<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Saas-Security on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/saas-security/</link><description>Recent content in Saas-Security on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Tue, 02 Jun 2026 16:00:11 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/saas-security/index.xml" rel="self" type="application/rss+xml"/><item><title>Secure Multi-Tenant AI Agents on AWS Bedrock AgentCore</title><link>https://zxcloudsecurity.co.uk/posts/aws-bedrock-agentcore-multi-tenant-ai-resource-based-policies/</link><pubDate>Tue, 02 Jun 2026 16:00:11 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/aws-bedrock-agentcore-multi-tenant-ai-resource-based-policies/</guid><description>Learn how AWS Bedrock AgentCore resource-based policies enforce tenant isolation, cross-account access controls, and VPC-only traffic for SaaS AI workloads</description><content:encoded><![CDATA[<p>🟡 <strong>Medium</strong>  |  <strong>Source:</strong> <a href="https://aws.amazon.com/blogs/security/secure-multi-tenant-ai-agents-with-amazon-bedrock-agentcore-resource-based-policies/">AWS Security Blog</a></p>
<hr>
<p>AWS has published guidance on securing multi-tenant AI agent deployments using Amazon Bedrock AgentCore resource-based policies. SaaS providers can use these controls to isolate tenants, enforce VPC-only traffic for regulated workloads, and manage cross-account access — all from a shared infrastructure. This matters because poorly isolated multi-tenant AI systems can expose one customer&rsquo;s data or capabilities to another.</p>
<blockquote>
<p><strong>Architect&rsquo;s Take:</strong> If you are building or reviewing a multi-tenant SaaS platform on Bedrock AgentCore, implement resource-based policies now to enforce tenant isolation boundaries — pay particular attention to cross-account trust conditions and VPC endpoint restrictions to meet regulatory obligations such as UK GDPR and financial sector requirements.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://aws.amazon.com/blogs/security/secure-multi-tenant-ai-agents-with-amazon-bedrock-agentcore-resource-based-policies/">Secure multi-tenant AI agents with Amazon Bedrock AgentCore resource-based policies</a></p>
]]></content:encoded></item></channel></rss>