Config Management Camp 2023 Ghent

Open Policy Agent: security for cloud natives and everyone else
2023-02-06, 15:55–16:45, C.1.155

One of the emerging standards for cloud (native) security is OPA, the Open Policy Agent; an open source standard under the Cloud Native Computing Foundation.


This talk gives an overview of what OPA can do for you and how you can write declarative policies to check your APIs, Kubernetes, or applications. It's structured into three segments:

  1. Why do you want to add a continuous runtime checker to your APIs or applications and what gaps is it covering?
  2. How do you write declarative policies with OPA?
  3. What does it look like in hands-on examples against APIs, Kubernetes, and applications?

Philipp lives to demo interesting technology. Having worked as a web, infrastructure, and database engineer for over ten years, Philipp is now a developer advocate and EMEA team lead at Elastic — the company behind the Elastic Stack consisting of Elasticsearch, Kibana, Beats, and Logstash. Based in Vienna, Austria, he is constantly traveling Europe and beyond to speak and discuss open source software, search, databases, infrastructure, and security

This speaker also appears in: