Infrastructure-as-code Security: Why, What, and How

Published: 29 June 2020
on channel: DevSecCon
3,445
45

Planning, provisioning, and changing infrastructure are becoming vital to rapid cloud application development. Incorporating infrastructure-as-code into software development promotes transparency and helps prevent bad configurations upstream, but it also presents another layer of risk. In this talk, we'll cover some common IaC risks and best practices for securing infrastructure at scale using policy-as-code in both in build-time and run-time.

Barak Schoster

Barak Schoster is CTO and Co-founder at Bridgecrew, working from Israel Tel Aviv, Helping teams secure cloud infrastructure. Often contributing to open source projects including Checkov, Prowler, and others. He has previously worked for RSA focused on cybersecurity machine learning and big data architecture as well as at Fortscale and IDF tech unit. When not writing code or talking about it, Barak loves to spend time at the beach with his kids. [email protected]


Watch video Infrastructure-as-code Security: Why, What, and How online without registration, duration hours minute second in high quality. This video was added by user DevSecCon 29 June 2020, don't forget to share it with your friends and acquaintances, it has been viewed on our site 3,445 once and liked it 45 people.