Basil Policy-as-code Platform
(ISC)² East Bay Chapter Fall Conference, November 8, 2019
Basil Policy-as-code Platform Ron Herardian (ISC) East Bay Chapter - - PowerPoint PPT Presentation
Basil Policy-as-code Platform Ron Herardian (ISC) East Bay Chapter Fall Conference, November 8, 2019 Organic Press Coverage 9 Is every business a software business? Cloud Cloud Native Internet Cloud Cloud Native (Next) 3
(ISC)² East Bay Chapter Fall Conference, November 8, 2019
9
3
Cloud Cloud Native Internet (Next…)
4
5
6
7
8
9
10
Machine-to-machine: Application stack or CI/CD Human-to-machine: Systems and environments
11
12
Before After Procedures / workflows Can’t be enforced Automatically enforced Accountability No guarantee Guaranteed Configurations Can be inconsistent Consistent Secrets Accessible, not secure Secure Run code without review Anyone can run code Review enforced Malicious acts Anyone can do damage Attacks prevented
13
9
15
16
9
Ron Herardian, ron@basilsecurity.com, +1 408 766 4487 mobile
13