Strengthening CNCF Projects: Impact of Security... Eddie K, Bradley A, Justin C, Shuting Z & Orlin V
About this talk
This panel discusses the impact of security self-assessments on CNCF projects, featuring insights from Eddie Knight of Sonatype, Bradley Andersen from k8gb, Justin Cappos of New York University, Shuting Zhao of Nirmata, and Orlin Vasilev from SUSE. The speakers, who are TAG Security and Compliance Technical Leads, share experiences about how the self-assessment process transformed their security posture by identifying blind spots and implementing best practices. Attendees will learn about the significance of self-assessments for CNCF projects, the challenges and successes faced by participants, actionable security improvements, and strategies for effective security documentation and threat modeling. This session provides valuable guidance for maintainers looking to enhance their project’s security practices.
More from this event
See all 436 talks →
Best of KubeCon + CloudNativeCon Amsterdam 2026
2:17
The Quiet Work of Forever: Sustaining Open Source Communities - O. Hope Amaechi-Okorie, JSON Schema
26:24
Evolving KServe: The Unified Model Inference Platform for Both Predictive and... F. Spolti & J. Lee
32:40
Preventing S3 Cost Storms: Applying Cortex’s Efficiency Lessons to I/O-Heav... A. Fishman-Lichterman
5:32