Virtual workshops
Speeding platform engineering adoption with CNOE
Speeding platform engineering adoption with CNOE
This session introduces the Cloud Native Operational Excellence (CNOE) framework for building Internal Developer Platforms (IDPs) and shows how to deploy and use it locally, and in the cloud.
Platform engineering has been a hot topic for the last few years. It provides faster software delivery, while guaranteeing consistency and standardization, and improves the overall developer experience. However, building a platform from scratch is challenging, involving many critical choices that can significantly impact long-term performance and adoption.
Join Miguel Fontanilla, Platform Engineering Lead at Sennder, as he explores the value of learning from teams and companies that have pioneered platform engineering. This is where CNOE comes in: a framework for building IDPs that relies on best practices and experience from reference companies in the Platform Engineering area. It enables you to provision and test different stacks for internal platforms, based on CNCF technologies. This session's objective is to present CNOE, its concepts, architecture, and demonstrate an example platform deployed to an AWS environment, giving you practical insights into implementing this framework in your own organization.
Join Miguel Fontanilla, Platform Engineering Lead at Sennder, as he explores the value of learning from teams and companies that have pioneered platform engineering. This is where CNOE comes in: a framework for building IDPs that relies on best practices and experience from reference companies in the Platform Engineering area. It enables you to provision and test different stacks for internal platforms, based on CNCF technologies. This session's objective is to present CNOE, its concepts, architecture, and demonstrate an example platform deployed to an AWS environment, giving you practical insights into implementing this framework in your own organization.
Securing the software supply chain: Open source for the SDLC
Securing the software supply chain: Open source for the SDLC
Discover how Dev(Sec)Ops enables organizations secure the software supply chain by adopting OpenSSF/Linux Foundation and CNCF graduated projects tools to integrate into the workflows to improve the Software Development Life Cycle (SDLC).
With the complexity of Software Development, securing the software supply chain has never been more critical and it becomes crucial with the Cyber Resilience Act (CRA).
Join Kairo De Araujo as he guides you through essential CNCF and OpenSSF projects designed to address software supply chain security challenges. You'll discover in-toto (https://in-toto.io/), a framework that provides provenance attestation allowing traceability and verification of your software's journey from development to deployment, augmented by tools like Witness and Archivista for enhanced artifact provenance and monitoring. You'll also explore The Update Framework (TUF) (https://theupdateframework.io/) and Repository for TUF (RSTUF) (https://rstuf.org/), powerful frameworks for secure software distribution that ensure the integrity and authenticity of distributed software, attestations and SBOMs. These proven solutions have been successfully implemented by private organizations including Datadog, Lockheed Martin, and GitHub, as well as major open source projects like PyPI, NPM, and RubyGems. As a maintainer of these projects, Kairo will demonstrate how you can implement these tools to safeguard your software supply chain, reduce risks, and enhance SDLC trust. Expect actionable insights, hands-on examples, and a clear roadmap for integrating these solutions into your existing workflows.
Join Kairo De Araujo as he guides you through essential CNCF and OpenSSF projects designed to address software supply chain security challenges. You'll discover in-toto (https://in-toto.io/), a framework that provides provenance attestation allowing traceability and verification of your software's journey from development to deployment, augmented by tools like Witness and Archivista for enhanced artifact provenance and monitoring. You'll also explore The Update Framework (TUF) (https://theupdateframework.io/) and Repository for TUF (RSTUF) (https://rstuf.org/), powerful frameworks for secure software distribution that ensure the integrity and authenticity of distributed software, attestations and SBOMs. These proven solutions have been successfully implemented by private organizations including Datadog, Lockheed Martin, and GitHub, as well as major open source projects like PyPI, NPM, and RubyGems. As a maintainer of these projects, Kairo will demonstrate how you can implement these tools to safeguard your software supply chain, reduce risks, and enhance SDLC trust. Expect actionable insights, hands-on examples, and a clear roadmap for integrating these solutions into your existing workflows.
How to build a CI from the ground up (as good as the hyperscalers)
How to build a CI from the ground up (as good as the hyperscalers)
For many developers, setting up CI means enabling the Jenkins k8s plugin and being on your way. But for those with exceptional requirements, it is necessary to build the system from the ground up.
