SlideShare uma empresa Scribd logo
1 de 25
Baixar para ler offline
Confidential │ ©2019VMware,Inc.
Governance for
Your Modern
Application Platform
Visibility, Trust, and Control
Chuck D’Antonio
Andrea Samuel
November 2020
Confidential │ ©2019VMware,Inc.
Agenda
2
Characteristics of Modern Application Development
Initialsteps and common challenges
Succeeding with Modernization
Evolving your applicationsand platform
Visibility
Understandingyour modern applicationenvironment
Trust
Increasing independencewithout increasing risk
Control
Maintainingstabilityas velocity increases
Confidential │ ©2019VMware,Inc. 3
The Goal of All Software Development
Ship code faster
at lower costs
with no outages,
ever
Idea
Code
Build & Test
Deliver
Accept
Learn
Observe
Maintain
Deploy
Confidential │ ©2019VMware,Inc. 4
Need more resources
Need to move faster
Need more control over their environments
Need to maintainstability
Need to control resources
Need to limit blast radius
Developers Operators
Conflicting Needs and Incentives
VELOCITY STABILITY
5Confidential │ ©2019VMware,Inc.
“Agile, as it’s currently being implemented
in most companies, has become a ‘dumb’
process. It doesn’t have a brain. The
feedback loops originally intended to
inform next steps have instead become
checkpointsto ensure we’ve completed
what we agreed to 2 weeks earlier.”
Jeff Gothelf, Agile Doesn’t Have a Brain
Confidential │ ©2019VMware,Inc. 6
Five Ss of Software Development
Speed
Go from idea to
values as quickly as
possible
Stability
Minimize downtime
and optimize MTTR
Scalability
Dynamically respond
to demand without
incident
Security
Limit exposure react
quickly to
vulnerabilities
Savings
Reduce cost while
improving outcomes
Confidential │ ©2019VMware,Inc. 7
The Scariest Time in Software Development
Idea LearnCode Build & Test Deliver Accept ObserveMaintainDeploy
Risk
The time between idea and feedback is the scariest time in software development…
…and yet we often make speed subordinateto the other 4 Ss
Confidential │ ©2019VMware,Inc. 8
Our experience
Platform Focus
on Developer
Experience is the
BiggestDriver of
Success
An opinionated platform
helps teams gain speed
without losing out on the
other 4 Ss
Our heritage was a single
platform with a strongset of
opinions
The answer isn’t necessarily
those opinions, it’s having
the right opinions for you
Opinions where it matters,
options where it doesn’t
Confidential │ ©2019VMware,Inc. 9
Deliver the velocity developers need, with the stability operators demand
Manage your modern application
environment with a consolidated
control plane and a single pane of
glass with full stack observability.
Increase independence through
automated pipelines and developer
self-provisioning without increasing
risk.
Maintain consistency, resiliency,
and security across clusters, teams,
and clouds with centralized access
control and automated policy
enforcement.
Supporting Modern Developers with a Modern Platform
Visibility Trust Control
10Confidential │ ©2019VMware,Inc.
Visibility
Understanding your modern application
environment
Confidential │ ©2020VMware,Inc. 11
Security
IAM $$
Security
IAM $$$
Security
IAM $$
Security
IAM $$$
Security
IAM $$$
Kubernetes Adoption Reality: Growing Fragmentation
Amazon Web
Services
VMware
vSphere
Microsoft
Azure
Google Cloud Platform Amazon Web
Services
Manualconfigurationand
management, siloed by
environment
Access, networking,
security policies applied
cluster-by-cluster
Lack of cost visibilityand
control
Confidential │ ©2019VMware,Inc. 11
Confidential │ ©2019VMware,Inc. 12
All Your Clusters in One Place
TanzuMissionControl
• Cluster Lifecycle Management
• K8s Cluster attachment
• Centralized policy management
• Cluster Inspection
• Data Protection
Integrations
• Observability& Diagnostics
• App & service management
• Connectivity& traffic
management
Confidential │ ©2020VMware,Inc. 13
End-to-End Observability
Metrics
Traces
Histograms
Span Logs
Full-Stack Collection Real-Time
Ingestion
Absolute Data
Resolution & RetentionIntelligent
Routing
4D Data
Processing
High Performance
Analytics, AI/ML Automated
Insights
Applications
Microservices
Serverless
AnyCloud
Containers
Infrastructure
loT
Alert
Visualize
Troubleshoot
Predict Automate
Wavefront Ingestion Wavefront Cloud Wavefront UX
Confidential │ ©2019VMware,Inc. 14
Trust
Increasing independence without increasing risk
Confidential │ ©2019VMware,Inc. 15
Questions that Reduce Trust in a System
Where did that image come from?
Who owns that app?
Are we running the latest…?
Did we run the security scans?
Who deployed that?
What’s in that container?
Is all the traffic encrypted?
Did you patch that CVE?
Is there a single point of failure?Was this tested?
Where did that image come from?
Who owns that app?
Are we running the latest…?
Did we run the security scans?
Who deployed that?
What’s in that container?
Is all the traffic encrypted?
Did you patch that CVE?
Is there a single point of failure?
Was this tested?
Where did that image come from?
Who owns that app?
Are we running the latest…?
Did we run the security scans?
Who deployed that?
What’s in that container?
Is all the traffic encrypted?
Did you patch that CVE?
Is there a single point of failure?
Was this tested?
Where did that image come from?
Who owns that app?
Are we running the latest…?
Did we run the security scans?
Who deployed that?
What’s in that container?
Is all the traffic encrypted?
Did you patch that CVE?
Is there a single point of failure?
Was this tested?
Did we run the security scans?
Is there a single point of failure?
Who owns that app?
Who deployed that?
Did you patch that CVE?
Did you patch that CVE?
Confidential │ ©2019VMware,Inc. 16
Compliant Kubernetes
objects
Scanned and signed
container images
Approved application
dependencies
Increasing Trust in Your Production Workloads
Consistent container
construction
Build Time Run Time
Confidential │ ©2019VMware,Inc. 17
Automation for a Trusted Supply Chain
Certify your CI/CD process and
require it for all production
deployments
Incorporatestatic and dynamic
security scans
Validatepoliciesfor Kubernetes
artifacts
Trigger on source code, buildpack,
and OS stack changes
Confidential │ ©2019VMware,Inc. 18
Sourcing Containers You Can Rely On
Tanzu BuildServices uses
buildpacksfor repeatable,
consistent containerbuilds for
multiplelanguages and
frameworks.
Tanzu ApplicationCatalog
combines validatedOpen Source
packages and hardenedbase
images for backings services you
can trust.
Harbor
Registry
Notary
Third party
NFVOServices
Kubernetes
Cluster
In-House
NFVOApplications
Tanzu Build Service
Tanzu Application
Catalog
19Confidential │ ©2019VMware,Inc.
Control
Maintaining stability as velocity increases
Confidential │ ©2020VMware,Inc. 20
Managing Access through Unified Identity and Access Policy
Cluster
Namespaces
Cluster
Namespaces
Cluster
Namespaces
ns
ns
ns
Import
Users /
Groups
Auth
Token
kubectl
WorkspacesCluster Groups
Tanzu Mission
Control
PolicyEngine
Developers
Identity
VMware CloudServices
Active Directory
1
Define
Access
Policies
2
PlatformOperation Teams define user access to multiple Clusters ONCEwith Cluster Groups and Role Mappings
Developers get self-serviceaccess to Clusters
Define
Access
Policies
Platform Operations/IT
Confidential │ ©2019VMware,Inc. 21
Assuring Workload Security and Compliance
Multiple layers of
controls provide
defense in depth
against untrusted and
vulnerable workloads:
Integrated images
scans prevent push
and/or pull
In-cluster
enforcement limits
source registries and
enforces other
constraints.
Internal
Harbor
Registry
Registry
Notary
Kubernetes
Cluster
Trustworthy
Image
Developers
Vulnerable Image
Developers
Tanzu Mission
Control
Image Policy
Custom Policy
Operators
Policy
Docker Hub
⚠️
Confidential │ ©2019VMware,Inc. 22
Namespaces
Cluster
Namespace
Namespace
Cluster
Namespace
Namespace
Robust Policy Environment
Cluster Groups
Cluster Groups
Cluster Groups
Tanzu Mission
Control
• ClusterGroups
• Clusters
• Workspaces
• Namespaces
PodSecurityPolicy=
Restrictive
Security
Policy
Role Binding=
namespace.admin
AllowedRegistries=
harbor.my.com/*
EgressPolicy=
deny-all
Access Policy
Registry Policy
Network Access
PolicyOperators
Harbor
Pull
Google Registry
Pull
Docker Hub
Pull Ingress Egress
Developers
Cluster
Namespace
Namespace
kubectl
Quota Policy
CustomPolicy
CPU and memorylimits
23Confidential │ ©2019VMware,Inc.
Demo
Confidential │ ©2019VMware,Inc.
Thank You
Chuck D’Antonio
Solution Engineer, TeamTanzu
Andrea Samuel
Solution Engineer, TeamTanzu
Confidential │ ©2019VMware,Inc. 25
VMware Tanzu Northeast Fall Webinar Series
October 21: Hardening the Container Application Lifecycle
Newer architectures and patterns have developed alongside the evolution of containers and Kubernetes. Your container
platform can help you avoid many of the challenges teams face when attempting to build, run, and manage these workloads.
Learn how to build and maintain operational consistency via centralized visibility and management across multiple clouds and
platforms, including edge applications.
November 4: Governance for Your Modern Application Platform
Containers give teams more flexibility to declare their dependencies and include them in a deployment. This flexibility can
improve their velocity and accelerate time, but also shifts control and accountability among teams, sometimes in ways that
are outside of your current governance controls. Learn how to maintain robust governance as roles and responsibilities shift
with containers and Kubernetes.
November 12: Delivering Off-The-Shelf Software with Kubernetes
All organizations mix software they build with software they “buy”. The notion of “buying” software has changed to include
not only traditional commercial software products but also mission critical open source and “as-a-service” packages. This
session addresses the new world of “off-the-shelf” and how it impacts your work provisioning, monitoring, and supporting
your overall software portfolio.
October-November 2020
Join the solutions engineers
fromyour local VMwareTanzu
team for a series of informal.
Each session focuses on
capabilities you’llneed to give
developers the velocity they
need while maintaining the
stability your business requires.
Sessions areled by two local
solution engineers who you’ll
havethe opportunity to meet
and work with them as part of
your journey VMwareTanzu.
Register: https://connect.tanzu.vmware.com/northeast-fall-webinar-series.html

