Security Beyond Buzzwords: How to Secure Kubernetes with Empathy?
Your developers are excited about containerizing their apps for elastic scaling. Your operations team is busy drooling over resource optimizations and cost savings that are predicted with a move away …
Talk Title | Security Beyond Buzzwords: How to Secure Kubernetes with Empathy? |
Speakers | Pushkar Joglekar (Security Engineer, Visa) |
Conference | KubeCon + CloudNativeCon North America |
Conf Tag | |
Location | San Diego, CA, USA |
Date | Nov 15-21, 2019 |
URL | Talk Page |
Slides | Talk Slides |
Video | |
Your developers are excited about containerizing their apps for elastic scaling. Your operations team is busy drooling over resource optimizations and cost savings that are predicted with a move away from giant VMs to tiny containers. The security person assigned to review this is, utterly clueless when words like multi-tenancy, service meshes, CRI, CNI and kubectl are thrown around.In this presentation, Pushkar Joglekar will share his real world experience of being that security person four years ago, to becoming the “go-to” security person for his Ops & Dev teams today. By using a simple formula of risk = likelihood * severity, we will prove that not all vulnerabilities are created equal and how “secure by design” Kubernetes deployments, can reduce the likelihood and surface area of a possible attack exploiting any vulnerabilities.