Cloud Native
Security Talks
RSS

KubeCon North America 2025

🎤 Who Wants To Secure Clusters ?

Henrik Rexed & Simon Reisinger, Dynatrace

Abstract

Securing a k8s cluster isn’t just a task—it’s a team sport. From writing secure code to locking down containers, networks, and runtime environments, security spans every layer of the cloud-native stack. But let’s face it: it can be overwhelming.So, what if learning about k8s security was as thrilling as a game show?Join us for an interactive, high-energy session inspired by Who Wants to Be a Millionaire?—where the audience becomes the contestant, and the grand prize is… a fully secured cluster!In Who Wants to Secure Your Cluster?, we’ll explore:🔐 Best practices across the k8s security lifecycle🛠️ Hands-on comparisons of popular open source CNCF security tools🎯 Actionable recommendations from real-world experienceThis session blends education, entertainment, and expertise. Whether you’re a developer, DevOps engineer, or security lead, you’ll walk away with practical insights, and maybe even bragging rights as the one who secured it all.Are you ready to play?

More from KubeCon North America 2025

Open in the index →
  1. The Good, the Bad, and the Ugly: Hacking 3 Cloud Native AI Services With 1 VulnerabilityHillai Ben-Sasson & Nir Ohfeld, Wiz 2025-11-11
  2. Modern PostgreSQL Authorization With Keycloak: Cloud Native Identity Meets Database SecurityYoshiyuki Tabata, Hitachi, Ltd. & Gabriele Bartolini, EDB 2025-11-11
  3. It’s 2025; Why Are You OK With an Insecure Network? 🤯Alex Leong, Buoyant 2025-11-11
  4. In AI We Trust? Securing the Future, One Agent at a TimeLin Sun & Yuval Kohavi, Solo.io; Hannah Foxwell, Mindgard.ai; Andrew Martin, ControlPlane; Ricardo Aravena, CNCF 2025-11-11
  5. Hybrid-Confidential-Cloud: Democratize Secure AI With GPUs and Confidential ContainersZvonko Kaiser, NVIDIA 2025-11-11
  6. From Bespoke To Bulletproof: SPIFFE/SPIRE With ESO for Enterprise Zero TrustMay Large & Ivy Alkhaz, State Farm 2025-11-11
  7. End-to-End Security With gRPC in KubernetesShiva & Abhishek Agrawal, Google 2025-11-11
  8. Demonstration of Automatic Kubernetes Network Policies GenerationBoaz Michaely, Red Hat & Adi Sosnovich, IBM Research 2025-11-11
  9. Security Theater or Real Defense? Navigating Open Source Security in a Cloud Native WorldRotem Refael, ARMO; Constanze Roedig, Technical University of Vienna; Megan Wolf, Defense Unicorns; Stefana Muller, Salesforce; Oshrat Nir, Independent 2025-11-12
  10. Securing AI Agent Infrastructure: AuthN/AuthZ Patterns for MCP and A2AYoshiyuki Tabata, Hitachi, Ltd. 2025-11-12
  11. Safely Sourcing OSS - Beyond 0 CVEsJohn Kjell, ControlPlane 2025-11-12
  12. Red Vs. Blue: A Live Attacker-Defender Showdown in Kubernetes SecurityLucy Sweet, Uber & Sandeep Kanabar, Gen 2025-11-12
  13. Quantum-Resistant Kubernetes: Realities, Risks & (Versioning) PitfallsFabian Kammel, ControlPlane 2025-11-12
  14. Patch Me If You Can: Tackling Outdated Addons Before They Become a RiskStevie Caldwell & Andy Suderman, Fairwinds 2025-11-12
  15. You Deployed What?! Data-Driven Lessons on Unsafe Helm Chart DefaultsYossi Weizman, Microsoft 2025-11-13
  16. Tools and Strategies for Making the Most of Kubernetes Access ControlLucas KäldstrÜm, Upbound & Micah Hausler, AWS 2025-11-13
  17. The Ultimate Container Challenge: An Interactive Trivia Game on Supply Chain SecurityAurĂŠlie Vache, OVHcloud & Sherine Khoury, Red Hat 2025-11-13
  18. Securing Data Applications at Pinterest With Finer Grained Access Control on KubernetesSoam Acharya & William Tom, Pinterest 2025-11-13
  19. Authenticating and Authorizing Every Connection at UberYangmin Zhu & Matt Mathew, Uber 2025-11-13
  20. Aligning Enterprise AI Security With MITRE ATLAS Using Open Source TechnologiesDoron Caspin & Valentina Rodriguez Sosa, Red Hat 2025-11-13