Mais conteúdo relacionado

Mais procurados

VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020VMware Tanzu
 
From Pivotal to VMware Tanzu: What you need to know
From Pivotal to VMware Tanzu: What you need to knowFrom Pivotal to VMware Tanzu: What you need to know
From Pivotal to VMware Tanzu: What you need to knowVMware Tanzu
 
Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021VMware Tanzu
 
Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020
Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020
Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020VMware Tanzu
 
Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021
Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021
Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021VMware Tanzu
 
Unlock Sustainable Kubernetes Services for TAS
Unlock Sustainable Kubernetes Services for TASUnlock Sustainable Kubernetes Services for TAS
Unlock Sustainable Kubernetes Services for TASVMware Tanzu
 
July 30: How User-Centered Design Drives Impactful Products and Services
July 30: How User-Centered Design Drives Impactful Products and ServicesJuly 30: How User-Centered Design Drives Impactful Products and Services
July 30: How User-Centered Design Drives Impactful Products and ServicesVMware Tanzu
 
Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021VMware Tanzu
 
Building Kubernetes images at scale with Tanzu Build Service
Building Kubernetes images at scale with Tanzu Build ServiceBuilding Kubernetes images at scale with Tanzu Build Service
Building Kubernetes images at scale with Tanzu Build ServiceVMware Tanzu
 
