Conference report - Kawaiicon NZ security conference
#### What/When/Where - Kawaiicon annual New Zealand Security Conference. - July 1-2 2022. - Wellington, New Zealand. #### Links - Schedule: https://kawaiicon.org/schedule/ - Videos: [Day 1](https://www.youtube.com/watch?v=4hBLf2vQc8k), and [Day 2](https://www.youtube.com/watch?v=IyeDSyvYvZs) ### Notable talks There were tons of interesting talks from a security perspective. There was a big focus this year on Incident Response, which is one area where the monitor teams' focus overlaps with the infosec/appsec world. I've singled out a few talks that are potentially relevant to us, please feel free to take a look :slight_smile: | title | link to blurb | link to video | Notes | | ------ | ------ | ------ | ------ | | Moonshots and Space Debris: A Cyberspace Retrospective on our Last Orbit Around the Sun | https://kawaiicon.org/talks/space-debris/ | https://www.youtube.com/watch?v=4hBLf2vQc8k&t=5176s | From Darren Bilby - Director of Security Engineering, Infrastructure Protection @ Google. Had some interesting thoughts about really really large scale security / incident response problems and solutions. | | Deep breaths and lean the f**k in. A user’s guide to Incident Response. | https://kawaiicon.org/talks/IR/ | https://www.youtube.com/watch?v=4hBLf2vQc8k&t=23669s | A really interesting talk about incident response - with a focus on some country-scale situations that required cross organisation coordination. Highlighted the importance of centralised communication and clear roles during an incident, something I think our tools could help with. | | Kubernetes on Hard-Mode: Security in Hostile Multi-tenancy Clusters | https://kawaiicon.org/talks/k8 | https://www.youtube.com/watch?v=4hBLf2vQc8k&t=24713s | Not so relevant to Respond since we are deprecating a lot of k8s stuff, but still interesting. | | Locking down NZ COVID Tracer | https://kawaiicon.org/talks/covid-tracer/ | https://youtu.be/IyeDSyvYvZs?t=14095 | A rundown of building the NZ Covid contact tracing app - interesting because they made a (tiny) mention of GitLab as part of their security assurance process (during this slide https://youtu.be/IyeDSyvYvZs?t=15338). | There were many other interesting talks, check out the full schedule and videos at the top of this doc.
issue