Bitrise is a CI/CD company serving mobile app developers of all sizes. Apple requires iOS apps to be built on Macs, a constraint that pushed Bitrise to build the full CI stack.
This session offers a layer-by-layer conceptual guide to constructing a CI system. The Bitrise team, composed of cross-functional software and infrastructure engineers, combined disciplines to create a platform that performs on par with the best hyperscalers.
Join this soup-to-nuts tour to understand how all components fit together and how to achieve high performance from the system.
This session offers a layer-by-layer conceptual guide to constructing a CI system. The Bitrise team, composed of cross-functional software and infrastructure engineers, combined disciplines to create a platform that performs on par with the best hyperscalers.
Join this soup-to-nuts tour to understand how all components fit together and how to achieve high performance from the system.
How to make self-service infrastructure 10X easier for developers
How to make self-service infrastructure 10X easier for developers
Discover how self-service infrastructure transforms deployment speed from days to minutes. Learn key concepts behind generative IaC, shift-left security, and automation that platform teams use to eliminate bottlenecks while maintaining governance.
Transform how your team deploys infrastructure with this comprehensive 90-minute workshop on generative Infrastructure as Code. Learn proven strategies to implement self-service infrastructure that increases developer velocity while maintaining security and governance.
What you'll learn:
- Shift-left infrastructure principles and implementation
- Modular, reusable infrastructure design patterns
- Security and compliance automation strategies
- Real-world deployment acceleration techniques
This hands-on session includes live demos, practical examples, and actionable frameworks perfect for platform engineers, DevOps teams, and engineering leaders looking to eliminate infrastructure bottlenecks. Leave with a clear roadmap you can implement immediately.
What you'll learn:
- Shift-left infrastructure principles and implementation
- Modular, reusable infrastructure design patterns
- Security and compliance automation strategies
- Real-world deployment acceleration techniques
This hands-on session includes live demos, practical examples, and actionable frameworks perfect for platform engineers, DevOps teams, and engineering leaders looking to eliminate infrastructure bottlenecks. Leave with a clear roadmap you can implement immediately.
Unifying siloed operations with infrastructure orchestration
Unifying siloed operations with infrastructure orchestration
This workshop will be an in-depth demo of the Spacelift platform, led by Jake Johnson, Solutions Engineer at Spacelift. Sign up for a trial account and follow along!
Spacelift is an infrastructure orchestration platform that streamlines your entire infrastructure workflow: from provisioning, to configuration management and ongoing governance.
In this virtual workshop, Spacelift Solutions Engineer Jake Johnson will demonstrate how to orchestrate infrastructure with Spacelift. The workshop will cover:
An overview of the Spacelift platform, including core concepts such as Stacks and how they fit into workflows.
The process of integrating provisioning and configuration automation tools using stack dependencies.
How to enable developers to provision and manage infrastructure through repeatable, governed self-service workflows.
A powerful Terraform and Ansible workflow that allows you to provision and configure infrastructure within a single process.
Join this session to learn how Spacelift extends IaC management beyond provisioning, breaking down operational silos and enabling true infrastructure orchestration.
In this virtual workshop, Spacelift Solutions Engineer Jake Johnson will demonstrate how to orchestrate infrastructure with Spacelift. The workshop will cover:
An overview of the Spacelift platform, including core concepts such as Stacks and how they fit into workflows.
The process of integrating provisioning and configuration automation tools using stack dependencies.
How to enable developers to provision and manage infrastructure through repeatable, governed self-service workflows.
A powerful Terraform and Ansible workflow that allows you to provision and configure infrastructure within a single process.
Join this session to learn how Spacelift extends IaC management beyond provisioning, breaking down operational silos and enabling true infrastructure orchestration.
Destroyable demos: The Dynatrace demo platform
Destroyable demos: The Dynatrace demo platform
Build a working cloud-based, run for free, throwaway cluster with platform engineering best practices baked in and ready to scale at your organisation. Attendees will leave with a working repo and a blueprint to start their own destroyable demos journey.
Join Adam Gardner as he reveals how and why Dynatrace treats their throwaway demo environments as a product engineering exercise. You'll discover their journey, understanding why this transformation was necessary and why the timing was crucial. Adam will share the organizational and human challenges they've overcome, along with those they're still navigating, covering testing at scale, golden paths, and efficient adoption tracking methods.
