Loading…
June 14-15, 2026
Mumbai, India
View More Details & Registration

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for MCP Dev Summit Mumbai to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration..

IMPORTANT NOTE: Timing of sessions and room locations are subject to change.


Venue: Lotus 3 clear filter
arrow_back View All Dates
Sunday, June 14
 

10:00am IST

Workshop: Building scalable, edge-native, production-grade MCP tools with RUST - Rajesh Sola, KPIT
Sunday June 14, 2026 10:00am - 11:00am IST
The emergence of the Model Context Protocol is transforming how AI agents interact with tools, data, and real-world systems. However, most early MCP implementations rely on high-level runtimes that are not well-suited for embedded and resource-constrained edge environments. This session explores how RUST enables a new class of high-performance, memory-safe MCP servers designed specifically for Embedded Linux–powered edge devices.

In this tutorial, I'll walk through building a lightweight MCP server, bridging physical data sources into LLM-readable formats, enabling intelligent agents to reason over live edge data using Rust.

- Why MCP for Edge AI Systems?
- Why RUST?
- Building simple server using rmcp and testing with a client
- Bridging physical word e.g. Sensors, Telemetry, File Systems and structuring LLM-readable context, data pipelines
- High-performance Edge MCP Runtime - Async & Concurrency Models for scalable communication (MQTT, HTTP, gRPC etc.)
- Observability, tracing & Debugging
- Bring MCP in Agent loop, Using Rig for orchestration
- Deploying to target board, cross compilation steps
- Case Study: Building an Edge MCP Agent, e.g. Telemetry and Diagnostics
Speakers
avatar for Rajesh Sola

Rajesh Sola

Education Architect, KPIT Technologies Ltd
Rajesh is working as a Deputy Director at GITAM University's Centre for Academic Innovation and Advancement (CAIA). He is currently responsible for orienting Faculty and providing technical solutions to meet the industry expectations.

He has 20 years of experience with core focus on Embedded Systems, Linux, IOT, Open-Source solutions. He is the guest author for Open Source for You Magazine and renown speaker for many embedded, open-source conferences. He loves teaching, Linux & open source... Read More →
Sunday June 14, 2026 10:00am - 11:00am IST
Lotus 3
  Building with MCP

11:40am IST

Workshop: Building Production-Ready MCP Servers: Lessons From an Open Source Template - Abhishek Kumar & Deepak Koul, Red Hat
Sunday June 14, 2026 11:40am - 12:40pm IST
**Space Limited - First Come, First Served.  Please bring a fully charged laptop to the workshop**

Most MCP tutorials stop at "hello world." This session goes further. We will walk through how we built a production-grade, open source MCP server template at Red Hat, covering FastMCP + FastAPI integration, multiple transport protocols (HTTP, SSE, streamable-HTTP), OAuth with PostgreSQL token storage, structured logging, and OpenShift deployment manifests. Attendees will leave with a clear mental model of what it actually takes to go from a local MCP prototype to something you can run in production on Kubernetes. We will also share the design decisions we made, the mistakes we avoided, and how developers can use this template as a starting point for their own MCP servers.
Speakers
avatar for Deepak Koul

Deepak Koul

Senior Engineering Manager, Red Hat

Likes to ideate, build and talk about AI
avatar for Abhishek Kumar

Abhishek Kumar

Architect, Red Hat
Architect & Technical Lead at Red Hat with 15+ years in backend, distributed systems, and cloud-native tech. Currently building Agentic AI solutions using MCP, AI agents, and intelligent data platforms. Works across Java, Python, AWS, Quarkus, and OpenShift. Passionate about open... Read More →
Sunday June 14, 2026 11:40am - 12:40pm IST
Lotus 3
  Building with MCP
  • Audience Experience Level Any

3:20pm IST

Who's Calling? Bringing Identity To the MCP Host - Ayesha Dissanayaka, WSO2
Sunday June 14, 2026 3:20pm - 3:45pm IST
The MCP authorization spec gives us a clean OAuth 2.1 story between clients and servers. What it leaves out of scope is the host itself, the AI agent orchestrating the conversation. That's where enterprise deployments quietly break.

An MCP host is not a passive pipe. It accepts requests from users, services, and peer agents, reasons with LLMs, and invokes tools across many servers. Every edge is an identity boundary. Without a first-class host identity, no stable credentials, no verifiable delegation, no independent audit trail, every downstream decision inherits that ambiguity. Who made this tool call? The user? The agent on their behalf? The agent autonomously? Most deployments cannot answer, so they cannot enforce least privilege or satisfy audit.

