Главная
Study mode:
on
1
Intro
2
OWASP secure coding practices
3
What about infrastructure as code?
4
How do you write secure infrastructure as code?
5
Capture secure knowledge as tests
6
Demo
7
What commits to catch?
8
System configuration
9
Demo
10
There's more!
11
Demo
12
What's important?
13
Conclusion
14
Outro
Description:
Explore secure infrastructure as code practices in this 45-minute conference talk from GOTO Chicago 2023. Learn how to implement policy as code for provisioning and configuring secure infrastructure. Dive into patterns, examples, and limitations of testing infrastructure security before deployment. Follow along with demos on static and dynamic analysis, catching commits, and system configuration. Gain insights on OWASP secure coding practices applied to infrastructure as code, and discover essential techniques for writing and testing secure infrastructure. Perfect for infra engineers and cloud explorers looking to enhance their security knowledge in the realm of infrastructure as code.

Catching Commits to Secure Infrastructure as Code

GOTO Conferences
Add to list