Secrets management on Kubernetes does not have to be a chore. In this hands-on workshop, you will learn how to secure and inject secrets into Kubernetes applications using External Secrets Operator and Secret Store CSI Driver. We will provision the infrastructure with Pulumi, then walk through retrieving both static and dynamic secrets to demonstrate how each approach can reduce the surface area for secrets injection. By the end of this session, you will have a practical understanding of modern secrets management patterns that keep sensitive data safe and manageable at scale.
AGENDA
How to automate Kubernetes secrets management with External Secrets Operator and Secret Store CSI Driver, ensuring efficient and consistent configuration
Best practices for provisioning cloud infrastructure with Pulumi, including secure secrets handling and policy enforcement
Strategies for managing both static and dynamic secrets at scale to reduce risk and streamline secret injection
Real-world approaches for implementing modern secrets management patterns that protect sensitive data and support rapid, reliable platform engineering
ADDITIONAL INFO
When:
Wednesday, April 9, 2025 · 8:00 a.m.
Central Time (US & Canada)
Pulumi’s mission is to democratize the cloud for every engineer.
Its open-source Infrastructure as Code tool enables engineers to write infrastructure code in any programming language. Build infrastructure intuitively on any cloud with TypeScript, JavaScriptPython, Go, C#, Java, and YAML.