Session

Secret Zero: The DevSecOps Trap No One Talks About

Everyone talks about secrets management, but there's a critical paradox we rarely discuss: how do you securely bootstrap your first secret? This lightning talk dives into the "Secret Zero" problem - the challenge of securely managing the initial secret needed to access your secrets management system. We'll explore why this fundamental challenge becomes a critical issue in cloud-native environments, common pitfalls teams fall into, and practical patterns for addressing it.

Key Points (60 seconds each):
1. The paradox: Why Secret Zero is a circular problem
2. Common anti-patterns that create vulnerabilities
3. Real-world examples of Secret Zero breaches
4. Architectural patterns that work
5. Immediate actions for your current system

Chaitanya Rahalkar

Software Security Engineer at Block Inc. (f.k.a. Square Inc.)

Austin, Texas, United States

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top