Rootconf 2025 Annual Conference - 16th and 17th May
On platforms, distributed data systems & security
May 2025
12 Mon
13 Tue
14 Wed
15 Thu
16 Fri 09:45 AM – 06:30 PM IST
17 Sat 09:15 AM – 05:35 PM IST
18 Sun
Submitted Apr 4, 2025
Platform-Led Zero Trust Service Networking for FinTech
Imagine a world where developers simply describe their workloads—and the platform guarantees a Zero-Trust networking setup. This session shows how we built exactly that for a fintech organization, using service mesh for mTLS authentication, Istio AuthorizationPolicies for precise traffic control, and Open Policy Agent (OPA) to enforce compliance automatically and early in the delivery process.
In fintech and other regulated environments, securing service-to-service and internet-bound communication is essential—but relying on teams to configure mTLS, authorization rules, and firewall policies doesn’t scale and often breaks down in practice.
In this session, we show how we built a Zero-Trust networking model into the platform itself. Developers define workloads declaratively, including the services they need to communicate with. The platform takes over from there:
– Istio enforces mTLS for service identity and encrypted communication
– Istio AuthorizationPolicies define and enforce which services are allowed to communicate—based on identity, not IP
– OPA validates compliance both at the level of declared workloads and the changelog about to be deployed, ensuring continuous and proactive enforcement
All of this is delivered through GitOps pipelines—making secure, compliant infrastructure the default without slowing down teams or increasing operational friction.
Let me know if you’d like help shaping this for a specific conference’s CFP format.
Hosted by
Supported by
Gold Sponsor
Gold Sponsor
Sponsor
Sponsor
{{ gettext('Login to leave a comment') }}
{{ gettext('Post a comment…') }}{{ errorMsg }}
{{ gettext('No comments posted yet') }}