Speaker

Marcus Ross

Marcus Ross

Hamburg Port Authority - CCoE Lead

Hamburg, Germany

Actions

The Hamburg Port Authority (HPA) has been operating future-oriented port management from a single source since 2005 and is active wherever efficiency, safety, and cost-effectiveness are required in the Port of Hamburg. Marcus works there as the CCoE Lead and a team responsible for operating dozens of Kubernetes clusters running several production workloads in hybrid environments. We apply principles like GitOps to orchestrate everything smoothly. Our own developments — such as the Kubernetes Service Catalog, Templater, or tools like the Pod-Restarter — can be found on GitHub: https://github.com/Hamburg-Port-Authority.

Area of Expertise

  • Business & Management
  • Information & Communications Technology
  • Law & Regulation

Topics

  • Kubernetes Security
  • Cloud Native & Kubernetes
  • Kubernetes
  • AWS DevOps
  • AWS Architect
  • ITIL
  • Prince2 Agile
  • Cloud
  • Cloud Architecture
  • Cloud Security
  • Cloud Technology
  • Cloud Containers and Infrastructure
  • Cloud strategy
  • Platform Engineering

When IT Grundschutz/ISO27001 meets Kubernetes in real life - call CNCF Landscape for the help

How can requirements from the German BSI IT baseline protection catalog (IT Grundschutz/ISO27001) be implemented in production Kubernetes environments? Using the example of the Hamburg Port Authority (HPA), we show four real implementations of the following IT-Grundschutz building blocks:
- APP.4.4.A2 Planning automation with CI/CD
- APP.4.4.A7 Separation of networks with Kubernetes
- APP.4.4.A13 Automated Configuration Auditing
- APP.4.4.A21 Regular restart of pods
The presentation combines best practices with real challenges of the platform team and provides impulses for secure Kubernetes setups in accordance with IT-Grundschutz/ISO27001. We show how to implement solutions (hands-on-demos in a kubernetes-cluster) with the help of OpenSource-Projects from the CNCF-Landscape to cover the compliance.

IT Grundschutz/ISO27001 + k8s + real life = <3 ???

How can requirements from the BSI IT baseline protection catalog and the ISO27001 be implemented in Kubernetes environments? Using the example of the Hamburg Port Authority (HPA), we will show how real implementations of the IT-Grundschutz building blocks can look in the APP.4.4 Kubernetes area.
The presentation combines best practices with real challenges of the platform team at the HPA and provides impulses for secure Kubernetes setups in line with IT-Grundschutz/ISO27001.

GitOpsCon North America Virtual Sessionize Event Upcoming

December 2025

ContainerDays Conference 2025 Sessionize Event

September 2025 Hamburg, Germany

Cloud Native Summit 2025 Sessionize Event

July 2025 Munich, Germany

Marcus Ross

Hamburg Port Authority - CCoE Lead

Hamburg, Germany

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top