Security often feels like a roadblock to developers, but what if it could be seamlessly integrated into the development process? As software delivery becomes increasingly automated and self-service, the traditional approach to security needs a major overhaul.Danny Allan, CTO at Snyk, shares practical insights on transforming security from a bottleneck into an enabler of developer productivity. Drawing from his extensive experience at IBM, VMware, and Veeam, Allan discusses how security teams can shift left effectively without creating friction.Key topics covered:Building successful security champions programs that cultivate curiosity rather than relying solely on senior developersPractical approaches to embedding security controls into development pipelines, from IDE integration to PR checksStrategies for measuring security team success beyond just vulnerability countsThe role of pre-hardened containers and infrastructure-as-code scanning in platform securityHow AI is transforming both code generation and security tooling, including Snyk's approach to vulnerability detectionLove the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Are your platform teams constantly saying "no" to requests for new Kubernetes clusters? The traditional approach to Kubernetes multi-tenancy forces organizations to choose between cluster sprawl or restrictive namespaces - neither of which fully meets the needs of modern development teams.Lukas Gentele, CEO and co-founder of Loft Labs, shares how vCluster is transforming the way organizations handle multi-tenancy in Kubernetes. By running virtual Kubernetes control planes inside namespaces, vCluster enables teams to experiment with different versions, operators, and configurations while maintaining efficient resource usage.Key topics covered:How vCluster solves the limitations of namespace-based multi-tenancyRunning multiple Kubernetes versions in the same cluster for testing and gradual upgradesManaging bare metal GPU resources efficiently for AI/ML workloadsBalancing standardization with developer autonomy in platform engineeringUsing virtual clusters for cost-effective testing across multiple Kubernetes versionsWhether you're a platform engineer looking to say "yes" more often or a development team seeking greater autonomy within Kubernetes, this discussion offers practical insights into modern multi-tenancy approaches.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
When organizations grow beyond using third-party platforms, they face a critical challenge: how to build internal platforms that enable teams to work efficiently while maintaining security and compliance. Abby Bangser, founding principal engineer at Syntasso, shares insights on creating real-world platforms that strike the right balance between standardization and flexibility.Key InsightsThe shift from external platforms to internal ones often comes from specific business needs, like compliance requirementsSuccessful platform engineering requires finding the right balance between prescriptive standards and flexible customizationPlatforms should offer multiple levels of abstraction - from simplified "paved paths" to advanced customization optionsPlatform teams should watch how users interact with their services to identify emerging patterns and needsLove the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Testing smart TV applications presents unique challenges that traditional web testing approaches can't solve. Dave Lucia, CTO and co-founder of TV Labs, shares how his team built a platform that virtualizes televisions and set-top boxes to help media companies test their smart TV apps on physical devices.Learn about TV Labs' innovative architecture and how they handle everything from camera-based testing systems to their custom Lua-based DSL for faster test execution. A key highlight is how choosing Elixir as their primary technology has enabled TV Labs to build a robust orchestration system. The language's built-in capabilities for fault tolerance, process isolation, and distributed computing make it particularly well-suited for managing concurrent connections and real-time state across multiple devices.The discussion also explores practical insights about system architecture, including how TV Labs leverages Phoenix presence for real-time device state tracking and achieves microsecond-level performance for message broadcasting.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Why do 70% of organizations still struggle to adopt infrastructure as code? Sören Martius, CPO and co-founder of Terramate, joins Cory O'Daniel to tackle the challenges of modern infrastructure management and the delicate balance between vendor trust and lock-in.The conversation explores practical solutions for common infrastructure challenges, from managing monolithic state files to orchestrating complex deployments. Martius shares insights on: When to maintain a monolithic state file versus breaking it into smaller unitsHow infrastructure needs evolve as engineering teams grow beyond 100 peopleWhy anti-lock-in features build trust with operations teamsThe role of AI in detecting and remediating infrastructure misconfigurationsFor teams wrestling with infrastructure complexity or evaluating new tools, this discussion offers practical perspectives on building scalable, maintainable infrastructure while avoiding common pitfalls around vendor lock-in and team adoption.