Accelerate Application Migration - August 5, 2020
Accelerate Application Migration - August 5, 2020Accelerate Application Migration - August 5, 2020
Accelerate Application Migration - August 5, 2020VMware Tanzu
 
Azure Spring Cloud Workshop - June 17, 2020
Azure Spring Cloud Workshop - June 17, 2020Azure Spring Cloud Workshop - June 17, 2020
Azure Spring Cloud Workshop - June 17, 2020VMware Tanzu
 
Aaron Swain at VMware Tanzu Public Sector Connect 2021
Aaron Swain at VMware Tanzu Public Sector Connect 2021Aaron Swain at VMware Tanzu Public Sector Connect 2021
Aaron Swain at VMware Tanzu Public Sector Connect 2021VMware Tanzu
 
OPS Executive insights Webinar - Tanzu Slides
OPS Executive insights Webinar - Tanzu SlidesOPS Executive insights Webinar - Tanzu Slides
OPS Executive insights Webinar - Tanzu SlidesVMware Tanzu
 
Pivotal Platform: A First Look at the October Release
Pivotal Platform: A First Look at the October ReleasePivotal Platform: A First Look at the October Release
Pivotal Platform: A First Look at the October ReleaseVMware Tanzu
 
Pivotal Platform - December Release A First Look
Pivotal Platform - December Release A First LookPivotal Platform - December Release A First Look
Pivotal Platform - December Release A First LookVMware Tanzu
 
Enterprise Application Migration
Enterprise Application MigrationEnterprise Application Migration
Enterprise Application MigrationVMware Tanzu
 
Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019
Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019
Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019VMware Tanzu
 
Enterprise Java on Azure: From Java EE to Spring, we have you covered
Enterprise Java on Azure: From Java EE to Spring, we have you coveredEnterprise Java on Azure: From Java EE to Spring, we have you covered
Enterprise Java on Azure: From Java EE to Spring, we have you coveredEd Burns
 
VMware - Snapshot sessions - Deploy and manage tomorrow's applications today
VMware - Snapshot sessions  - Deploy and manage tomorrow's applications todayVMware - Snapshot sessions  - Deploy and manage tomorrow's applications today
VMware - Snapshot sessions - Deploy and manage tomorrow's applications todayAnnSteyaert_vmware
 
Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...
Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...
Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...confluent
 

Mais procurados (20)

VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020
 
From Pivotal to VMware Tanzu: What you need to know
From Pivotal to VMware Tanzu: What you need to knowFrom Pivotal to VMware Tanzu: What you need to know
From Pivotal to VMware Tanzu: What you need to know
 
Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- May 25, 2021
 
Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020
Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020
Delivering-Off-The-Shelf Software with Kubernetes- November 12, 2020
 
Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021
Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021
Robert Van Voorhees at VMware Tanzu Public Sector Connect 2021
 
Unlock Sustainable Kubernetes Services for TAS
Unlock Sustainable Kubernetes Services for TASUnlock Sustainable Kubernetes Services for TAS
Unlock Sustainable Kubernetes Services for TAS
 
July 30: How User-Centered Design Drives Impactful Products and Services
July 30: How User-Centered Design Drives Impactful Products and ServicesJuly 30: How User-Centered Design Drives Impactful Products and Services
July 30: How User-Centered Design Drives Impactful Products and Services
 
Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021
Achieving DevSecOps Outcomes with Tanzu Advanced- March 22, 2021
 
Building Kubernetes images at scale with Tanzu Build Service
Building Kubernetes images at scale with Tanzu Build ServiceBuilding Kubernetes images at scale with Tanzu Build Service
Building Kubernetes images at scale with Tanzu Build Service
 
Accelerate Application Migration - August 5, 2020
Accelerate Application Migration - August 5, 2020Accelerate Application Migration - August 5, 2020
Accelerate Application Migration - August 5, 2020
 
Azure Spring Cloud Workshop - June 17, 2020
Azure Spring Cloud Workshop - June 17, 2020Azure Spring Cloud Workshop - June 17, 2020
Azure Spring Cloud Workshop - June 17, 2020
 
Aaron Swain at VMware Tanzu Public Sector Connect 2021
Aaron Swain at VMware Tanzu Public Sector Connect 2021Aaron Swain at VMware Tanzu Public Sector Connect 2021
Aaron Swain at VMware Tanzu Public Sector Connect 2021
 
OPS Executive insights Webinar - Tanzu Slides
OPS Executive insights Webinar - Tanzu SlidesOPS Executive insights Webinar - Tanzu Slides
OPS Executive insights Webinar - Tanzu Slides
 
Pivotal Platform: A First Look at the October Release
Pivotal Platform: A First Look at the October ReleasePivotal Platform: A First Look at the October Release
Pivotal Platform: A First Look at the October Release
 
Pivotal Platform - December Release A First Look
Pivotal Platform - December Release A First LookPivotal Platform - December Release A First Look
Pivotal Platform - December Release A First Look
 
Enterprise Application Migration
Enterprise Application MigrationEnterprise Application Migration
Enterprise Application Migration
 
Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019
Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019
Pat Gelsinger, James Watters, Cornelia Davis at SpringOne Platform 2019
 
Enterprise Java on Azure: From Java EE to Spring, we have you covered
Enterprise Java on Azure: From Java EE to Spring, we have you coveredEnterprise Java on Azure: From Java EE to Spring, we have you covered
Enterprise Java on Azure: From Java EE to Spring, we have you covered
 
VMware - Snapshot sessions - Deploy and manage tomorrow's applications today
VMware - Snapshot sessions  - Deploy and manage tomorrow's applications todayVMware - Snapshot sessions  - Deploy and manage tomorrow's applications today
VMware - Snapshot sessions - Deploy and manage tomorrow's applications today
 
Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...
Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...
Deploying Kafka on vSphere with Kubernetes Using the Confluent Operator (Just...
 

