Search results for: security audit


Razorpay

Posted on June 18, 2026

Challenge As an authorized Payment Aggregator, Razorpay operates under the strict oversight of the Reserve Bank of India (RBI). The RBI PA Master Directions mandate absolute operating resilience, which introduces several highly specific, non-negotiable security requirements:…


Securing CI/CD for an open source project: Locking down dependencies

Posted on June 12, 2026 | André Martins (Cilium maintainer and Software Engineer, Isovalent at Cisco) and Feroz Salam (Cilium Security Team and Security Engineer, Isovalent at Cisco)

Part two This is the second post in a three-part series on how Cilium hardens its CI/CD pipeline. Part 1 covered access control: who can trigger builds and what code CI is allowed to execute. This…


Introducing Verifiable Execution in Dapr 1.18

Posted on June 11, 2026 | epower

Bringing attestation, provenance, and tamper-evident execution history to workflows and AI agents For years, the cloud native ecosystem has focused on making distributed systems resilient. Applications recover from failures. Services retry requests. Workflows survive crashes and…


Infosys Ltd. Client

Posted on June 3, 2026

Challenge A transformative business vision demanded an equally future-ready technology foundation. The program required carefully balancing large-scale transformation with operational continuity—supporting the organization’s immediate business priorities while establishing a scalable, cloud-native foundation for the “Next Generation…


Mumbai Maha Mahotsav – KubeCon + CloudNativeCon India edition

Posted on June 2, 2026 | Sonali Srivastava, CNCF Co-chair for KubeCon + CloudNativeCon India 2026

Welcome to Mumbai – the City of Dreams, where ambition is the only dress code – and the host city for KubeCon + CloudNativeCon India 2026. As a co-chair of this year’s program, I’ve spent months…


The Kubernetes integration tax: Prometheus, Cilium and production reality

Posted on May 28, 2026 | Rishi Mondal, SRE at Obmondo and CNCF KubeStellar Maintainer

I still remember the first time we lost sleep over something that wasn’t a bug. It was a Tuesday. Grafana dashboards showed blank panels for Cilium network metrics. Hubble was working fine — DNS visibility, TCP…


Why Kubernetes policy enforcement happens too late—and what to do about it

Posted on May 25, 2026 | Sajal Nigam, CNCF Community Member

Kubernetes has become the backbone of modern cloud-native infrastructure. Its flexibility lets teams move fast, compose complex systems from modular components, and deploy across environments with relative ease. But that flexibility comes with a well-known cost:…


Building a cloud native platform from the ground up with Kairos, k0rdent, and bindy

Posted on May 13, 2026 | Erick Bourgeois, Director & Head of Kubernetes Platform Engineering, RBC Capital Markets

As we shared in our earlier post on FluxCD, RBC Capital Markets has been on a deliberate journey to modernize our Kubernetes platform. GitOps with FluxCD gave us a solid deployment foundation. But as our platform grew,…


Announcing Kyverno release 1.18!

Posted on May 5, 2026 | Cortney Nickerson, Kyverno Contributor

We’re excited to announce the release of Kyverno 1.18, our first release since graduating within the Cloud Native Computing Foundation. This release builds on Kyverno’s growing role as a Kubernetes-native policy engine, with major investments in…


Securing GitHub Actions CI dependencies: Recipe card

Posted on May 4, 2026 | Marina Moore, Evan Anderson, and Sherine Khoury, CNCF Technical Advisory Group

Recipe GitHub Actions CI dependencies Target audience (the chef) Project maintainers and developers who need practical, concrete steps to efficiently secure CI dependencies within their GitHub Actions workflows Scope (ingredients) Dependencies within the GitHub Actions, Github…