BSidesSF 2018 has ended
Monday, April 16 • 11:40am - 12:10pm
Managing secrets in your cloud environment: AWS, GCP, and containers (and beyond)

Sign up or log in to save this to your schedule and see who's attending!

Feedback form is now closed.
Applications often require access to sensitive data at build or run time, known as secrets. As a cloud application developer, you have many options to store these secrets, such as in code, environment variables, or purpose built solutions. We’ll discuss what a secret is, how secrets are stored today and some common mistakes in secret management, identity as it relates to accessing secrets, criteria to evaluate a secret management solution, and common solutions for containers in AWS, GCP, and Azure, and lastly, unsolved security risks.

Users should walk away from the talk as experts on secrets management in the cloud. How to improve their secret management practices, and understand their current security and usability tradeoffs.

avatar for Evan Johnson

Evan Johnson

Senior Security Engineer, Cloudflare
Evan Johnson is a member of the Product Security team at Cloudflare. He loves diet pepsi, chicken nuggets, and golang. No relation to the prolific Linkedin content producer, Mike Johnson.
avatar for Maya Kaczorowski

Maya Kaczorowski

Product Manager, Google
Maya is a Product Manager in Security & Privacy at Google, focused on container security, specifically container runtime security. She's published several blog posts on container security, and has talked on many security topics, including supply chain security, runtime security, secret... Read More →

Monday April 16, 2018 11:40am - 12:10pm
AMC - Theatre 7