Intent-Aware Decentralized Identity and Zero-Trust Framework for Agentic AI Workloads
Abstract
Background: The rapid emergence of agentic artificial intelligence (AI) systems—autonomous software agents that perform tasks across distributed environments—poses novel identity, authentication, and access-control challenges that traditional human-centric identity systems were not designed to handle. Centralized identity models, weak provenance guarantees, and static access decisions create exploitable gaps when agents act autonomously and at scale. The literature indicates converging proposals: decentralized identifiers (DIDs), SPIFFE/SPIRE workload identity, intent-aware identity models, and zero-trust principles adapted for machine agents. However, an integrative, publication-ready architecture that unifies these elements into a rigorously specified, implementable framework that addresses agent intent, risk-driven policy, provenance, and lifecycle security is still absent. (W3C, 2023; Hasan, 2024; Achanta, 2025; CNCF, 2024).
Objective: To design, justify, and evaluate a comprehensive, publication-quality framework—Intent-Aware Decentralized Identity and Zero-Trust Framework (IADIZ)—that combines DIDs, workload identity primitives, intent modeling, and risk-driven policy enforcement to secure agentic AI workloads across heterogeneous infrastructures. The framework must be theoretically grounded, map to existing standards and best practices, and provide operational guidance for threat modeling, lifecycle management, and auditing.
Methods: IADIZ is constructed through an interdisciplinary synthesis of the referenced works and established security principles. The methodology uses conceptual design, threat modeling aligned with OWASP’s AI and multi-agent guides, mapping to SPIFFE workload identity primitives and DID specifications, and articulates policy evaluation pipelines that incorporate intent signals and risk scores. The framework’s properties are analyzed in depth with scenario-driven descriptive evaluations: identity issuance and binding, agent onboarding, delegation, proof-of-intent, policy arbitration, provenance telemetry, and compromise recovery. Each component is examined for security properties, failure modes, and countermeasures, with practical implementation notes referencing recent research and operational advisories. (Kumar, 2023; OWASP, 2024; Syros et al., 2025).
Results: The framework yields a layered architecture where cryptographically anchored DIDs provide long-lived decentralized identity; SPIFFE-like workload identity provides ephemeral workload credentials; intent attestation tokens represent current goals and permitted action classes; a risk engine ingests provenance telemetry, behavioral signals, and contextual data to produce dynamic policy decisions; and immutable audit trails enable post-hoc analysis. The descriptive evaluation demonstrates increased resilience against common attack vectors such as identity spoofing, credential theft, lateral movement, supply-chain compromise, and intent-manipulation attacks when compared conceptually to non-intent-aware or centralized identity models (Hasan, 2024; Achanta, 2025; Syros et al., 2025; Huang et al., 2025).
Conclusions: IADIZ offers an actionable design for institutions deploying agentic AI. By integrating decentralized identifiers, workload identity, intent attestation, and dynamic zero-trust control, the architecture addresses gaps in provenance, policy expressiveness, and adaptivity to agent behavior. The paper presents detailed operational recommendations, threat mitigations, and an agenda for empirical validation. The framework aligns with governmental and industry guidance on cybersecurity and zero-trust and is suitable for adoption within critical sectors where autonomous agents exert significant control. (W3C, 2023; White House, 2021; NIST, 2024; HIMSS, 2023).
