Library PHP Tek 2025 Secrets Security End-To-End
Secrets Security End-To-End

Log in to watch this talk

You need to be logged in to access this video. If you don't have an account, purchase a virtual pass for the latest php[tek] conference to get access to the full video library.

Secrets Security End-To-End

Dwayne McDaniel Dwayne McDaniel PHP Tek 2025 Intermediate (some prior knowledge necessary) Standard (50 minutes)

At the heart of all of our tools, credentials allow human-to-machine and machine-to-machine communication. According to recent research, 93% of organizations had two or more identity-related breaches in the past year. It is clear that we need to address this growing issue. Unfortunately, many organizations are OK with using plaintext credentials, which we should all know not to do by now. Given the scope of the problem, what can we do? Let's make a plan! - Secrets Detection - Secrets Management - Developer Workflows - Real-time Secrets Scanning - Automatic Rotation By the end of this session, you should have a clear roadmap for taming the machine identity mess in your code and pipelines.