Session
Who Are You? Identity, Authorization, and AI Agents in OSS Security
The rise of AI agents and model-driven workflows has introduced new identity surfaces, authorization challenges, and privacy risks. This talk extends the IAM conversation into the age of autonomous agents and the Model Control Plane (MCP). We will examine how agents and models acting on behalf of users, organizations, or other agents complicate traditional notions of identity, trust, and authorization, and we will map those risks to operational control plane patterns.
Key themes include:
1. Agent identity and trust: how do we authenticate and authorize autonomous agents, and what does "Who are you?" mean when the actor is non-human?
2. The death of the static API key: why long-lived secrets are a fatal threat to agentic workflows and how to phase them out.
3. Keycloak in action (demo): a consolidated, hands-on demonstration using Keycloak, a CNCF incubating project, to implement agent-focused IAM patterns, including:
a. issuing just-in-time, least-privilege tokens via token exchange (RFC 8693) to minimize blast radius;
b. enforcing context-aware policies (attribute-based and time-based) to limit agent actions by runtime context;
c. binding tokens to agent cryptographic keys using proof-of-possession (DPoP) to mitigate token theft and replay.
3. Model Control Plane security: identity and lifecycle for models, model signing and provenance verification, runtime attestation, mTLS between control plane and runtimes, and auditability for model promotions and deployments.
4. Protocol extensions and standards: applying and adapting OAuth 2.0, OpenID Connect, etc. to agent-to-agent and MCP interactions.
5. Threat modeling for AI agents and MCPs: prompt injection, agent impersonation, supply-chain and model poisoning, and practical mitigations.
6. Privacy and compliance: ensuring agent-driven workflows respect GDPR, data minimization, and privacy-preserving techniques.
By combining IAM best practices, MCP security patterns, and an open-source demo, this session will give developers and security engineers a practical, standards-based playbook for building trustworthy, least-privilege, and privacy-preserving systems in the era of AI agents.
Augustine Correa
Championing Tech Communities, Empowering Innovation 🚀
Mumbai, India
Links
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top