Skip to main content
Presentation

Building an Agnostic Security Solution with HashiCorp Vault

Validation and authentication are needed to secure the software development lifecycle. In our daily development environment we use a variety of tools and each of them needs to be validated, secured, and managed. We use tokens, keys, passwords, etc. to do this. But securing these secrets is a challenge within the dev pipeline. Using a specific cloud provider's security management solution creates vendor lock. To overcome this, our team at IKEA followed keyless approach to manage security with HashiCorp Vault and Terraform. Hence, I want to demo the way we are securing our solution which is agnostic in terms of security.

Validation and authentication are needed to secure the software development lifecycle. In our daily development environment we use a variety of tools and each of them needs to be validated, secured, and managed. We use tokens, keys, passwords, etc. to do this. But securing these secrets is a challenge within the dev pipeline. Using a specific cloud provider's security management solution creates vendor lock. To overcome this, our team at IKEA followed keyless approach to manage security with HashiCorp Vault and Terraform. Hence, I want to demo the way we are securing our solution which is agnostic in terms of security.

More resources like this one

4/11/2024FAQ

Introduction to HashiCorp Vault

Vault identity diagram
12/28/2023FAQ

Why should we use identity-based or "identity-first" security as we adopt cloud infrastructure?

3/28/2023Presentation

Hidden Hazards: Unique Burnout Risks in Tech

3/28/2023Presentation

Vault and Boundary - Managing Secrets at Home