This hands-on session walks through their open source code, leveraging numerous CNCF tools. You'll explore the environmental sustainability benefits of this approach and discuss future developments in this space.
You'll leave with access to Git repositories containing the templates, empowering you to begin this transformation within your own organization.
This hands-on session walks through their open source code, leveraging numerous CNCF tools. You'll explore the environmental sustainability benefits of this approach and discuss future developments in this space.
You'll leave with access to Git repositories containing the templates, empowering you to begin this transformation within your own organization.
CNOE in action: Fast-tracking IDP development
CNOE in action: Fast-tracking IDP development
Discover how IDPBuilder streamlines Internal Developer Platform (IDP) creation with CNOE’s all-in-one binary. Leverage Kubernetes locally, ensure API consistency across environments, and power CI pipeline tests without cloud setup delays or fragile scripts.
Join Hossein Salahi, Lead Platform Engineer at Liquid Reply, as he demonstrates how CNOE's all-in-one binary can redefine the way IDPs are built, leveraging Kubernetes' native capabilities right on our local machines. This workshop introduces IDPBuilder, a tool that quickly sets up the CNOE framework in minutes with just a container engine; you’ll learn how IDPBuilder simplifies platform development and maintenance, ensuring consistent API compatibility across all environments from local setups to production. Additionally, you’ll explore how it powers automated CI pipeline tests, removing the delays of cloud setup and eliminating fragile scripts.
Building the paved road: From manual provisioning to self-service platforms
Building the paved road: From manual provisioning to self-service platforms
Learn to leverage self-service developer platforms that eliminate provisioning bottlenecks. This hands-on workshop demonstrates how Terraform and templated CI/CD create secure "paved roads" for rapid project bootstrapping while maintaining organizational control.
Platform teams face a critical bottleneck: developers demand rapid project bootstrapping while maintaining security and consistency standards. Manual provisioning creates delays, inconsistent setups, and operational overhead that scales poorly across growing engineering organizations.
Join Derry Bradley, Senior Field Engineer at CircleCI, for a hands-on workshop demonstrating how to leverage end-to-end self-service infrastructure using Internal Developer Platforms (IDPs), where developers provision complete software pipelines through standardized templates while platform teams maintain governance and control.
In this workshop, you'll experience live demonstrations of architecting automated workflows that provision GitHub repositories, CircleCI projects, and deployment pipelines through a single interface. We'll explore how Terraform providers, templated configurations, and OIDC security create scalable "paved roads" that accelerate development velocity.
Key Learnings:
Architecture patterns for IDP-driven infrastructure provisioning
Implementing security layers with OIDC and restricted contexts
Creating reusable pipeline templates with flexible override capabilities
Leveraging CircleCI's MCP integration to reduce developer context switching
This approach transforms platform engineering from reactive ticket fulfillment to proactive enablement, allowing developers to self-serve infrastructure while ensuring organizational standards and security compliance remain intact.
Join Derry Bradley, Senior Field Engineer at CircleCI, for a hands-on workshop demonstrating how to leverage end-to-end self-service infrastructure using Internal Developer Platforms (IDPs), where developers provision complete software pipelines through standardized templates while platform teams maintain governance and control.
In this workshop, you'll experience live demonstrations of architecting automated workflows that provision GitHub repositories, CircleCI projects, and deployment pipelines through a single interface. We'll explore how Terraform providers, templated configurations, and OIDC security create scalable "paved roads" that accelerate development velocity.
Key Learnings:
Architecture patterns for IDP-driven infrastructure provisioning
Implementing security layers with OIDC and restricted contexts
Creating reusable pipeline templates with flexible override capabilities
Leveraging CircleCI's MCP integration to reduce developer context switching
This approach transforms platform engineering from reactive ticket fulfillment to proactive enablement, allowing developers to self-serve infrastructure while ensuring organizational standards and security compliance remain intact.
Introduction to vCluster: Building Internal Developer Platforms (IDPs)
Introduction to vCluster: Building Internal Developer Platforms (IDPs)
The workshop introduces participants to vCluster, demonstrating how to create and manage virtual Kubernetes environments for multiple development teams.
