Back Issues/Search Home → Calendar → Current Issue → Popular →

All issuesVolume 341, Issue 2Events NewsCloud Events

Agentic Runtime Security on AWS: Identity, Least Privilege, and Audit for AI Agents with IBM Verify Identity Access and HashiCorp Vault (Oct. 1st)

Thursday, October 1st, 2026: 1:00 PM to 2:00 PM

This hands-on workshop deploys a working reference implementation of five control objectives for agentic systems - verifiable agent identity, no standing privileges, actions tied to user intent, enforcement at the point of use, and audit evidence correlated across all three trust planes (user, workload, data) - using IBM Verify Identity Access and HashiCorp Vault on Amazon EKS.

📅 Add to my calendar Thursday, October 1st, 2026 at 1:00 PM Apple / Outlook (.ics) Google Calendar
Agentic Runtime Security on AWS: Identity, Least Privilege, and Audit for AI Agents with IBM Verify Identity Access and HashiCorp Vault (Oct. 1st)
Virtual

AI agents break the assumptions security tooling has relied on for two decades. An agent is neither a human persona nor a classic workload — it acts on its own behalf one moment and on behalf of a user the next, and bearer tokens with hard-coded scopes and standing database GRANTs don’t compose across that moving boundary. When something goes wrong, “which user authorized this action?” is unanswerable across IDP, secrets, and database logs that share no correlation key.

1. A non-personalized read-only agent on pure workload identity with just-in-time Vault credentials.

2. An OAuth Authorization Code + PKCE personalized agent that propagates user identity down to per-row database isolation.

3. A privileged refund agent requiring out-of-band human approval via OIDC CIBA, proving delegation and rich authorization with RFC 8693 token exchange and RFC 9396 RAR, and producing a single audit row correlating IBM Verify, Vault, and PostgreSQL on one request ID.

You leave understanding the security primitives at the layer enforcement actually happens — and how they map to Vault’s newly announced native AI-agent authorization model.

Hosted by Security Boulevard

more →  ·  More from Cloud Events →