Live workshop
Identity & Authorization for AI Systems
Give agents identity and constrain what they can do at the moment of action.
Outcomes
- A principal model for humans, agents, and workloads
- A delegation pattern that avoids confused-deputy paths
- A runtime authorization sketch for tool dispatch
Topics covered
Architecture exercises
- Threat-model an on-behalf-of tool call
- Place a PEP on an existing agent path
Team requirements
- IAM, security, and the team owning the agent runtime