Session
License to Generate: Securing AI Agents with Keycloak, SPIRE, and Envoy
Your organization may be aware of prompt injection, privilege escalation, and impersonation risks with AI agents. You may even be aware of some theoretical defenses: identity, sandboxes, and guardrails. But how do you actually implement these at enterprise scale?
This session walks through a working vendor-neutral, open-source implementation built on Keycloak, SPIRE, and Envoy that shifts AI security down to the platform layer. We will show how per-request identity becomes the foundation for fine-grained authorization and dynamic guardrails, and explore the critical interface between agent sandboxes and the broader platform. Finally, we will take a concrete scenario and show this platform blocking an attack at various layers, demonstrating defense-in-depth. Attendees will leave with a modular, cloud-native reference architecture to secure their enterprise against unpredictable, manipulatable agentic workloads.
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top