This presentation was recorded at GOTO Copenhagen 2021. #GOTOcon #GOTOcph http://gotocph.com Frederik Mogensen - Software Engineer at a Startup ABSTRACT Handling health care info for patients requires a high level of security and confidentiality. Running a Cloud Native platform opens a lot of possibilities, but also a lot of dangerous pitfalls. In this talk we will explore different problem areas, and some of the best practices for handling these. We will look at Open Source tools for automatic detection, enforcing security policies and security reporting for auditing. We will also talk about the easy options, the full package, and the managed package [...] TIMECODES 00:00 Intro 00:25 Cloud native definition 01:01 Common Danish telemedicine platform 03:18 The 4 C's of cloud native security 06:21 Demo: cloud provider security 10:25 Kubernetes infrastructure 11:35 Demo: k8s infrastructure 14:43 Cluster 17:30 Demo: cluster 21:18 Runtime cluster security 25:11 Intruder detection 25:33 Demo: intruder detection 30:56 Container security 33:24 Code 34:19 Demo: attack 40:32 Summary 43:05 Outro Download slides and read the full abstract here: https://gotocph.com/2021/sessions/1960/securing-danish-healthcare-using-cloud-native RECOMMENDED BOOKS Thomas Vitale • Cloud Native Spring in Action • https://amzn.to/3355Zy0 Brendan Burns, Joe Beda & Kelsey Hightower • Kubernetes: Up and Running • http://amzn.to/31OAhB9 Burns, Villalba, Strebel & Evenson • Kubernetes Best Practices • https://amzn.to/3gBXRsr Sam Newman • Monolith to Microservices • https://amzn.to/2Nml96E Sam Newman • Building Microservices • https://amzn.to/3dMPbOs Ronnie Mitra & Irakli Nadareishvili • Microservices: Up and Running• https://amzn.to/3c4HmmL Mitra, Nadareishvili, McLarty & Amundsen • Microservice Architecture • https://amzn.to/3fVNAb0 Chris Richardson • Microservices Patterns • https://amzn.to/2SOnQ7h Adam Bellemare • Building Event-Driven Microservices • https://amzn.to/3yoa7TZ Dave Farley • Continuous Delivery Pipelines • https://amzn.to/3hjiE51 https://twitter.com/GOTOcon https://www.linkedin.com/company/goto- https://www.facebook.com/GOTOConferences #CloudNative #Cloud #Terraform #TFsec #Kubernetes #k8s #Cluster #Polaris #Kubeaudit #Istio #Jaeger #Kiali #HashicorpVault #Falco #OWASP #Trivy #Harbor #SonarQube #DevOps #Security #Testing #APIs #APIGateway #Observability #Testing #Docker #DigitalTransformation Looking for a unique learning experience? Attend the next GOTO conference near you! Get your ticket at https://gotopia.tech SUBSCRIBE TO OUR CHANNEL - new videos posted almost daily. https://www.youtube.com/user/GotoConferences/?sub_confirmation=1
Get notified about new features and conference additions.