Conference report - Kawaiicon NZ security conference
#### What/When/Where
- Kawaiicon annual New Zealand Security Conference.
- July 1-2 2022.
- Wellington, New Zealand.
#### Links
- Schedule: https://kawaiicon.org/schedule/
- Videos: [Day 1](https://www.youtube.com/watch?v=4hBLf2vQc8k), and [Day 2](https://www.youtube.com/watch?v=IyeDSyvYvZs)
### Notable talks
There were tons of interesting talks from a security perspective. There was a big focus this year on Incident Response, which is one area where the monitor teams' focus overlaps with the infosec/appsec world. I've singled out a few talks that are potentially relevant to us, please feel free to take a look :slight_smile:
| title | link to blurb | link to video | Notes |
| ------ | ------ | ------ | ------ |
| Moonshots and Space Debris: A Cyberspace Retrospective on our Last Orbit Around the Sun | https://kawaiicon.org/talks/space-debris/ | https://www.youtube.com/watch?v=4hBLf2vQc8k&t=5176s | From Darren Bilby - Director of Security Engineering, Infrastructure Protection @ Google. Had some interesting thoughts about really really large scale security / incident response problems and solutions. |
| Deep breaths and lean the f**k in. A user’s guide to Incident Response. | https://kawaiicon.org/talks/IR/ | https://www.youtube.com/watch?v=4hBLf2vQc8k&t=23669s | A really interesting talk about incident response - with a focus on some country-scale situations that required cross organisation coordination. Highlighted the importance of centralised communication and clear roles during an incident, something I think our tools could help with. |
| Kubernetes on Hard-Mode: Security in Hostile Multi-tenancy Clusters | https://kawaiicon.org/talks/k8 | https://www.youtube.com/watch?v=4hBLf2vQc8k&t=24713s | Not so relevant to Respond since we are deprecating a lot of k8s stuff, but still interesting. |
| Locking down NZ COVID Tracer | https://kawaiicon.org/talks/covid-tracer/ | https://youtu.be/IyeDSyvYvZs?t=14095 | A rundown of building the NZ Covid contact tracing app - interesting because they made a (tiny) mention of GitLab as part of their security assurance process (during this slide https://youtu.be/IyeDSyvYvZs?t=15338). |
There were many other interesting talks, check out the full schedule and videos at the top of this doc.
issue