Loading…
17-18 September | Amsterdam, Netherlands
View More Details & Registration

IMPORTANT NOTE: Timing of sessions and room locations are subject to change.
Thursday September 17, 2026 12:00 - 12:25 CEST
DevOps and Platform teams now work with hundreds of AI Agents in their internal systems. These Agents usually run with credentials that can touch everything, including your production servers. This could lead to prod incidents, unless you have deterministic permission checking to ensure the agents perform only actions that it's authorized to.

This talk will teach you how to add delegated authorization to your AI Agents, at scale.

The presentation covers how the AI Agents have changed the mental model around permissions and why Relationship-Based Access Control (ReBAC) is well suited for this paradigm. You'll learn about the Google Zanzibar model of fine-grained authorization and why it is well-suited for commons Agent-permission patterns such as:
  • Scoped delegation
  • Expiring grants
  • Instant revocation, and 
  • Hierarchical permissions
The talk includes a live demo of a DevOps Agent powered by goose & SpiceDB where you will see how revoking the Agent's staging access automatically suspends production access too, something traditional role-based systems can't express cleanly.



Speakers
avatar for Sohan Maheshwar

Sohan Maheshwar

Lead Developer Advocate, AuthZed
Sohan is a Lead Developer Advocate at AuthZed, based in the Netherlands. He started his career as a developer building mobile apps and has been living in the cloud since 2013, in companies such as Amazon, Fermyon and Gupshup. He is also an AAIF Ambassador and an O' Reilly author... Read More →
Thursday September 17, 2026 12:00 - 12:25 CEST
Auditorium (Ground Floor)
  Building Reliable Agent Systems
  • Session Slides Attached Yes

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link