Photo

An Intro to Kubernetes Hardening

Ayesha Kaleem

from MBition GmbH (Germany)

About speaker

Site Reliability Engineer

I am a Site Reliability Engineer (SRE) and Kubernetes enthusiast with extensive experience in ensuring complex systems' reliability, scalability, and performance.

About speakers company

.

Abstracts

broad

As Kubernetes becomes the backbone of modern infrastructure, ensuring its security is more critical than ever. In this talk, we will explore the fundamentals of Kubernetes hardening, focusing on best practices to secure your clusters, mitigate vulnerabilities, and protect your applications. From network policies and RBAC (Role-Based Access Control) to securing the control plane and implementing runtime security, this introduction will equip you with the essential tools and techniques to enhance the security posture of your Kubernetes environment. Whether you're new to Kubernetes or looking to strengthen your existing clusters, this session will provide practical insights to build a more robust and secure system.


I will explore the 2022 Kubernetes Hardening Guide published by the NSA and CISA and talk about Kubernetes security from the perspective of the attacker.

The Program Committee has not yet taken a decision on this talk

other talks of this topic

Photo
Empowering Developers: Building an Application Catalogue with Crossplane

Aarno Aukia

VSHN - The DevOps Company

specific
Photo
Knowledge Discovery Efficiency: The FeedHenry Case Study

Benjamin Igna

Stellar Work GmbH

specific
Photo
Autonomous Agents and Their Role in Incident Management

Yoseph Reuveni

Not Affiliated

specific
Photo
Behind the curtain of PowerShell cmdlets

Sergey Chubarov

Independent consultant

specific
Photo
CNCF sandbox project k8up under the hood

Aarno Aukia

VSHN - The DevOps Company

specific
Photo
Guarding the ML Galaxy: Beyond Accuracy to Privacy and Security

Rishabh Misra

Attentive Mobile Inc

broad
Photo
Securing K8s: back and forth to RBAC Enforce

Roman Levkin

Exness

specific
Photo
Reduce Alert Fatigue with AIOps

Birol Yildiz

ilert GmbH

broad
Photo
Platform Engineering for a Greener Future

Pini Reznik

re:cinq

broad
Photo
DevOps for AI: running LLMs in production with Kubernetes and KubeFlow

Aarno Aukia

VSHN - The DevOps Company

specific
Photo
AI for Next-Gen Security: OpenAI and Copilot for Security Synergy

Sergey Chubarov

Independent consultant

specific
Photo
Actionable Observability

Lesley Cordero

The New York Times

broad
Photo
How to Measure PromQL/MetricsQL Expression Complexity

Roman Khavronenko

VictoriaMetrics

specific
Photo
How do we deliver Agile Service Management?

Cristan Massey

Pearson Education

specific
Photo
Pentesting Kubernetes Services in the Cloud

Sergey Chubarov

Independent consultant

specific
Photo
Delivering SaaS on-prem with Cloud-native tools

George Hantzaras

MongoDB

specific
Photo
K8s load testing at scale with k6-operator

Ant(on) Weiss

PerfectScale

specific
Photo
The Balancing Act of Reliability

Yusuf Aytas

Workday

broad
Photo
DevOps done right: RBAC

Daniel Drack

FullStackS GmbH

specific
Photo
CRaCing Java Snapshots

Pasha Finkelshteyn

BellSoft

specific