Securing DevOps CI/CD Pipelines in the Cloud

By Jesus ESCOLAR

Elevator Pitch

In this talk we discuss all the evolution of the DevOps ecosystem from the very bottom (developers) through the development tools, the usage of CI/CD tools and how it impacted the output, the final result. It’s a talk about “The Great Lie” on the DevOps ecosystem and how to fix it.

Description

Through DevSecOps and SecDevOps we have become acquittanced with a new paradigm: Newer Threats on CI/CD environments. We think, we develop, we build, but do we secure? What’s the integration framework between CI/CD and Containers/Microservices? What are the existing threats we are facing today? How do you understand them? How do you mitigate them?

Notes

This is an advanced presentation for the DevOps teams where it would be very nice that the audience understood the CI/CD process.