Semelhante a Governance for Your Modern Application Platform

July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...
July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...
July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...VMware Tanzu
 
Security Across the Cloud Native Continuum with ESG and Palo Alto Networks
Security Across the Cloud Native Continuum with ESG and Palo Alto NetworksSecurity Across the Cloud Native Continuum with ESG and Palo Alto Networks
Security Across the Cloud Native Continuum with ESG and Palo Alto NetworksDevOps.com
 
VMware Tanzu Kubernetes Connect
VMware Tanzu Kubernetes ConnectVMware Tanzu Kubernetes Connect
VMware Tanzu Kubernetes ConnectVMware Tanzu
 
VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009
VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009
VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009Manuela Moroncini
 
AWS TechConnect 2018 - Container Adoption
AWS TechConnect 2018 - Container AdoptionAWS TechConnect 2018 - Container Adoption
AWS TechConnect 2018 - Container AdoptionAlex Rhea
 
Wavefront by vmware june 2019 - legraswindow
Wavefront by vmware   june 2019 - legraswindowWavefront by vmware   june 2019 - legraswindow
Wavefront by vmware june 2019 - legraswindowAnil Gupta (AJ) - vExpert
 
Achieving DevSecOps Outcomes with Tanzu Advanced - Spanish
Achieving DevSecOps Outcomes with Tanzu Advanced - SpanishAchieving DevSecOps Outcomes with Tanzu Advanced - Spanish
Achieving DevSecOps Outcomes with Tanzu Advanced - SpanishVMware Tanzu
 
Enterprise pks overview
Enterprise pks overview Enterprise pks overview
Enterprise pks overview Boskey Savla
 
Automate the Provisioning of Secure Developer Environments on AWS PPT
 Automate the Provisioning of Secure Developer Environments on AWS PPT Automate the Provisioning of Secure Developer Environments on AWS PPT
Automate the Provisioning of Secure Developer Environments on AWS PPTAmazon Web Services
 
SAP Concur’s Cloud Journey
SAP Concur’s Cloud JourneySAP Concur’s Cloud Journey
SAP Concur’s Cloud JourneySBWebinars
 
Container Security: What Enterprises Need to Know
Container Security: What Enterprises Need to KnowContainer Security: What Enterprises Need to Know
Container Security: What Enterprises Need to KnowDevOps.com
 
One And Done Multi-Cloud Load Balancing Done Right.pptx
One And Done Multi-Cloud Load Balancing Done Right.pptxOne And Done Multi-Cloud Load Balancing Done Right.pptx
One And Done Multi-Cloud Load Balancing Done Right.pptxAvi Networks
 
VAPT- A Service on Eucalyptus Cloud
VAPT- A Service on Eucalyptus CloudVAPT- A Service on Eucalyptus Cloud
VAPT- A Service on Eucalyptus CloudSwapna Shetye
 
tanzu_developer_connect.pptx
tanzu_developer_connect.pptxtanzu_developer_connect.pptx
tanzu_developer_connect.pptxVMware Tanzu
 
VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...
VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...
VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...VMworld
 
Using Cloud to Improve AppSec
Using Cloud to Improve AppSecUsing Cloud to Improve AppSec
Using Cloud to Improve AppSecPhillip Marlow
 
Docker container webinar final
Docker container webinar finalDocker container webinar final
Docker container webinar finalControlCase
 
Cw13 securing your journey to the cloud by rami naccache-trend micro
Cw13 securing your journey to the cloud by rami naccache-trend microCw13 securing your journey to the cloud by rami naccache-trend micro
Cw13 securing your journey to the cloud by rami naccache-trend microTheInevitableCloud
 
Kim van Wilgen - Continuous security - Codemotion Rome 2019
Kim van Wilgen - Continuous security - Codemotion Rome 2019Kim van Wilgen - Continuous security - Codemotion Rome 2019
Kim van Wilgen - Continuous security - Codemotion Rome 2019Codemotion
 

Semelhante a Governance for Your Modern Application Platform (20)

July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...
July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...
July 28: Tanzu Mission Control: Resolving Kubernetes fragmentation across Dev...
 
Security Across the Cloud Native Continuum with ESG and Palo Alto Networks
Security Across the Cloud Native Continuum with ESG and Palo Alto NetworksSecurity Across the Cloud Native Continuum with ESG and Palo Alto Networks
Security Across the Cloud Native Continuum with ESG and Palo Alto Networks
 
VMware Tanzu Kubernetes Connect
VMware Tanzu Kubernetes ConnectVMware Tanzu Kubernetes Connect
VMware Tanzu Kubernetes Connect
 
VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009
VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009
VMware - Dario Regazzoni, Cloud Computing, Milano 2 luglio 2009
 
AWS TechConnect 2018 - Container Adoption
AWS TechConnect 2018 - Container AdoptionAWS TechConnect 2018 - Container Adoption
AWS TechConnect 2018 - Container Adoption
 
Wavefront by vmware june 2019 - legraswindow
Wavefront by vmware   june 2019 - legraswindowWavefront by vmware   june 2019 - legraswindow
Wavefront by vmware june 2019 - legraswindow
 
Achieving DevSecOps Outcomes with Tanzu Advanced - Spanish
Achieving DevSecOps Outcomes with Tanzu Advanced - SpanishAchieving DevSecOps Outcomes with Tanzu Advanced - Spanish
Achieving DevSecOps Outcomes with Tanzu Advanced - Spanish
 
Enterprise pks overview
Enterprise pks overview Enterprise pks overview
Enterprise pks overview
 
Automate the Provisioning of Secure Developer Environments on AWS PPT
 Automate the Provisioning of Secure Developer Environments on AWS PPT Automate the Provisioning of Secure Developer Environments on AWS PPT
Automate the Provisioning of Secure Developer Environments on AWS PPT
 
SAP Concur’s Cloud Journey
SAP Concur’s Cloud JourneySAP Concur’s Cloud Journey
SAP Concur’s Cloud Journey
 
Container Security: What Enterprises Need to Know
Container Security: What Enterprises Need to KnowContainer Security: What Enterprises Need to Know
Container Security: What Enterprises Need to Know
 
One And Done Multi-Cloud Load Balancing Done Right.pptx
One And Done Multi-Cloud Load Balancing Done Right.pptxOne And Done Multi-Cloud Load Balancing Done Right.pptx
One And Done Multi-Cloud Load Balancing Done Right.pptx
 
VAPT- A Service on Eucalyptus Cloud
VAPT- A Service on Eucalyptus CloudVAPT- A Service on Eucalyptus Cloud
VAPT- A Service on Eucalyptus Cloud
 
tanzu_developer_connect.pptx
tanzu_developer_connect.pptxtanzu_developer_connect.pptx
tanzu_developer_connect.pptx
 
Rik Ferguson
Rik FergusonRik Ferguson
Rik Ferguson
 
VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...
VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...
VMworld 2013: Introducing NSX Service Composer: The New Consumption Model for...
 
