Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Scaling Security when Deploying Globally

Scaling Security when Deploying Globally

In this presentation, I explain how to improve your security posture when deploying across the globe and highlight common pitfalls and share best practices.

This version of the talk was given at the 2023 Edition of Developer Week as part of the CloudConnect track.

Kerim Satirli
PRO

February 16, 2023
Tweet

More Decks by Kerim Satirli

Other Decks in Programming

Transcript

  1. Scaling Security When Deploying Globally

    View Slide

  2. Kerim Satirli (@ksatirli)
    Sr. Developer Advocate at HashiCorp

    View Slide

  3. "I don't believe that any system is totally secure"

    View Slide

  4. Security is a Team Sport.

    View Slide

  5. View Slide

  6. View Slide

  7. View Slide

  8. View Slide

  9. View Slide

  10. View Slide

  11. View Slide

  12. View Slide

  13. View Slide

  14. View Slide

  15. View Slide

  16. Your Secrets Won’t Be.

    View Slide

  17. View Slide

  18. View Slide

  19. View Slide

  20. View Slide

  21. View Slide

  22. View Slide

  23. View Slide

  24. View Slide

  25. View Slide

  26. View Slide

  27. View Slide

  28. View Slide

  29. View Slide

  30. View Slide

  31. View Slide

  32. View Slide

  33. View Slide

  34. View Slide

  35. View Slide

  36. View Slide

  37. View Slide

  38. View Slide

  39. View Slide

  40. View Slide

  41. Recap

    * Removed Super User Credentials
    * Generated Dynamic Credentials
    * Applied Constraints to Policies
    * Use OIDC for Application Auth
    * Implemented Fail-Secure Policies

    View Slide

  42. We shifted Security left.

    View Slide

  43. Security is a Team Sport.

    View Slide

  44. View Slide