Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Paving Safer Roads

Avatar for Kerim Satirli Kerim Satirli PRO
November 26, 2025
1

Paving Safer Roads

In this presentation, I dive into a 90-day plan for embracing platform engineering paradigms.

This version of the talk was given at Cloud Crafters .5 in November 2025.

Avatar for Kerim Satirli

Kerim Satirli PRO

November 26, 2025
Tweet

Transcript

  1. Kerim Satirli Sr. Developer Advocate at IBM and Author of

    O'Reilly's Terraform Cookbook @ksatirli
  2. Developers Security Observability Resources Integration and Delivery Compute Monitoring and

    Logging Observability FinOps Incident Management IDEs Agents and LLMs Internal Developer Portals Version Control CI Continuous Delivery Infra Control Planes Cluster Management Data Networking Services Messaging Code Analysis Secrets Management Identity Management Policy Controls Security Suites Network Security Orchestration
  3. Developers Security Observability Resources Integration and Delivery Compute Monitoring and

    Logging Observability FinOps Incident Management IDEs Agents and LLMs Internal Developer Portals Version Control CI Continuous Delivery Infra Control Planes Cluster Management Data Networking Services Messaging Code Analysis Secrets Management Identity Management Policy Controls Security Suites Network Security Orchestration
  4. Developer Experience • codify org settings and permissions • unify

    developer experience across org • manage basic repository files Weeks 1  3 • codify repo settings and permissions • unify and manage pipeline definitions • manage consistent agent instructions
  5. Developers Security Observability Resources Integration and Delivery Compute Monitoring and

    Logging Observability FinOps Incident Management IDEs Agents and LLMs Internal Developer Portals Version Control CI Continuous Delivery Infra Control Planes Cluster Management Data Networking Services Messaging Code Analysis Secrets Management Identity Management Policy Controls Security Suites Network Security Orchestration
  6. Security Enhancements Weeks 4  5 • codify and centrally

    manage IAM • enhanced logging for forensics • IAM discovery and mapping • "common failures" mapping
  7. Developers Security Observability Resources Integration and Delivery Compute Monitoring and

    Logging Observability FinOps Incident Management Internal Developer Portals Version Control CI Continuous Delivery Infra Control Planes Cluster Management Data Networking Services Messaging Code Analysis Secrets Management Identity Management Policy Controls Security Suites Network Security Orchestration IDEs Agents and LLMs
  8. Secrets Management Weeks 6  9 • secrets discovery and

    mapping • migrate static secrets into manager
  9. Takeways • one size won't fit all, build escape hatches

    • standardization means loss of control • small steps lead to bigger outcomes • security isn't slow, it is important • no one likes change (or extra work) • don't do this alone