AI Agents, Synthetic Identity & Agent Identification
Combined Session
Wednesday, May 20, 2026 15:35—16:35
Location: B 05
Log in to download presentations
Wednesday, May 20, 2026 15:35—16:35
Location: B 05
Watch the video
As AI agents begin to participate directly in commerce, identity systems must evolve to support trusted delegation and non‑human actors. This session explores the foundations of identity‑driven Agentic Commerce, where users can grant controlled mandates to AI agents that act on their behalf in digital transactions such as e-commerce. We will discuss the principles needed to ensure these AI‑mediated interactions remain transparent, fair, and aligned with user intent.
Watch the video
Every organization now manages more non-human identities than human employees—service accounts, API keys, CI/CD pipelines, containerized workloads, and increasingly, autonomous AI agents. Yet while we've spent decades perfecting human identity governance, non-human identities remain the enterprise's largest blind spot.
This session exposes the cascading risks when non-human identities lack proper lifecycle management. We'll examine how the software supply chain amplifies these risks: compromised build service accounts that inject malicious code, over-privileged GitHub Actions that exfiltrate source code, and AI coding assistants with standing access to production systems. Drawing on recent supply chain breaches (SolarWinds, Codecov, CircleCI), we'll demonstrate how attackers exploit the "identity chaos" in modern development pipelines.
Attendees will learn a practical framework for non-human identity governance covering credential rotation policies, just-in-time access for build systems, workload identity federation, and the emerging challenge of authenticating AI agents that write, review, and deploy code autonomously. We'll introduce the concept of "identity observability" for software pipelines and show how policy-based access control can reduce the attack surface by 70% without slowing development velocity.
Key Takeaways:
- Understand the non-human identity explosion in cloud-native and AI-augmented development
- Learn the 5-step framework for SSCS credential governance
- See real breach patterns where non-human identity failures enabled supply chain attacks
- Discover tools and standards (SPIFFE, Workload Identity, AuthZEN) that scale identity control
Watch the video
AI agents are rapidly becoming first-class digital actors, performing tasks, making decisions, and interacting autonomously across systems. This panel examines why these agents now require identity, trust, and accountability frameworks comparable to human users. Experts will explore emerging models for agent authentication, detecting synthetic identities, and governing autonomous behaviors across complex ecosystems. Attendees will gain clarity on the risks and opportunities of agent-driven interactions, learn how to prepare their IAM architecture for AI-native actors, and understand what trust and control must look like in an autonomous future.