TGViewer
Kubesploit Kubesploit @kubesploit · 2.13K subscribers
Post #1824 372

Forwarded from KubeFM

Nicholaos Mouzourakis, Staff Product Security Engineer at Gusto, shares practical advice for Kubernetes administrators implementing Open Policy Agent (OPA). He recommends starting with Rego fundamentals using resources like Styra Academy and the Rego Playground for testing policies with real-time feedback.

He emphasizes:

- Getting team buy-in by explaining security benefits, especially for those who will read or write policies
- Using observability tools to determine scale and latency requirements
- Choosing appropriate deployment patterns (sidecar, daemon set, or standalone deployment)
- Deciding between baking configurations into Docker images, using config maps, or pulling policies from services like S3 or Styra DAS

Watch the full episode: https://kube.fmhttps://ku.bz/S-2vQ_j-4
More from @kubesploit
  1. Sep 23, 2026This article asks what a container can block on its own when a dependency turns malicious,…
  2. Sep 23, 2026This week on Learn Kubernetes Weekly 202: 🔥 We Replaced etcd with Google Cloud Spanner 😌…
  3. Sep 22, 2026This article explains what an attacker can really do with leaked Kubernetes credentials, f…
  4. Sep 22, 2026"When an agent goes loose, you might find yourself: your S3 bucket has been deleted by mis…
  5. Sep 21, 2026This article walks through making a container image safe before it ever reaches the cloud,…
  6. Sep 21, 2026We just published Kubernetes Architecture in Financial Services, a free technical book abo…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →