Nicholaos Mouzourakis, Staff Product Security Engineer at Gusto, shares practical advice for Kubernetes administrators implementing
Open Policy Agent (OPA). He recommends starting with
Rego fundamentals using resources like
Styra Academy and the
Rego Playground for testing policies with real-time feedback.
He emphasizes:
- Getting
team buy-in by explaining security benefits, especially for those who will read or write policies
- Using
observability tools to determine scale and latency requirements
- Choosing appropriate
deployment patterns (sidecar, daemon set, or standalone deployment)
- Deciding between baking configurations into Docker images, using
config maps, or pulling policies from services like S3 or Styra DAS
Watch the full episode:
https://kube.fmhttps://
ku.bz/S-2vQ_j-4