Using Cloud to Improve AppSec
Using Cloud to Improve AppSecUsing Cloud to Improve AppSec
Using Cloud to Improve AppSec
 
Docker container webinar final
Docker container webinar finalDocker container webinar final
Docker container webinar final
 
Cw13 securing your journey to the cloud by rami naccache-trend micro
Cw13 securing your journey to the cloud by rami naccache-trend microCw13 securing your journey to the cloud by rami naccache-trend micro
Cw13 securing your journey to the cloud by rami naccache-trend micro
 
Kim van Wilgen - Continuous security - Codemotion Rome 2019
Kim van Wilgen - Continuous security - Codemotion Rome 2019Kim van Wilgen - Continuous security - Codemotion Rome 2019
Kim van Wilgen - Continuous security - Codemotion Rome 2019
 

Mais de VMware Tanzu

What AI Means For Your Product Strategy And What To Do About It
What AI Means For Your Product Strategy And What To Do About ItWhat AI Means For Your Product Strategy And What To Do About It
What AI Means For Your Product Strategy And What To Do About ItVMware Tanzu
 
Make the Right Thing the Obvious Thing at Cardinal Health 2023
Make the Right Thing the Obvious Thing at Cardinal Health 2023Make the Right Thing the Obvious Thing at Cardinal Health 2023
Make the Right Thing the Obvious Thing at Cardinal Health 2023VMware Tanzu
 
Enhancing DevEx and Simplifying Operations at Scale
Enhancing DevEx and Simplifying Operations at ScaleEnhancing DevEx and Simplifying Operations at Scale
Enhancing DevEx and Simplifying Operations at ScaleVMware Tanzu
 
Spring Update | July 2023
Spring Update | July 2023Spring Update | July 2023
Spring Update | July 2023VMware Tanzu
 
Platforms, Platform Engineering, & Platform as a Product
Platforms, Platform Engineering, & Platform as a ProductPlatforms, Platform Engineering, & Platform as a Product
Platforms, Platform Engineering, & Platform as a ProductVMware Tanzu
 
Building Cloud Ready Apps
Building Cloud Ready AppsBuilding Cloud Ready Apps
Building Cloud Ready AppsVMware Tanzu
 
Spring Boot 3 And Beyond
Spring Boot 3 And BeyondSpring Boot 3 And Beyond
Spring Boot 3 And BeyondVMware Tanzu
 
Spring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdf
Spring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdfSpring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdf
Spring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdfVMware Tanzu
 
Simplify and Scale Enterprise Apps in the Cloud | Boston 2023
Simplify and Scale Enterprise Apps in the Cloud | Boston 2023Simplify and Scale Enterprise Apps in the Cloud | Boston 2023
Simplify and Scale Enterprise Apps in the Cloud | Boston 2023VMware Tanzu
 
Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023
Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023
Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023VMware Tanzu
 
Tanzu Virtual Developer Connect Workshop - French
Tanzu Virtual Developer Connect Workshop - FrenchTanzu Virtual Developer Connect Workshop - French
Tanzu Virtual Developer Connect Workshop - FrenchVMware Tanzu
 
Tanzu Developer Connect Workshop - English
Tanzu Developer Connect Workshop - EnglishTanzu Developer Connect Workshop - English
Tanzu Developer Connect Workshop - EnglishVMware Tanzu
 
Virtual Developer Connect Workshop - English
Virtual Developer Connect Workshop - EnglishVirtual Developer Connect Workshop - English
Virtual Developer Connect Workshop - EnglishVMware Tanzu
 
Tanzu Developer Connect - French
Tanzu Developer Connect - FrenchTanzu Developer Connect - French
Tanzu Developer Connect - FrenchVMware Tanzu
 
Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023
Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023
Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023VMware Tanzu
 
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring Boot
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring BootSpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring Boot
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring BootVMware Tanzu
 
SpringOne Tour: The Influential Software Engineer
SpringOne Tour: The Influential Software EngineerSpringOne Tour: The Influential Software Engineer
SpringOne Tour: The Influential Software EngineerVMware Tanzu
 
SpringOne Tour: Domain-Driven Design: Theory vs Practice
SpringOne Tour: Domain-Driven Design: Theory vs PracticeSpringOne Tour: Domain-Driven Design: Theory vs Practice
SpringOne Tour: Domain-Driven Design: Theory vs PracticeVMware Tanzu
 
SpringOne Tour: Spring Recipes: A Collection of Common-Sense Solutions
SpringOne Tour: Spring Recipes: A Collection of Common-Sense SolutionsSpringOne Tour: Spring Recipes: A Collection of Common-Sense Solutions
SpringOne Tour: Spring Recipes: A Collection of Common-Sense SolutionsVMware Tanzu
 
SpringOne Tour: Doing Progressive Delivery with your Team
SpringOne Tour: Doing Progressive Delivery with your TeamSpringOne Tour: Doing Progressive Delivery with your Team
SpringOne Tour: Doing Progressive Delivery with your TeamVMware Tanzu
 

Mais de VMware Tanzu (20)

What AI Means For Your Product Strategy And What To Do About It
What AI Means For Your Product Strategy And What To Do About ItWhat AI Means For Your Product Strategy And What To Do About It
What AI Means For Your Product Strategy And What To Do About It
 
