser interface is not all that interesting.

unknown

Yeah.

SPEAKER_01

Right? And that's not fundamentally changing what companies can do and how they do it. So let's use a much bigger example. In the very early days of Google advertising, um, you went and you decided what keywords you were going to get and you bid on them and you had these big spreadsheets you'd upload with all your keywords. And I'm, yeah, I remember that I was an early advertiser for Google. And you know, you did all these things and you were sort of guessing what, right? And now you give them a dollar amount and you say, advertise, and it will do a way better job than we humans. You know, lacks all of our prejudices, it just like goes out and does what's effective. And and I think it's that same kind of concept. So the early versions of automating that were let's make it more efficient, um, blah, blah, blah. And um and that, and then it turned into no, let's just totally reimagine how this thing is done.

SPEAKER_00

That's kind of where we are. Yeah. Agents versus obviously you're paying attention to the space. What are some of the forecasts that you're seeing as far as the impact of agents on, I guess, global economy, industry, specific industries, anything like that?

SPEAKER_01

You know, I I think in general, there are always the early adopters who are getting particularly good at doing things. So, you know, you have a I there's a company called Crew AI that is um that there's a they're an agent provider. Um, and I believe that they have said that if not all, nearly all of the Fortune 500 have people using their their agents. Okay. Doing something. Now, um, you know, you think back to Amazon Web Services when EC2 came out and you had you know cloud computing for the first time for real. Um initially, you didn't have Amazon going to big companies and saying, buy my cloud thing. What you had was people within these companies plunked down their credit cards because they were tired of waiting for servers, right? And they needed a server and they're and they're you know, they're they're data center people at their company. So, well, that'll be you know six months to get a server up and all this cost. They're like, Well, forget that. I'm just plunking down my credit card. And Amazon, of course, gathered that data, and then they would eventually go to the CIO of these companies and say, You should have a cloud deal with us. And the CIOs would say, Well, we know we have our own data center, we don't need you. And AWS would say, Well, you know, you have 30 different people in your company that are already using us, and maybe you want to be able to manage that, right? That was sort of how that that kind of made it into the enterprise. Um, you know, in the early days of of mobile email, you had the BlackBerry, and initially that was considered unsecure. So the sales guys would go out and get and you know spend their own money having a Blackberry because they needed that to close business. And then eventually they would come and have a corporate thing, right? So so you see a lot of areas where in these in companies large and small, individuals are are figuring out ways to become more efficient, to you know, to look really smart and look really capable because they're getting a lot more work done than perhaps their peers are. And it kind of happens from the ground to the ground up, not from you know this mandate from the top, uh, to that we are going to have agents. So I think that it's a long-winded way of saying that um that the predictions of you know it's going to be this level of efficiency or that. I I think the easiest way is to say it's gonna be huge, right? In the same sense that most companies, most companies don't really run their own data centers anymore. And they used to and it used to be you'd walk through a colo system and you have, you know, every cage was some other company that was, and now we don't do that anymore, right? So so it just the these kind of major transitions, um, you know to to SaaS, to cloud, and now to to you know, LLMs and then to agentic AI, they're just massive. And and I think that it's it it it's I don't think we gain a lot by attempting to put a number on it other than it makes us feel good, you were guessing.

SPEAKER_00

It's a big number. Yeah, that's a good answer. Um, so you you referenced something earlier, and for those that are listening, it might not have the the the impact of of the statement may not have landed with you. But essentially what what you were describing as kind of the entry point for this in most companies, would that fall under kind of the shadow usage idea?

SPEAKER_01

And that's and that's part of why we're being asked by so many to um to have you know to help them solve the sort of unsanctioned MCP issue is because you know there are a lot of there is a lot of this going on and and the risk is high. And uh, you know, you you when you give people the opportunity to sort of connect directly into the innards of anything, um, yeah, that's kind of scary.

