Marcus Ross
Hamburg Port Authority - CCoE Lead
Hamburg, Germany
Actions
The Hamburg Port Authority (HPA) has been operating future-oriented port management from a single source since 2005 and is active wherever efficiency, safety, and cost-effectiveness are required in the Port of Hamburg. Marcus works there as the CCoE Lead and a team responsible for operating dozens of Kubernetes clusters running several production workloads in hybrid environments. We apply principles like GitOps to orchestrate everything smoothly. Our own developments — such as the Kubernetes Service Catalog, Templater, or tools like the Pod-Restarter — can be found on GitHub: https://github.com/Hamburg-Port-Authority.
Area of Expertise
Topics
When IT Grundschutz/ISO27001 meets Kubernetes in real life - call CNCF Landscape for the help
How can requirements from the German BSI IT baseline protection catalog (IT Grundschutz/ISO27001) be implemented in production Kubernetes environments? Using the example of the Hamburg Port Authority (HPA), we show four real implementations of the following IT-Grundschutz building blocks:
- APP.4.4.A2 Planning automation with CI/CD
- APP.4.4.A7 Separation of networks with Kubernetes
- APP.4.4.A13 Automated Configuration Auditing
- APP.4.4.A21 Regular restart of pods
The presentation combines best practices with real challenges of the platform team and provides impulses for secure Kubernetes setups in accordance with IT-Grundschutz/ISO27001. We show how to implement solutions (hands-on-demos in a kubernetes-cluster) with the help of OpenSource-Projects from the CNCF-Landscape to cover the compliance.
IT Grundschutz/ISO27001 + k8s + real life = <3 ???
How can requirements from the BSI IT baseline protection catalog and the ISO27001 be implemented in Kubernetes environments? Using the example of the Hamburg Port Authority (HPA), we will show how real implementations of the IT-Grundschutz building blocks can look in the APP.4.4 Kubernetes area.
The presentation combines best practices with real challenges of the platform team at the HPA and provides impulses for secure Kubernetes setups in line with IT-Grundschutz/ISO27001.
GitOpsCon North America Virtual Sessionize Event Upcoming
ContainerDays Conference 2025 Sessionize Event
Cloud Native Summit 2025 Sessionize Event
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top