Make the Right Thing the Obvious Thing at Cardinal Health 2023
Make the Right Thing the Obvious Thing at Cardinal Health 2023Make the Right Thing the Obvious Thing at Cardinal Health 2023
Make the Right Thing the Obvious Thing at Cardinal Health 2023
 
Enhancing DevEx and Simplifying Operations at Scale
Enhancing DevEx and Simplifying Operations at ScaleEnhancing DevEx and Simplifying Operations at Scale
Enhancing DevEx and Simplifying Operations at Scale
 
Spring Update | July 2023
Spring Update | July 2023Spring Update | July 2023
Spring Update | July 2023
 
Platforms, Platform Engineering, & Platform as a Product
Platforms, Platform Engineering, & Platform as a ProductPlatforms, Platform Engineering, & Platform as a Product
Platforms, Platform Engineering, & Platform as a Product
 
Building Cloud Ready Apps
Building Cloud Ready AppsBuilding Cloud Ready Apps
Building Cloud Ready Apps
 
Spring Boot 3 And Beyond
Spring Boot 3 And BeyondSpring Boot 3 And Beyond
Spring Boot 3 And Beyond
 
Spring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdf
Spring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdfSpring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdf
Spring Cloud Gateway - SpringOne Tour 2023 Charles Schwab.pdf
 
Simplify and Scale Enterprise Apps in the Cloud | Boston 2023
Simplify and Scale Enterprise Apps in the Cloud | Boston 2023Simplify and Scale Enterprise Apps in the Cloud | Boston 2023
Simplify and Scale Enterprise Apps in the Cloud | Boston 2023
 
Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023
Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023
Simplify and Scale Enterprise Apps in the Cloud | Seattle 2023
 
Tanzu Virtual Developer Connect Workshop - French
Tanzu Virtual Developer Connect Workshop - FrenchTanzu Virtual Developer Connect Workshop - French
Tanzu Virtual Developer Connect Workshop - French
 
Tanzu Developer Connect Workshop - English
Tanzu Developer Connect Workshop - EnglishTanzu Developer Connect Workshop - English
Tanzu Developer Connect Workshop - English
 
Virtual Developer Connect Workshop - English
Virtual Developer Connect Workshop - EnglishVirtual Developer Connect Workshop - English
Virtual Developer Connect Workshop - English
 
Tanzu Developer Connect - French
Tanzu Developer Connect - FrenchTanzu Developer Connect - French
Tanzu Developer Connect - French
 
Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023
Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023
Simplify and Scale Enterprise Apps in the Cloud | Dallas 2023
 
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring Boot
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring BootSpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring Boot
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring Boot
 
SpringOne Tour: The Influential Software Engineer
SpringOne Tour: The Influential Software EngineerSpringOne Tour: The Influential Software Engineer
SpringOne Tour: The Influential Software Engineer
 
SpringOne Tour: Domain-Driven Design: Theory vs Practice
SpringOne Tour: Domain-Driven Design: Theory vs PracticeSpringOne Tour: Domain-Driven Design: Theory vs Practice
SpringOne Tour: Domain-Driven Design: Theory vs Practice
 
SpringOne Tour: Spring Recipes: A Collection of Common-Sense Solutions
SpringOne Tour: Spring Recipes: A Collection of Common-Sense SolutionsSpringOne Tour: Spring Recipes: A Collection of Common-Sense Solutions
SpringOne Tour: Spring Recipes: A Collection of Common-Sense Solutions
 
SpringOne Tour: Doing Progressive Delivery with your Team
SpringOne Tour: Doing Progressive Delivery with your TeamSpringOne Tour: Doing Progressive Delivery with your Team
SpringOne Tour: Doing Progressive Delivery with your Team
 

Último

The Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptx
The Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptxThe Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptx
The Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptxRTS corp
 
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...OnePlan Solutions
 
Ronisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited CatalogueRonisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited Catalogueitservices996
 
UI5ers live - Custom Controls wrapping 3rd-party libs.pptx
UI5ers live - Custom Controls wrapping 3rd-party libs.pptxUI5ers live - Custom Controls wrapping 3rd-party libs.pptx
UI5ers live - Custom Controls wrapping 3rd-party libs.pptxAndreas Kunz
 
Leveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + KobitonLeveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + KobitonApplitools
 
VK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web DevelopmentVK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web Developmentvyaparkranti
 
Precise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive GoalPrecise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive GoalLionel Briand
 
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...Cizo Technology Services
 
Sending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdfSending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdf31events.com
 
Introduction to Firebase Workshop Slides
Introduction to Firebase Workshop SlidesIntroduction to Firebase Workshop Slides
Introduction to Firebase Workshop Slidesvaideheekore1
 
Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...Rob Geurden
 
Large Language Models for Test Case Evolution and Repair
Large Language Models for Test Case Evolution and RepairLarge Language Models for Test Case Evolution and Repair
Large Language Models for Test Case Evolution and RepairLionel Briand
 
How to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationHow to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationBradBedford3
 
Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...
Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...
Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...OnePlan Solutions
 
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdfEnhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdfRTS corp
 
SpotFlow: Tracking Method Calls and States at Runtime
SpotFlow: Tracking Method Calls and States at RuntimeSpotFlow: Tracking Method Calls and States at Runtime
SpotFlow: Tracking Method Calls and States at Runtimeandrehoraa
 
SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?Alexandre Beguel
 
What’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 UpdatesWhat’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 UpdatesVictoriaMetrics
 
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...Bert Jan Schrijver
 
Real-time Tracking and Monitoring with Cargo Cloud Solutions.pptx
Real-time Tracking and Monitoring with Cargo Cloud Solutions.pptxReal-time Tracking and Monitoring with Cargo Cloud Solutions.pptx
Real-time Tracking and Monitoring with Cargo Cloud Solutions.pptxRTS corp
 

Último (20)

The Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptx
The Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptxThe Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptx
The Role of IoT and Sensor Technology in Cargo Cloud Solutions.pptx
 
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
 
Ronisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited CatalogueRonisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited Catalogue
 
UI5ers live - Custom Controls wrapping 3rd-party libs.pptx
UI5ers live - Custom Controls wrapping 3rd-party libs.pptxUI5ers live - Custom Controls wrapping 3rd-party libs.pptx
UI5ers live - Custom Controls wrapping 3rd-party libs.pptx
 
Leveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + KobitonLeveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
 
VK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web DevelopmentVK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web Development
 
Precise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive GoalPrecise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive Goal
 
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
Global Identity Enrolment and Verification Pro Solution - Cizo Technology Ser...
 
