The presentation discusses the importance of continuous feedback and policies in DevOps and cybersecurity using openconf test and Rego.
- Continuous feedback is crucial in the development life cycle to ensure compliance and prevent drift from the declarative state.
- Policies should be easy to access and start giving feedback early and continuously.
- Openconf test and Rego can be used to write policies and enforce compliance.
- An example policy is prohibiting the use of latest tags for container images in non-dev environments.
- An anecdote is given about the difficulty of convincing developers to onboard a shared cluster if the process is too complicated.