IAM Confused: Getting work done and keeping SecOps happy - Nic Vermande, Otterize
About this talk
This talk explores the challenges faced by developers as they navigate AWS IAM policies and Kubernetes network policies during deployment. The speaker illustrates the experience of Otis, the first otter developer, who encounters obstacles from the security and compliance team trying to enforce strict access controls. As Otis adapts to these challenges, he learns to implement Kubernetes principles in a declarative manner, providing insights into best practices in cloud security and compliance within a DevOps framework. This session addresses key topics such as microservices architecture, container security, and the importance of balancing development speed with security measures.
More from this event
See all 9 talks →
Let's talk how fast a multi-layered Attack in the Cloud can look like - Stefan Trimborn, Sysdig
25:06
Solving ‘secret zero’, why you should care about SPIFFE! - Matt Barker & Mattias Gees, Venafi
33:23
This is a complete Disaster(-recovery) – Protecting Kubernetes from Fail - Benjamin Ritter
27:56
Adventures in the Kernel: Using eBPF and Tetragon for runtime visibility - Jeremy Colvin, Isovalent
29:46