Sending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdfSending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdf
 
Introduction to Firebase Workshop Slides
Introduction to Firebase Workshop SlidesIntroduction to Firebase Workshop Slides
Introduction to Firebase Workshop Slides
 
Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...Simplifying Microservices & Apps - The art of effortless development - Meetup...
Simplifying Microservices & Apps - The art of effortless development - Meetup...
 
Large Language Models for Test Case Evolution and Repair
Large Language Models for Test Case Evolution and RepairLarge Language Models for Test Case Evolution and Repair
Large Language Models for Test Case Evolution and Repair
 
How to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationHow to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion Application
 
Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...
Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...
Tech Tuesday Slides - Introduction to Project Management with OnePlan's Work ...
 
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdfEnhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
Enhancing Supply Chain Visibility with Cargo Cloud Solutions.pdf
 
SpotFlow: Tracking Method Calls and States at Runtime
SpotFlow: Tracking Method Calls and States at RuntimeSpotFlow: Tracking Method Calls and States at Runtime
SpotFlow: Tracking Method Calls and States at Runtime
 
SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?
 
What’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 UpdatesWhat’s New in VictoriaMetrics: Q1 2024 Updates
What’s New in VictoriaMetrics: Q1 2024 Updates
 
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
 
Real-time Tracking and Monitoring with Cargo Cloud Solutions.pptx
Real-time Tracking and Monitoring with Cargo Cloud Solutions.pptxReal-time Tracking and Monitoring with Cargo Cloud Solutions.pptx
Real-time Tracking and Monitoring with Cargo Cloud Solutions.pptx
 

