← All sessions
Talk · 25 min

Building Authorization for Agentic RAG Systems

🕑

Time and room for this session are published in October. when the timetable goes live.

We’ve recently seen the rise of Retrieval Augmented Generation (RAG) systems. With the proliferation of AI Agents & LLMs in Enterprise, the next step in the evolution is Agentic RAG. But for widespread adoption of Agentic RAG systems in enterprise there’s one piece of the puzzle that needs to be solved and that’s fine-grained authorization.

This talk is a deep dive into how modern authorization systems can ensure that AI Agents have access only to authorized data. The talk will look at why the Google Zanzibar model of authorization which uses Relationship-Based Access Control (ReBAC) is well suited to handle dynamic, relationship-driven authorization at scale. The talk explains how the Google Zanzibar system works under the hood, and how to apply it to Agentic RAG with techniques such as pre-filteration and post-filteration. As a bonus also learn about how OpenAI achieves authorization at scale with ChatGPT Apps.

The talk will also include a live coding demo implementing authorization for Agentic RAG using Open Source tools such as Weaviate, Langchain, and SpiceDB.

Main tools & technology
LangChain
Topics
RAG & Knowledge RetrievalAI SecurityEnterprise AI Adoption & Governance
Sponsors & Partners
Main Sponsor
copebit — Main Sponsor
Gold
AWS
Silver & Featured Partners
Atlassian Flagsmith namespace re:cinq OpenAI — Workshop Partner Migros Online — End User Partner FHNW Hochschule für Informatik — Educational Partner
Bronze & Partners
BI Concepts Noser Engineering Puzzle ITC Team Extension Your Sidekicks AG AI & ML Events CH Open dev.events Java User Group Switzerland Rocket Engineers SwissDevJobs ZurichJS Conference