by Rob Richardson, Developer Advocate, Cyral
Rob Richardson is a software craftsman building web properties in ASP.NET and Node, React and Vue. He's a frequent speaker at conferences, user groups, and community events, and a diligent teacher and student of high quality software development. You can find this and other talks on https://robrich.org/presentations and follow him on twitter at @rob_rich.
While in an audit,
how do I document I've given
the minimum required permissions?
Just grant them access forever
or
They just can't get the job done
or
Use a shared service account
... and lose the audit trail
What if we could store our
data access policies
as code?
Policies are standardized into records readable by both the people who manage them and the systems that enforce them.
Data maps and Policies
GitOps for Policies
ChatOps for policies