Session
Your CI/CD Pipeline Is Over-Privileged: Identity Risks in Modern Cloud Platforms
Modern cloud environments depend heavily on CI/CD pipelines to deploy infrastructure, applications, and updates quickly. Over time, these pipelines often end up with far more access than they actually need, along with long-lived credentials and permissions spread across multiple cloud services.
In this talk, we look at how CI/CD systems can quietly become one of the biggest identity risks in cloud environments. Using practical examples, we go through common issues like static secrets in pipelines, overly permissive service accounts, and automation workflows with unrestricted access.
We also explore ways to reduce this risk using approaches such as short-lived credentials, identity federation, workload identity, and least-privilege access.
The goal is to show why deployment pipelines should be treated as highly privileged identities, not just automation tools, and how teams can secure them without slowing down development.
Mohamed Ali Mellah
Cloud-Native & Kubernetes Engineer
Munich, Germany
Links
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top