Governance for Your Modern Application Platform

  • 1. Confidential │ ©2019VMware,Inc. Governance for Your Modern Application Platform Visibility, Trust, and Control Chuck D’Antonio Andrea Samuel November 2020
  • 2. Confidential │ ©2019VMware,Inc. Agenda 2 Characteristics of Modern Application Development Initialsteps and common challenges Succeeding with Modernization Evolving your applicationsand platform Visibility Understandingyour modern applicationenvironment Trust Increasing independencewithout increasing risk Control Maintainingstabilityas velocity increases
  • 3. Confidential │ ©2019VMware,Inc. 3 The Goal of All Software Development Ship code faster at lower costs with no outages, ever Idea Code Build & Test Deliver Accept Learn Observe Maintain Deploy
  • 4. Confidential │ ©2019VMware,Inc. 4 Need more resources Need to move faster Need more control over their environments Need to maintainstability Need to control resources Need to limit blast radius Developers Operators Conflicting Needs and Incentives VELOCITY STABILITY
  • 5. 5Confidential │ ©2019VMware,Inc. “Agile, as it’s currently being implemented in most companies, has become a ‘dumb’ process. It doesn’t have a brain. The feedback loops originally intended to inform next steps have instead become checkpointsto ensure we’ve completed what we agreed to 2 weeks earlier.” Jeff Gothelf, Agile Doesn’t Have a Brain
  • 6. Confidential │ ©2019VMware,Inc. 6 Five Ss of Software Development Speed Go from idea to values as quickly as possible Stability Minimize downtime and optimize MTTR Scalability Dynamically respond to demand without incident Security Limit exposure react quickly to vulnerabilities Savings Reduce cost while improving outcomes
  • 7. Confidential │ ©2019VMware,Inc. 7 The Scariest Time in Software Development Idea LearnCode Build & Test Deliver Accept ObserveMaintainDeploy Risk The time between idea and feedback is the scariest time in software development… …and yet we often make speed subordinateto the other 4 Ss
  • 8. Confidential │ ©2019VMware,Inc. 8 Our experience Platform Focus on Developer Experience is the BiggestDriver of Success An opinionated platform helps teams gain speed without losing out on the other 4 Ss Our heritage was a single platform with a strongset of opinions The answer isn’t necessarily those opinions, it’s having the right opinions for you Opinions where it matters, options where it doesn’t
  • 9. Confidential │ ©2019VMware,Inc. 9 Deliver the velocity developers need, with the stability operators demand Manage your modern application environment with a consolidated control plane and a single pane of glass with full stack observability. Increase independence through automated pipelines and developer self-provisioning without increasing risk. Maintain consistency, resiliency, and security across clusters, teams, and clouds with centralized access control and automated policy enforcement. Supporting Modern Developers with a Modern Platform Visibility Trust Control
  • 11. Confidential │ ©2020VMware,Inc. 11 Security IAM $$ Security IAM $$$ Security IAM $$ Security IAM $$$ Security IAM $$$ Kubernetes Adoption Reality: Growing Fragmentation Amazon Web Services VMware vSphere Microsoft Azure Google Cloud Platform Amazon Web Services Manualconfigurationand management, siloed by environment Access, networking, security policies applied cluster-by-cluster Lack of cost visibilityand control Confidential │ ©2019VMware,Inc. 11
  • 12. Confidential │ ©2019VMware,Inc. 12 All Your Clusters in One Place TanzuMissionControl • Cluster Lifecycle Management • K8s Cluster attachment • Centralized policy management • Cluster Inspection • Data Protection Integrations • Observability& Diagnostics • App & service management • Connectivity& traffic management
  • 13. Confidential │ ©2020VMware,Inc. 13 End-to-End Observability Metrics Traces Histograms Span Logs Full-Stack Collection Real-Time Ingestion Absolute Data Resolution & RetentionIntelligent Routing 4D Data Processing High Performance Analytics, AI/ML Automated Insights Applications Microservices Serverless AnyCloud Containers Infrastructure loT Alert Visualize Troubleshoot Predict Automate Wavefront Ingestion Wavefront Cloud Wavefront UX
  • 14. Confidential │ ©2019VMware,Inc. 14 Trust Increasing independence without increasing risk
  • 15. Confidential │ ©2019VMware,Inc. 15 Questions that Reduce Trust in a System Where did that image come from? Who owns that app? Are we running the latest…? Did we run the security scans? Who deployed that? What’s in that container? Is all the traffic encrypted? Did you patch that CVE? Is there a single point of failure?Was this tested? Where did that image come from? Who owns that app? Are we running the latest…? Did we run the security scans? Who deployed that? What’s in that container? Is all the traffic encrypted? Did you patch that CVE? Is there a single point of failure? Was this tested? Where did that image come from? Who owns that app? Are we running the latest…? Did we run the security scans? Who deployed that? What’s in that container? Is all the traffic encrypted? Did you patch that CVE? Is there a single point of failure? Was this tested? Where did that image come from? Who owns that app? Are we running the latest…? Did we run the security scans? Who deployed that? What’s in that container? Is all the traffic encrypted? Did you patch that CVE? Is there a single point of failure? Was this tested? Did we run the security scans? Is there a single point of failure? Who owns that app? Who deployed that? Did you patch that CVE? Did you patch that CVE?
  • 16. Confidential │ ©2019VMware,Inc. 16 Compliant Kubernetes objects Scanned and signed container images Approved application dependencies Increasing Trust in Your Production Workloads Consistent container construction Build Time Run Time
  • 17. Confidential │ ©2019VMware,Inc. 17 Automation for a Trusted Supply Chain Certify your CI/CD process and require it for all production deployments Incorporatestatic and dynamic security scans Validatepoliciesfor Kubernetes artifacts Trigger on source code, buildpack, and OS stack changes
  • 18. Confidential │ ©2019VMware,Inc. 18 Sourcing Containers You Can Rely On Tanzu BuildServices uses buildpacksfor repeatable, consistent containerbuilds for multiplelanguages and frameworks. Tanzu ApplicationCatalog combines validatedOpen Source packages and hardenedbase images for backings services you can trust. Harbor Registry Notary Third party NFVOServices Kubernetes Cluster In-House NFVOApplications Tanzu Build Service Tanzu Application Catalog
  • 20. Confidential │ ©2020VMware,Inc. 20 Managing Access through Unified Identity and Access Policy Cluster Namespaces Cluster Namespaces Cluster Namespaces ns ns ns Import Users / Groups Auth Token kubectl WorkspacesCluster Groups Tanzu Mission Control PolicyEngine Developers Identity VMware CloudServices Active Directory 1 Define Access Policies 2 PlatformOperation Teams define user access to multiple Clusters ONCEwith Cluster Groups and Role Mappings Developers get self-serviceaccess to Clusters Define Access Policies Platform Operations/IT
  • 21. Confidential │ ©2019VMware,Inc. 21 Assuring Workload Security and Compliance Multiple layers of controls provide defense in depth against untrusted and vulnerable workloads: Integrated images scans prevent push and/or pull In-cluster enforcement limits source registries and enforces other constraints. Internal Harbor Registry Registry Notary Kubernetes Cluster Trustworthy Image Developers Vulnerable Image Developers Tanzu Mission Control Image Policy Custom Policy Operators Policy Docker Hub ⚠️
  • 22. Confidential │ ©2019VMware,Inc. 22 Namespaces Cluster Namespace Namespace Cluster Namespace Namespace Robust Policy Environment Cluster Groups Cluster Groups Cluster Groups Tanzu Mission Control • ClusterGroups • Clusters • Workspaces • Namespaces PodSecurityPolicy= Restrictive Security Policy Role Binding= namespace.admin AllowedRegistries= harbor.my.com/* EgressPolicy= deny-all Access Policy Registry Policy Network Access PolicyOperators Harbor Pull Google Registry Pull Docker Hub Pull Ingress Egress Developers Cluster Namespace Namespace kubectl Quota Policy CustomPolicy CPU and memorylimits
  • 24. Confidential │ ©2019VMware,Inc. Thank You Chuck D’Antonio Solution Engineer, TeamTanzu Andrea Samuel Solution Engineer, TeamTanzu
  • 25. Confidential │ ©2019VMware,Inc. 25 VMware Tanzu Northeast Fall Webinar Series October 21: Hardening the Container Application Lifecycle Newer architectures and patterns have developed alongside the evolution of containers and Kubernetes. Your container platform can help you avoid many of the challenges teams face when attempting to build, run, and manage these workloads. Learn how to build and maintain operational consistency via centralized visibility and management across multiple clouds and platforms, including edge applications. November 4: Governance for Your Modern Application Platform Containers give teams more flexibility to declare their dependencies and include them in a deployment. This flexibility can improve their velocity and accelerate time, but also shifts control and accountability among teams, sometimes in ways that are outside of your current governance controls. Learn how to maintain robust governance as roles and responsibilities shift with containers and Kubernetes. November 12: Delivering Off-The-Shelf Software with Kubernetes All organizations mix software they build with software they “buy”. The notion of “buying” software has changed to include not only traditional commercial software products but also mission critical open source and “as-a-service” packages. This session addresses the new world of “off-the-shelf” and how it impacts your work provisioning, monitoring, and supporting your overall software portfolio. October-November 2020 Join the solutions engineers fromyour local VMwareTanzu team for a series of informal. Each session focuses on capabilities you’llneed to give developers the velocity they need while maintaining the stability your business requires. Sessions areled by two local solution engineers who you’ll havethe opportunity to meet and work with them as part of your journey VMwareTanzu. Register: https://connect.tanzu.vmware.com/northeast-fall-webinar-series.html