This talk treats the MCP host as a first-class identity through four disciplines: Administer (lifecycle, credentials), Authenticate (how a host proves itself), Authorize (delegation vs. impersonation, token exchange, actor claims), and Audit (trails that separate agent action from user intent). For each, we'll show what the spec covers, where the gap sits, and which extensions and emerging patterns are converging to close it.
Speakers
avatar for Ayesha Dissanayaka

Ayesha Dissanayaka

Associate Director / Architect, WSO2
Ayesha is Lead Architect for Identity and Access Management for Agentic AI at WSO2, specializing in securing autonomous AI systems. With over a decade in enterprise IAM, she architects identity solutions for AI agents, bridging traditional frameworks with emerging AI security needs... Read More →
Sunday June 14, 2026 3:20pm - 3:45pm IST
Lotus 3
  Security, Identity + Trust

3:45pm IST

Building an Enterprise MCP Registry: Secure Discovery, Governance, and Reuse at Scale - Kushagra Mittal, Motorola Solutions & Dhruv Agarwal, Motorrola Solutions
Sunday June 14, 2026 3:45pm - 4:10pm IST
As enterprises scale AI operations to support hundreds of agents and thousands of users, they inevitably hit an architectural wall. The friction points fall into three categories: visibility, control, and reuse. Teams struggle to discover existing agents and MCP servers across a large organization, platform teams need to govern publication and enforce security, and siloed groups waste time rebuilding capabilities that already exist. Without a centralized registry, agent sprawl grows, compliance risk increases, and critical knowledge stays trapped in local teams. In this session, we will share how the Motorola Solutions Platform Engineering team addressed this bottleneck by building a shared discovery and governance layer for internal AI resources. We will unpack the patterns behind our internal MCP catalog, including agent and prompt versioning, team-based visibility controls, approval workflows, and automated security scanning before resources are broadly shared. We focus on what broke early, and what won trust first. Attendees will leave with a practical, vendor-agnostic blueprint for making MCP resources easier to discover, safer to publish, and more reusable at enterprise scale
Speakers
avatar for Kushagra Mittal

Kushagra Mittal

Software Engineer, Motorola Solutions
Passionate software engineer based in Bangalore, India. Currently a part of team where we lead the effort in AI R&D for the organization.
avatar for Dhruv Agarwal

Dhruv Agarwal

Software Engineer, Motorrola Solutions
Innovative Software Engineer at Motorola Solutions R&D, focused on the future of AI and digital authenticity. Expertly navigating the frontier of MCP, A2A, and C2PA to deliver secure, scalable, and durable software at industry-leading speeds. REVA University Alumnus (9.03 CGPA) with... Read More →
Sunday June 14, 2026 3:45pm - 4:10pm IST
Lotus 3

4:10pm IST

Operationalizing MCP: Security, Control Planes, and Risk Governance - Sagar Dashora, JPMorgan Chase & Co
Sunday June 14, 2026 4:10pm - 4:35pm IST
As the Model Context Protocol (MCP) emerges as a standard interface for connecting models, agents, and tools, organizations are exploring MCP servers while also evaluating the operational and security implications of adopting them at scale. This session proposes the solutions and guardrails to address the common security issues such as lethal trifecta, tool poisoning and access misuse.

The talk will outline how MCP registry, control planes, secure gateways and trust boundaries a work together to enable risk governance, security, and operational reliability across agent and MCP ecosystems.

While examples may reference specific approaches, the session remains implementation-neutral and focuses on how these controls collectively establish a safe and scalable MCP environment. Attendees will gain a holistic understanding of how layered controls can address the security concerns and operational risks associated with MCP servers, helping organizations move toward trusted, scalable MCP ecosystems.
Speakers
avatar for Sagar Dashora

Sagar Dashora

Senior Vice President, JPMorgan Chase & Co
Technology lead with 17yrs experience in large enterprise-grade software applications, specializing in financial services domain. Design architect and lead for developing firmwide MCP and Agentic frameworks in JPMorgan Chase. Active contributor to the Agentic AI Foundation(AAIF) working... Read More →
Sunday June 14, 2026 4:10pm - 4:35pm IST
Lotus 3
  Security, Identity + Trust

5:15pm IST

Closing the AuthZ Gap in MCP: Policy-Driven Tool Invocation Control - Oshi Gupta, Infracloud Technologies - An Improving Company & Sonali Srivastava, Improving
Sunday June 14, 2026 5:15pm - 5:40pm IST
MCP tools give AI agents direct access to external services - production databases, internal APIs, third-party platforms. But most teams deploying MCP today have no answer to a simple question: who authorized that tool call?