Keywords
References
Most read articles by the same author(s)
- Dr. Nguyen Minh Tuan, Ms. Tran Thi Linh, Hybrid Intelligent Model for Mental Health-Oriented Sentiment Mining Across Reddit and Twitter Using Machine Learning and Pretrained Deep Learning Architectures , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 08 (2026): Volume 03 Issue 08
- Oliver P. Harrington, Reconceptualizing Enterprise Application Frameworks: ASP.NET Core and the Structural Foundations of Cross-Platform Development , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 12 (2025): Volume 02 Issue 12
- Felicia S. Lee, A COMPARATIVE ANALYSIS OF SERVICE MESH PROXY ARCHITECTURES: FROM SIDECARS TO AMBIENT AND PROXYLESS MODELS IN CLOUD-NATIVE ENVIRONMENTS , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 10 (2025): Volume 02 Issue 10
- Nabiyev Elyor Safarovich, Bobonazarov Iskandar Istamovich, Increasing The Stability Of Industrial Infrastrukture In High Seismic Areas , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 02 (2026): Volume 03 Issue 02
- Dr. Rohan Mehta, A Comprehensive Review of Responsible Artificial Intelligence: Ethics, Fairness, and Explainability , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 07 (2026): Volume 03 Issue 07
- Dr Chintal Kumar Patel, A Comprehensive Review of User Authentication and Authorization Techniques in Cloud Computing , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 08 (2026): Volume 03 Issue 08
- Sruthi Baddam , Improving Accessibility of Government Services Through API-Driven Digital Platforms: A Cloud-Native Approach , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 08 (2026): Volume 03 Issue 08
- Dr. Alistair Sterling, Architectural Evolution and Decomposition Strategies: A Comprehensive Analysis of Microservice Migration, Performance Optimization, And Machine Learning-Assisted Service Boundary Detection , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 12 (2025): Volume 02 Issue 12
- Aarav Mehta, Priya Sharma, Adaptive Identity Security Framework for Agentic AI Systems: Architecture, Implementation, and Performance Evaluation , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 09 (2026): Volume 03 Issue 09
- Prof. Elena Rostova, Dr. Kenji Tanaka, Enhancing Stability in Distributed Signed Networks via Local Node Compensation , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 09 (2025): Volume 02 Issue 09
Similar Articles
- Dr. Rohan Verma, Dr. Sneha Kulkarni, Machine-Learning Architectures enabling Human Trait Verification Alternatives within Risk-Coverage Ecosystems: Resilient Identity Validation, Policy Adherence , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 02 (2026): Volume 03 Issue 02
- Aarav Mehta, Priya Sharma, Adaptive Identity Security Framework for Agentic AI Systems: Architecture, Implementation, and Performance Evaluation , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 09 (2026): Volume 03 Issue 09
- Faisal Al-Harbi, Reem Al-Qahtani, AI-Driven Governance and Risk Management of Non-Human Identities in Cloud IAM Environments , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 09 (2026): Volume 03 Issue 09
- Dr. Joshua Muller, Zero-Trust Transformation in Healthcare IT: Securing Legacy Medical Devices Through Windows 11 Modernization in Clinical Workstations , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 01 (2026): Volume 03 Issue 01
- Dr. Julian C. Vance, Prof. Anya Sharma, Synergistic Integration of AI and Blockchain: A Framework for Decentralized and Trustworthy Systems , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 08 (2025): Volume 02 Issue 08
- Prof. Elena Rostova, Dr. Kenji Tanaka, Enhancing Stability in Distributed Signed Networks via Local Node Compensation , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 09 (2025): Volume 02 Issue 09
- Dr. Mateo Alvarez, SaaS-Driven Digital Transformation and Customer Retention in Hospitality Ecosystems: A Multitheoretical and Socio-Technical Reinterpretation of Service Value Creation , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 12 (2025): Volume 02 Issue 12
- Anastasiia Livintseva, Re-coding Community: Designing AI-Native Platforms for Trust, Belonging, and Collective Agency , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 12 (2025): Volume 02 Issue 12
- Priya Kapoor, A Comprehensive Analytical Framework for Zero Trust Architecture: Evolutionary Paradigms, Socio-Technical Adoption, and Integrative Security in Heterogeneous Network Environments , International Journal of Modern Computer Science and IT Innovations: Vol. 2 No. 09 (2025): Volume 02 Issue 09
- Kolchin Rustam, Application of Artificial Intelligence in Digital Risk Protection and External Threat Intelligence , International Journal of Modern Computer Science and IT Innovations: Vol. 3 No. 05 (2026): Volume 03 Issue 05
You may also start an advanced similarity search for this article.