Get 20% off all career paths from fullstack to AI
NY State-Licensed Certificates in Design, Coding & AI — Online
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Learn to secure OIDC federation in CI/CD workflows through this 20-minute conference talk that explores the security implications and best practices for implementing workload identity in continuous integration and deployment pipelines. Discover how OIDC and workload identity can enhance CI/CD security by eliminating traditional long-lived keys and access tokens while enabling secure API access across different environments. Examine the critical importance of strong security policies that underpin identity federation systems, as weak policies can create vulnerabilities that attackers might exploit to access sensitive resources and potentially compromise your entire supply chain. Explore common risks associated with OIDC implementation in CI/CD contexts and understand how improper configuration can turn your own CI/CD platform into a vector for supply chain attacks. Gain practical strategies for securing your environment and developing robust security policies that maximize the benefits of OIDC federation while minimizing potential attack surfaces and maintaining the integrity of your development and deployment processes.
Syllabus
Securing OIDC Federation in CI/CD Workflows - Billy Lynch, Chainguard
Taught by
Linux Foundation