The Devops Debacle: How & Why AWS Misconfigurations Occur presented at BSidesRDU 2019

by Ochaun Marshall,

Summary : Lately, many organizations have been embracing Devops, a set of cultural philosophies, practices, and tools that increase an organization's ability to deliver applications and services quickly. It is this rapid development that has also led to a rat’s nest of misconfigurations that lead to massive data leaks.This talk is addressed to developers, Devops engineers and the security professionals who work with them. It lays down some strategies on how to continue using Devops practices while incorporating security. The speaker will go over tools, techniques, cultural adjustments and development strategies for building better IAM roles and policies that can prevent unnecessary exposure on AWS. The author argues for a need to clean the cloud and begin integrating security standards with Devops. without sane guidelines on development and infrastructure management, misconfigurations and data leaks will continue to occur.