Posted March 31Mar 31 Static, long-lived credentials or “secrets” (e.g. passwords, API keys, SSH keys) remain one of the most significant security vulnerabilities in modern infrastructures. Rotating these credentials manually is time-consuming and not scalable. Canva realized it needed a better secrets automation and management system when teams had to stop work on development priorities in order to do rotations.This post will cover:Real-world reasons to adopt dynamic secrets, focusing on cloud native and CI/CD use cases.Two roadmaps — for managers and architects — to guide teams from static rotation schedules to fully dynamic, on-demand secrets.Common hurdles (organizational, operational) and how to integrate Vault with popular CI/CD tools.View the full article
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.