What is the Identity of your Running Code? How Netflix Keeps Control of Identity and Stays Agile

Netflix’s early move to AWS cloud and our desire to achieve end-to-end security brought some challenges which lead to a system for providing identity to running code. In this talk I will present how we build identities for all services and jobs within the Netflix cloud and ultimately use them for end-to-end security and fine-grained Authorization. Keeping the identity system logically one abstraction level above data centers and cloud providers future-proofs migrations.
Manish Mehta
Senior Security Engineer at Netflix
Manish Mehta is Senior Security Software Engineer at Netflix, Los Gatos, CA working on architecting and developing solutions that defend Netflix platform. Manish has designed and developed solutions around secure bootstrapping, authentication (service and user), and authorization for Netflix’s cloud-native infrastructure. Before Netflix, Manish worked at Cryptography Research Inc., Aruba Networks, and Tumbleweed Communications (now Axway). His professional interests and expertise are cyber security in general, and specifically in security solutions anchored in cryptography. Manish holds M.S. and Ph.D. in Computer Science from Univ. of Missouri - Kansas City and has authored several research (IEE, IEEE/ACM) and conference publications. 


Event: future:net

Where: Las Vegas, Nevada

When: August 30 - 31, 2017

Venue: Four Seasons Hotel