Want to speak? Submit your talk and join our line up of speakers!
Community
Community
Overview
The story and values that drive us
Ambassadors
Become a Platform Engineering Ambassador
Events
Check out upcoming events near you
Reports
Check out the #1 source of industry stats
Jobs
Find your next  platform engineering role
GET CERTIFIED
Advance your career with Platform Engineering Certifications!
Get Certified
Join Community
Join as an individual
Join as an organization
Certifications
FOR INDIVIDUALS
Introduction to Platform Engineering
Platform Engineering Certified Practitioner
Platform Engineering Certified Professional
...and many more. Check out
Plaform Engineering University
FOR ORGANIZATIONS
Train your platform team.
Certify your engineers.
Certified

Service Provider
Certified
Training Provider
BlogLandscape
Get certified
Join community
Join community
Get certified
All events
Are your Helm charts secure? Uncovering hidden supply chain threats
Virtual
In-person
Are your Helm charts secure? Uncovering hidden supply chain threats
Jul 24, 2025
7:00 pm
CEST
CEST
-
45min
Helm charts streamline Kubernetes deployments, but they introduce potential security vulnerabilities. This practical workshop explores common threats, attack scenarios, and proven strategies for securing Helm charts through Cloudsmith's artifact management, maintaining supply chain integrity and regulatory compliance.
Speaker
Nigel Douglas
Head of Developer Relations @ Cloudsmith
Speaker

Misconfigured charts, unverified dependencies, and lax RBAC and privilege settings can lead to supply chain attacks in Kubernetes. If your business or open-source project relies on Helm charts, which is likely the case if you’re using Kubernetes, this session covers best practices and automation strategies to secure your containerised workloads, by:

  • Verifying every asset: Validate public Helm charts, dependencies, and images from popular OSS projects before deployment
  • Automating compliance: Scan for vulnerabilities with Trivy and enforce runtime OPA Gatekeeper security policies in real-time.
  • Preventing supply chain attacks: Audit and manage Helm charts before distributing through secure repositories.
  • Accept the manual overhead: Understand that most charts are insecure-by-default, and require further security checks by your team. 

Bonus: Participants will receive access to a hands-on, interactive Instruqt lab platform that analyzes actual insecure chart templates and demonstrates how to scan and detect these vulnerabilities with open-source tools, implement security standards, and properly validate Helm charts prior to production Kubernetes deployment.

This event is exclusive. Reserve your spot now.
Register now
Watch recording
Join our Slack
Join the conversation to stay on top of trends and opportunities in the platform engineering community.
Join Slack
Sitemap
HomeAboutCertifications for individualsCertifications for organizationsEventsJobs
Resources
BlogPlatformConWhat is platform engineering?Platform toolingKartographer
Join Us
Youtube
LinkedIn
Platform Weekly
Twitter
House of Kube

Subscribe to Platform Weekly

Platform engineering deep dives and DevOps trends, delivered to your inbox crunchy, every week.

© 2025 Platform Engineering. All rights reserved.
Privacy Policy
Privacy PolicyTerms of ServiceCookies Settings
Supported by
Register now