
Tuesday Feb 24, 2026
How to Secure AI Agents with MCP, OPA & Ephemeral Runners
**Your AI agents have root access to your infrastructure right now - and you don't even know it.**
What happens when we give AI agents the keys to our entire platform? In today's Platform Engineering Playbook, we dive deep into the hidden security risks of AI infrastructure automation and explore practical solutions for implementing least-privilege access controls.
**What You'll Learn:**
• How to secure AI agents with least-privilege gateway patterns using MCP and OPA
• Databricks' new Lakebase PostgreSQL database designed specifically for AI workloads
• Uber's Uforwarder: A scalable Kafka consumer proxy revolutionizing event-driven microservices
• Why Kubernetes 1.35 signals the future of AI orchestration
• Latest AWS updates including Claude Sonnet 4.6 in Bedrock and new agent plugins
**Timestamps:**
0:00 - Cold Open: The AI Security Wake-Up Call
2:15 - Platform Engineering News Roundup
8:30 - Deep Dive: Securing AI Infrastructure Access
15:45 - Real-World Implementation Strategies
Perfect for platform engineers, DevOps professionals, and infrastructure teams navigating the intersection of AI and cloud-native technologies. Get actionable insights to secure your AI-driven infrastructure before it's too late.
**Sources & References:**
- Building a Least-Privilege AI Agent Gateway: https://www.infoq.com/articles/building-ai-agent-gateway-mcp/
- Databricks Lakebase PostgreSQL: https://www.infoq.com/news/2026/02/databricks-lakebase-postgresql/
- KubeCon SecurityCon Deep Dive: https://www.cncf.io/blog/2026/02/23/kubecon-cloudnativecon-europe-2026-co-located-event-deep-dive-open-source-securitycon/
- Uber's Uforwarder: https://www.infoq.com/news/2026/02/uber-uforwarder-kafka-push-proxy/
- AWS Weekly Roundup: https://aws.amazon.com/blogs/aws/aws-weekly-roundup-claude-sonnet-4-6-in-amazon-bedrock-kiro-in-govcloud-regions-new-agent-plugins-and-more-february-23-2026/
- Kubernetes 1.35 AI Signals: https://www.cncf.io/blog/2026/02/23/kubernetes-as-ais-operating-system-1-35-release-signals/
#PlatformEngineering #DevOps #CloudNative #Kubernetes
No comments yet. Be the first to say something!