Session

AuthZEN in Practice: Standardizing Authorization for Cloud Native Platforms and Agents

As AI agents gain broader access to APIs and infrastructure, "authorization" is becoming central to both security and governance. Agentic AI systems highlight fine grained, real time authorization challenges that are shared more broadly by cloud native platforms.
Authorization has long been fragmented by vendor specific designs and implementation dependent interfaces. In January 2026, the OpenID Foundation finalized the AuthZEN Authorization API 1.0, defining a standard interface for authorization interactions. This specification has attracted strong interest, and multiple projects are now working toward supporting AuthZEN, including Keycloak, an open source IAM project.
In this session, Yoshiyuki Tabata introduces the core concepts of AuthZEN and presents an end to end demo using Keycloak. The demo walks through token issuance, authorization evaluation, and policy decision enforcement, using a simple agent driven scenario to show how AuthZEN can be applied in cloud native ecosystems.

Yoshiyuki Tabata

CNCF TAG Security and Compliance Tech Lead / CNCF Ambassador

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top