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Building infrastructure tooling doesn't require massive VC funding or a huge team - just ask Malcolm Matalka, co-founder of bootstrapped Terrateam. Malcolm shares his journey from real estate websites to investment banking to biotech, before landing in infrastructure automation.Learn how Terrateam takes a unique "libraries over frameworks" approach to development, prioritizing simplicity and control by carefully selecting dependencies and building critical components in-house. Malcolm explains how this philosophy leads to more maintainable code and better security outcomes.As an early participant in the OpenTofu fork, Malcolm provides insights into the community response and adoption challenges. He discusses how Terrateam helps teams streamline their infrastructure workflows by integrating directly with existing tools and processes rather than forcing new ones.For platform engineers looking to simplify their infrastructure management, Malcolm describes the ideal Terrateam user as someone who wants infrastructure changes to flow naturally through their existing development process without added complexity.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Is GitOps holding your team back? In this thought-provoking conversation with Massdriver co-founder Dave Williams, we challenge conventional wisdom around cloud infrastructure management and explore why traditional approaches to compliance and self-service may be creating more problems than they solve.Discover how leading organizations are moving beyond ceremonial approval processes to create truly automated, self-service platforms that enhance developer productivity while maintaining security and control. Learn why treating infrastructure as code differently from application code could be the key to unlocking engineering velocity.Key topics covered:Why compliance doesn't require manual GitOps workflowsCreating meaningful abstractions that codify operations expertiseThe shift from reactive to proactive infrastructure governanceHow platform teams can become strategic enablers rather than bottlenecksWhether you're a platform engineer, engineering leader, or developer frustrated with current infrastructure processes, this episode offers practical insights for evolving your approach to cloud operations.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Feeling overwhelmed by the number of apps you need to manage while building developer trust, managing costs, and trying to create an extensible platform that teams actually want to use?Joel Vasallo shares practical insights from scaling TAG's platform engineering initiatives across multiple healthcare organizations. Learn how his team transformed deployment times from weeks to minutes while maintaining security and compliance. Joel breaks down the journey from initial Kubernetes adoption to managing 70+ applications. Listeners will gain actionable strategies for:- Starting small with platform initiatives and building organic buy-in- Balancing standardization with team autonomy- Managing cloud costs across multiple organizations- Building trust through visibility and auditabilityWhether you're in healthcare or any regulated industry, this conversation provides a practical roadmap for evolving your platform engineering practice.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
Navigating cloud migrations and building modern platforms is challenging in the best of circumstances. Alex Voorhees, VP of Cloud Engineering at 66 Degrees, shares valuable lessons from helping organizations as they take on these challenges.Don’t miss his insights on:How to tackle the human and organizational challenges that come with cloud transformationPractical strategies for upskilling teams transitioning from traditional ops to cloud operationsKey considerations when implementing platform engineering solutions across different organizational maturity levelsIntegrating AI capabilities into cloud architectureCommon pitfalls to avoid when moving legacy applications to the cloudApproaches for balancing innovation with practical business needs during cloud migrationWhether you're leading a cloud migration, building a platform team, or interested in the future of cloud operations, this episode offers concrete takeaways for navigating the technical and organizational challenges of modern infrastructure.Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/
John Dietz, CEO and co-founder of Konstruct (formerly Kubefirst), joins us fresh from KubeCon North America to discuss the evolution of cloud-native platform adoption. John shares insights into Konstruct's mission to make Kubernetes and cloud-native technology more accessible, reducing the typical 18-month adoption timeline to minutes.The conversation explores Konstruct's two main products: Kubefirst, an open-source GitOps platform, and Colony, their new solution for bare metal and data center deployments. John discusses the company's philosophy on open-source licensing, the importance of building trust in platform engineering, and their unique approach to commercialization while maintaining core platform accessibility.Don’t miss our new segment: TrashOps!Love the show? Subscribe, rate, review, & share! http://platformengineeringpod.com/