The Cloud Native Chasm: Building a Secure High-Impact Project
- Cloud native projects require a guide to navigate the complex and massive landscape
- Security is often not added on day one and needs to be considered after understanding the project's goals and environment
- Building a secure high-impact project requires help and a security mindset from all contributors
- Projects need to plan for changing uses and new use cases that may reveal inherent weaknesses or invalid security assumptions
- Public discussion, clearly documented decisions, and well-defined roadmaps with clear outcomes are necessary for building and securing projects
- Participating in security reviews and assessments and joining security-focused groups can help reframe thinking and create more secure structures