Talk
Intermediate

Zero Trust, Full Control: Securing Kubernetes Clusters with Modern Access Management Principles

Review Pending

Modern IT environments are dynamic and distributed—and Kubernetes is at the center of this shift. While container orchestration solves deployment challenges at scale, it introduces new complexity in managing and securing access across clusters. Traditional perimeter-based security models fall short in a world where users, workloads, and services are constantly shifting.

Zero Trust Access Management offers a modern approach: trust nothing, verify everything. In this session, we’ll explore how Zero Trust principles—continuous identity verification, least privilege access, and policy-driven controls—can be effectively applied to Kubernetes environments.

We’ll go beyond theory with a live demo of Paralus, an open-source tool purpose-built for Zero Trust Kubernetes Access (ZKTA). You’ll see how it simplifies secure access to multiple clusters, enabling centralized identity-based access controls, auditing, and fine-grained RBAC—all without distributing kubeconfigs or compromising developer velocity.

Whether you're a platform engineer, DevSecOps practitioner, or security lead, this session will help you build a more secure and scalable Kubernetes environment with practical tools you can start using today.

  • Understand why traditional access control models are inadequate for modern Kubernetes environments.

Learn the core Zero Trust principles: verify identity, enforce least privilege, and continuously monitor access.

  • Discover how Paralus applies these principles to Kubernetes, enabling secure multi-cluster access.

  • Watch a live demo of Paralus in action: onboarding users, enforcing RBAC, auditing activity, and managing access centrally.

  • Leave with a roadmap for implementing Zero Trust Kubernetes Access using open-source tools.

Tutorial about using a FOSS project

Nirav N Parikh
Lead - Product Engineer Improving
https://www.linkedin.com/in/nirav-n-parikh/
Speaker Image

100 %
Approvability
1
Approvals
0
Rejections
0
Not Sure

The proposal looks good overall but a personal note on event program - there are multiple proposals on projects from the kubernetes ecosystem/containers. Instead of multiple distinct talks, it'll be great if the proposers could actually work together to craft a meaningful story that covers all of the tools e.g.
- sign containers
- scan containers for vulnerabilities
- deploy containers within a zero trust environment (I might be using the wrong words)

The overall event programming might have a significant influence on how well-received these proposals/sessions are.

Reviewer #1
Approved