MCP has made remarkable strides in standardizing agent-to-tool connectivity - but AuthN and AuthZ at the tool invocation layer remain an open problem. Tool calls are dynamic and runtime-driven; static Kubernetes RBAC has no vocabulary for per-tool, per-agent, or per-parameter enforcement. There is no native spec primitive to say "only this agent can call this tool."

In multi-tenant environments this gets worse - one misconfigured agent can invoke tools across tenant boundaries and nobody finds out until the damage is done. Teams filling this gap today are relying on custom middleware, app-level checks, or nothing at all.

This talk explores where MCP's authorization model falls short and how policy-as-code closes the gap - with Kyverno as one strong implementation path. The session walks through real ClusterPolicy configurations, multi-tenant isolation patterns, and hard-won lessons from tuning enforcement without breaking production agents.
Speakers
avatar for Oshi Gupta

Oshi Gupta

Site Reliability Engineer, Infracloud Technologies - An Improving Company
Oshi Gupta works as a Site Reliability Engineer at Improving Pune (Infracloud). She is KCNA , KCSA , CKAD , CKA & AWS Solutions Architect-Associate certified and LFX mentee for CNCF Kyverno.
avatar for Sonali Srivastava

Sonali Srivastava

Senior Developer Advocate, Improving
Sonali Srivastava is a Senior Developer Advocate at Improving, Co-chair KubeCon India 2026, and Co-organizer CNCF Women in Cloud Native. With experience across system administration, open source contribution and developer advocacy, she focuses on bridging gap between developers and... Read More →
Sunday June 14, 2026 5:15pm - 5:40pm IST
Lotus 3
  Security, Identity + Trust
  • Audience Experience Level Any

5:40pm IST

Orchestrating Agent Swarms With MCP, Sandboxing and Shared Filesystems - Vikram Vaswani, Developer Advocate
Sunday June 14, 2026 5:40pm - 6:05pm IST
Single agents calling MCP tools is a solved problem. Multi-agent swarms, where several agents coordinate on the same task, isn't.

The moment you go from one agent to three, you hit a set of problems that MCP itself doesn't solve and that most orchestration frameworks only paper over: how do agents share state without drowning each other in JSON, how do you isolate their execution when they're all touching the same files, and how does one agent pick up where another left off?

This talk walks through those three problems using a concrete example: a code review swarm. Three specialized reviewer agents (style, security, test coverage) work on the same PR in parallel. A fourth, a developer agent, reads their findings and applies the fixes. Each agent runs in its own isolated sandbox. They collaborate through a shared filesystem rather than by passing context in prompts.

This is a technical deep dive covering:
- why traditional file storage mechanisms are not optimized for agentic workloads
- why shared workspaces are better than passing state through prompts or RAG lookups
- why isolation boundaries are important when agents execute code

Includes live demo of swarm.
Speakers
avatar for Vikram Vaswani

Vikram Vaswani

Developer Advocate, Self Employed - Consultant
Vikram Vaswani is a developer advocate, open source consultant, and technical author with 20+ years of experience helping teams adopt and scale open source technologies. He is the author of seven books published by McGraw-Hill and Pearson, with translations in multiple languages... Read More →
Sunday June 14, 2026 5:40pm - 6:05pm IST
Lotus 3

6:05pm IST

Zero-Trust Execution: Sandboxing MCP Data Agents With WebAssembly - Shuva Jyoti Kar, Palo Alto Networks
Sunday June 14, 2026 6:05pm - 6:30pm IST
The Model Context Protocol (MCP) standardizes context retrieval and tool execution, but granting LLMs access to dynamic execution environments introduces critical runtime vulnerabilities. Traditional containerization (e.g., Docker/containerd) introduces unacceptable latency overhead for sub-second agentic loops, while static IAM/RBAC models fundamentally fail to constrain non-deterministic generated code.

This technical session details the architectural implementation of embedding a WebAssembly (WASM) runtime within an MCP server to enforce a strict, capability-based execution boundary. We will deconstruct how to compile MCP tools to WASM modules and utilize the WebAssembly System Interface (WASI) to ensure that any logic invoked by an LLM is isolated from the host operating system.
Speakers
avatar for SHUVA JYOTI KAR

SHUVA JYOTI KAR

Senior Principal Engineer, Palo Alto Networks
Shuva is a Senior Principal Engineer at Palo Alto Networks architecting secure enterprise AI platforms. He is authoring two upcoming books: Engineering the Data Agent Control Plane (O'Reilly) and Agent Skills in Action (Manning). An open-source contributor and former OpenDaylight... Read More →
Sunday June 14, 2026 6:05pm - 6:30pm IST
Lotus 3
  Security, Identity + Trust
 
  • Filter By Date
  • Filter By Venue
  • Filter By Type
  • Audience Experience Level
  • Timezone

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -