Listing Thumbnail

    Agentic AI Governance for Amazon Bedrock AgentCore with Dynatrace

     Info
    Combines Dynatrace technical observability with ServiceNow lifecycle controls to govern AI agents, models, tools and integrations built on Amazon Bedrock and Amazon Bedrock AgentCore. It gives organizations a traceable inventory of agents, models and tools together with evidence of tokens, cost, latency, errors and dependencies. Governance, access control and risk handling for critical agents become formal, documented and auditable.

    Overview

    AI agents create a combined need to understand technical behavior and govern lifecycle, risk and access to tools. This offer uses Dynatrace traces, AI Observability, OpenTelemetry GenAI, SLOs and alerts to observe agents, tools, RAG and LLM dependencies, and ServiceNow AI Control Tower for inventory and governance, AI Gateway/MCP when agents use tools, AI Agent Studio and Now Assist according to scope, and IRM/GRC, ITSM and Change for risk and approval. Amazon Bedrock AgentCore is the AWS runtime and control layer for the agents being governed. AgentCore Runtime hosts agent execution with session isolation; AgentCore Gateway connects agents to Model Context Protocol servers and turns APIs or AWS Lambda functions into agent-accessible tools, with AWS IAM authorization alongside OAuth; AgentCore Identity provides identity-aware authorization for agents acting on behalf of a user or on their own; AgentCore Memory holds agent state; and AgentCore Observability emits metrics, spans and logs in OpenTelemetry-compatible format to Amazon CloudWatch and to external observability providers. Amazon Bedrock Guardrails acts as the policy enforcement point for content and topic restrictions, and AWS CloudTrail records the API activity used as audit evidence. Dynatrace AI Observability assembles the end-to-end trace covering the user prompt, agent reasoning steps, tool calls, model invocations, token counts, latency and errors, and evaluates SLOs for critical agents. The agent, model and tool inventory is derived from AgentCore resources and their AWS tags and reconciled against ServiceNow AI Control Tower, or against CMDB CIs in the alternative path, with divergences becoming ServiceNow tasks. Reliability and policy deviations open ITSM records, and risk items are raised in IRM/GRC with Change approval for critical agents. Supporting AWS services include AWS IAM and AWS IAM Identity Center for agent and human identity, AWS Secrets Manager for tool credentials, AWS KMS for encryption, Amazon OpenSearch Serverless for RAG knowledge bases and Amazon S3 for source documents and evidence retention.

    Highlights

    • Amazon Bedrock AgentCore Observability emits OpenTelemetry-compatible metrics, spans and logs consumed by Dynatrace AI Observability, producing an end-to-end trace from user prompt through agent reasoning, tool calls and model invocations with token counts, latency and errors.
    • AgentCore Gateway routes Model Context Protocol tool calls with AWS IAM and OAuth authorization and AgentCore Identity context, providing an AWS-native governed path for agent tool access instead of direct, unmonitored tool invocation.
    • Amazon Bedrock Guardrails evaluations and AWS CloudTrail records become governance evidence attached to ServiceNow IRM/GRC and Change records, with the agent, model and tool inventory held in AI Control Tower or, in the alternative path, in the CMDB.

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    At Extreme Group, we are committed to providing exceptional support to our clients at every stage of their project. Our dedicated team of experts is available to answer any questions, provide guidance, and offer ongoing support during and after delivery. We value long-term relationships with our clients and are ready to assist them in resolving any challenges or issues that may arise. comercial@extremegroup.com.br 

    Software associated with this service