SPEAKER_00

Absolutely. And Orrin, we're we're getting to the end of the time here, but I do want to get your opinion. Um when this episode uh is being recorded, uh OpenAI's agents are agent. Yep, uh, well at least I guess maybe last week. Yep. Um what is your uh what's your perspective on because my my challenge is that people use the words casually like the automation and and and sometimes AI is not even involved, but they call it AI just because it's an automation and that sort of thing. What is your perspective on agent actually qualifying as an agent? And second, the the the risk associated with using that in particular.

SPEAKER_01

Well, you know, if if if something actually takes an action or rights, it's an agent. So, you know, call it that. I don't I don't spend a lot of time worrying about um, you know, people misusing the term. But I think the the bigger thing is that every one of these companies, whether they're the foundational model folks or they're the the you know the agentic platforms like a crew, all these folks are basically saying we've got the agent to do what you need. And it is way too early to pick a winner. I don't think you ever will pick a winner because I don't believe that there will be one agent to rule them all anymore than my toolbox in the garage only has one tool in it, right? So um you're going to have a bunch of different platforms and concepts of how to how to create agents, how to manage agents, how to, you know, all this sort of stuff. And what you don't want is every time a new one comes along, you don't want to have a lot of friction to try it and see how it works and see if it's the right thing for some subset of your of your your activities, right? You know, the the lovely thing about employing AI agents instead of humans is if a better one comes along, you don't feel bad firing the old one, right? And and it's not like, oh my god, but Faden suits kids, right? So you can you can be pretty heartless and say, well, you know, I like that one before, but I like this one better now. And and so I I would say I would be less concerned with um, you know, open AI now says they have an agent. Is that the agent? Well, it's an agent, and I'm sure it's gonna be really good at some things, and I'm sure it's gonna be really terrible at other things. Um, and and that's the nature of how these things come into being.

SPEAKER_00

Well, Orn, like very privileged to have you on the call. Thanks for having me. The um the conversation was uh certainly outside of my league.

SPEAKER_01

Uh no, I think it was I think it was a great conversation. I really appreciate it.

SPEAKER_00

Uh my my pleasure. I I I learned a lot and it kind of opened my eyes. I didn't realize that MCP was the risk that it was, and everybody's excited. It's very exciting.

SPEAKER_01

Well, also it didn't exist six months ago. It's what it was, what uh November, December, it was it popped up. It was it hasn't been around for very long and it's already been iterated on three or four or five times. The the standard keeps changing. So, you know, what is MCP today? Well, not what it was two months ago.

SPEAKER_00

Yeah, and we've got some of our builders using it actively. I need to go and evaluate indeed, indeed. The security elements behind what they're doing. So, Orin, for those listening who um want to continue the conversation or learn more from you guys, I'm sure you're putting out some incredible content and thought related to the subject. Where can they find out more about it?

SPEAKER_01

We are at barn door.ai. Um, and I am Orin at Barn Door.ai. Welcome to email me.

SPEAKER_00

And I'd I'd love to hear from you from anybody listening. Awesome. So we'll make sure that those are in the show notes for sure. But um, I have no doubt that I'm going to be seeing you uh and what Barn Door's doing. It's it's um even more in demand, uh, especially after this podcast episode with some of the questions I ask. But um again, fantastic what you're doing. Uh thank you so much for being here. And um, I look forward to hearing big wins from Barn Door in the future. I do too. So everybody, thank you so much for being on the episode, everybody. Today we'll have the latest one released soon. And um go use AI. Thanks for tuning in to Using AI at work. Don't forget to subscribe for more conversations about how to use AI at work. And a special thank you to our sponsor, Chief AI Officer, for empowering businesses with AI education and training. Visit their website for a free AI readiness assessment and AI strategy guide to help you get started using AI at work. That's www.chiefaiofficer.com. Well, thanks to our producer, Evan Destalnier, for making this episode possible. Follow us on Twitter at the handle usingAI at work and visit www.usingai at work.com for free resources to help you harness AI in your role.