Building ISM and E8-compliant master images with DevSecOps

Wednesday
 
19
 
March
, 
1:50 pm
 - 
2:30 pm
Location
Think Tank 1

Speakers

James Bannan

James Bannan

Principal Consultant
CyberCX

Synopsis

Even if your organisation has adopted a cloud-first, cloud-native approach to enterprise infrastructure, there are still times when you need to deploy some kind of IaaS-based workloads, and for this, you need to decide where the base OS image is to be sourced from. Cloud providers offer a wide range of prebuilt images ready to go, but if your business or government agency is looking to align with the Information Security Manual to meet data classification requirements, or to an Essential Eight maturity level, then chances are that the marketplace images won't meet your security and governance needs.

In this demo-driven session, you'll learn how to build your own private image factory and how to leverage automated DevSecOps pipelines to build, customise and harden operating system images for both Windows and Linux which will help you pass that next audit with flying colours.

Acknowledgement of Country

We acknowledge the traditional owners and custodians of country throughout Australia and acknowledge their continuing connection to land, waters and community. We pay our respects to the people, the cultures and the elders past, present and emerging.