Cloud Native AI Summit
All speakers
Vincent Caldeira
Christopher Nuland

Speakers

Vincent Caldeira & Christopher Nuland

Red Hat

Talk

About

Vincent Caldeira

APAC CTO · Red Hat

Vincent Caldeira, Red Hat APAC CTO and Industry Visiting Scholar at Columbia University, drives tech strategy and emerging engineering. A Top 10 APAC CTO (2023) with 20+ years in finance IT, he is an authority on open source, cloud-native technologies and AI. Vincent holds leadership roles across the Linux Foundation (FINOS, LF AI & Data) and GSF, championing AI safety, sustainability, and digital sovereignty.

Christopher Nuland

AI Community Advocate · Red Hat

Christopher Nuland currently serves as a Chief AI Architect at Red Hat. His background includes spearheading machine learning and big data analytics initiatives across different industries and verticals. During his tenure in Red Hat Consulting, he specialized in cloud-native migrations, AI adoption, and metrics-driven transformations. He has been a keynote speaker and spoken at conferences worldwide, including KubeCon US/EU, and PyTorch Con. Currently involved within the PyTorch community.

Session

Cloud-Native Defense-in-Depth for Agentic AI: From AI Gateway to Kernel Space

Talk

The transition to production-grade agentic AI introduces critical security and governance challenges due to agent autonomy. This session details a multi-tier, cloud-native architecture combining the Kubernetes AI Gateway and OpenShell to establish defense-in-depth for autonomous AI workflows. At the network and payload layer, the Kubernetes AI Gateway handles protocol translation (MCP/A2A), token rate-limiting, and payload inspection. At the execution layer, OpenShell provides kernel-level container sandboxing via eBPF, seccomp, and Landlock, paired with in-process OPA policy enforcement to prevent unauthorized syscalls and data access. Building on CNCF cloud-native agentic standards and a 6-layer defense in depth framework for AI agents, we demonstrate how leveraging Kubernetes RBAC, SPIFFE workload identities, and isolated agent execution planes provides a scalable, enterprise-grade control plane for agentic AI.

Speaking at