Shatadru Bandyopadhyay

Shatadru Bandyopadhyay

Senior Software Development Engineer at Workday

Dublin, Ireland

Actions

Shatadru Bandyopadhyay is a Senior Software Development Engineer at Workday, where he works on the private cloud platform team responsible for designing and operating one of the largest OpenStack deployments in production. His current focus is building Workday's next-generation Kubernetes platform.

With 12 years of experience across Linux systems, OpenStack, and cloud-native infrastructure, he began his career at Red Hat as a kernel and storage support engineer before moving into OpenStack enterprise support, specialising in NFV and SDN for telco customers. He then joined Workday where he has worked across SRE and platform engineering roles. He holds the Red Hat Certified Architect credential and CKA, and has spoken at OpenInfra Summit Paris, OpenInfra Days Indianapolis, and DevConf on topics ranging from building Kubernetes distributions to OpenStack observability and anomaly detection.

He is currently pursuing an Executive MBA at Technological University Dublin.

Area of Expertise

  • Business & Management
  • Information & Communications Technology

Topics

  • Kubernetes
  • Cloud Native & Kubernetes
  • openstack
  • OpenInfra
  • Linux
  • FedoraLinux
  • Kubernetes Deployments

Lessons from scaling and extending Zuul-Operator

The Workday Private Cloud team has been migrating from our legacy Zuul CI deployment to a Kubernetes operator managed service for the last year. Our need to run in a nearly air-gapped environment has not changed, but we have built a significantly newer platform to host our internal services.

We will explain how we scaled both down (to run on a single laptop) and up (to host multiple tenants). Included in this is how we refreshed our CI for zuul-operator to use Kind, and how we separated out the dependencies into separate helm charts.

The speed to build, test and roll out new updates to Zuul has enabled us to significantly decrease the time and effort to update our other dependencies.

Large-scale Kolla-Ansible automation with AWX

We've been using Kolla-Ansible in the Workday Private Cloud for more than 5 years. We have been building and operating our clusters in a nearly air-gapped environment. Until recently, we have been using an internal automation tool to operate more than 200 OpenStack clusters.

This year, we started evaluating the changes required to switch to Ansible AWX to operate the clusters. This allowed us a rare moment to re-evaluate our orchestration architecture from first principles.

Whether you operate one cluster, or 200 clusters with Kolla-Ansible, this talk will be of interest to you. We will cover how we test our tools in CI, how our CD rollout works and how we handle all those pesky low chance failures that become important at scale.

Policy as Code at Workday: Testing and enforcing policies in Workday’s kubernetes distro

At Workday, we are building our next-generation platform on Kubernetes on OpenStack to host Workday microservices. Running a shared Kubernetes distribution means you own the governance layer. We built this layer using Kyverno and discovered that enforcement is harder than writing the policies.

This talk covers our journey: from evaluating options to designing a policy framework to enforcement. We will walk through the entire process, the challenges we faced, and how we balanced friction against enforcement.

We will show how policy guardrails create real friction between platform and product teams; tightening controls improves security, isolation but slows down teams including platform team(thats us); operators managed workloads often need different rules than stateless apps. We will share how we navigated this tension, when to hold the line, when to make exceptions, and how we separated exceptions from habits teams did not want to break.

Shatadru Bandyopadhyay

Senior Software Development Engineer at Workday

Dublin, Ireland

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top