Bootstrapping Trust on Kubernetes

Posted on Wed 15 November 2023 in Infrastructure • Tagged with engineering, aws, kubernetes

We use Kubernetes at $work, and since I am in charge of platform, Kubernetes is my problem. Here's an interesting problem when trying to secure your Kubernetes workload.

Our pods need to talk to each other over the network. Early on, we decided that each pod would receive a unique …


Continue reading

Software Engineering and Risk Management

Posted on Sun 30 April 2023 in SDLC • Tagged with engineering

This is a supplementary blog post to one I coauthored that was posted to our corporate blog: Delivering Better Software, Faster. That blog post came to be because our sales and leadership teams are often questioned on how we are able to move and ship fast without creating unacceptably high …


Continue reading

Proxy User IDs

Posted on Sun 15 January 2023 in Privacy • Tagged with engineering

Building services today often require integration with other web services. That means sharing your customer's data with another company. Your users have never heard of this company before, yet they will hold their information. That sucks, and it can seem like a betrayal of your users' trust!

Hopefully, you are …


Continue reading

Blameless Postmortems

Posted on Wed 25 May 2022 in SDLC • Tagged with sdlc, engineering, culture

I am fortunate enough to be able to shape (in some small part) the engineering culture at my company. Part of that comes from realizing that engineering culture comes from consensus more than other cultures, which means discussing topics with fellow engineers and advocating for your position. "Culture" here is …


Continue reading