Session
Who Let the Agent in? Securing Agentic AI with Non-Human Identity in Cloud Native Infrastructure
AI agents are starting to perform real operational tasks across Cloud Native environments including Kubernetes,CI/CD,observability,security and platform workflows. But many agents still rely on shared tokens, broad credentials or inherited human permissions.This creates risks around over-authorization, invisible delegation,weak auditability and uncontrolled access.
This session presents a Cloud Native security pattern for securing agentic AI with non-human identity and an agent gateway.It explores how Kubernetes service accounts,SPIFFE/SPIRE,Open Policy Agent,Kyverno,GitOps workflows,short-lived credentials and audit logs can help verify agent identity,route agent actions through a controlled gateway,enforce least privilege,bind every tool or API call to policy and require approval for risky operations.
Attendees will leave with a practical blueprint for moving from trusted agents to verified agents without giving them standing access to Cloud Native infrastructure.
Mahendran Selvakumar
Cloud and DevSecOps Engineer,Tata Consultancy Services
Coventry, United Kingdom
Links
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top