Join Piotr Zaniewski, Head of Engineering Enablement at Loft Labs, in this hands-on workshop introducing vCluster and demonstrating how to create and manage virtual Kubernetes environments for multiple development teams. Throughout the workshop, you'll take on the perspective of a platform engineering team, making decisions and implementing solutions to serve various development groups within your organization.
The workshop covers key areas including introduction to vCluster and virtual Kubernetes clusters, setting up and configuring virtual Kubernetes clusters, managing multiple development environments, implementing shared services and optimizing resources, and enhancing developer workflows with self-service provisioning. You'll gain hands-on experience setting up and configuring virtual Kubernetes clusters, learn to manage multiple team environments efficiently, explore resource optimization and cost reduction strategies, implement progressive improvements to virtual cluster setups, and understand vCluster's role in enhancing developer productivity.
The workshop covers key areas including introduction to vCluster and virtual Kubernetes clusters, setting up and configuring virtual Kubernetes clusters, managing multiple development environments, implementing shared services and optimizing resources, and enhancing developer workflows with self-service provisioning. You'll gain hands-on experience setting up and configuring virtual Kubernetes clusters, learn to manage multiple team environments efficiently, explore resource optimization and cost reduction strategies, implement progressive improvements to virtual cluster setups, and understand vCluster's role in enhancing developer productivity.
Say goodbye to managed databases and hello to data sovereignty
Say goodbye to managed databases and hello to data sovereignty
Learn how to manage stateful applications like databases across cloud environments and reduce dependency on managed services that increase cognitive load for platform engineers by using Kubernetes.
Kubernetes provides a uniform API for deploying applications anywhere, making stateless workloads highly portable. However, many organizations still rely on cloud-managed database services for stateful workloads, limiting portability and increasing cognitive load for platform engineers managing multiple environments. This session explores how Kubernetes can manage stateful applications, reducing dependence on managed databases and unlocking true multi-cloud flexibility.
The 20-minute lecture will cover how cloud-managed services increase complexity and limit portability. The 60-minute hands-on lab will guide attendees through deploying a real-world stateful application with persistent storage across multiple clouds, demonstrating that cloud-managed services are not necessary for data. Attendees should bring their own laptops.
The 20-minute lecture will cover how cloud-managed services increase complexity and limit portability. The 60-minute hands-on lab will guide attendees through deploying a real-world stateful application with persistent storage across multiple clouds, demonstrating that cloud-managed services are not necessary for data. Attendees should bring their own laptops.
Taming the Kubernetes chaos with New Relic’s Service Architecture Intelligence
Taming the Kubernetes chaos with New Relic’s Service Architecture Intelligence
Transform your chaotic Kubernetes environment into an organized, observable system with New Relic's toolset. This hands-on workshop guides you through visualizing service dependencies, establishing clear ownership, and implementing effective monitoring across microservices. Work with a realistic cluster to master Service Architecture Intelligence features (Maps, Catalogs, Teams, Scorecards) and enhanced APM for Kubernetes. Leave with practical skills to immediately improve developer productivity, reduce MTTR, and enhance cross-team collaboration in your own organization.
Microservices are messy. Ownership gets fuzzy, dependencies are hard to track, and keeping everything performant across a distributed setup? Yeah, that's a constant headache. In this 90-minute hands-on workshop, we'll take a cluttered Kubernetes environment and turn it into something clean, observable, and actually manageable, all using New Relic's Service Architecture Intelligence and enhanced APM tools.
You'll be working with a realistic cluster of 8-10 microservices. We'll walk through how to visualize dependencies with Maps, organize services with Catalogs, define ownership clearly with Teams, and keep everyone aligned using Scorecards. Along the way, we'll dive into New Relic's enhanced APM for Kubernetes: automatic service detection, unified views across infra and app layers, and how to fine-tune your agent setup for better signal and less noise.
By the end, you won't just know what these tools are - you'll know how to use them. You'll walk away with:
A framework for organizing services in large-scale K8s environments
The skills to identify and visualize service relationships and dependencies
Strategies for assigning and managing team ownership across services
Hands-on experience using observability to reduce MTTR and improve collaboration
A clear understanding of how to apply these techniques in your own org, right away
If you're wrangling microservices and tired of flying blind, this workshop will give you the tools (and the confidence) to take control.
You'll be working with a realistic cluster of 8-10 microservices. We'll walk through how to visualize dependencies with Maps, organize services with Catalogs, define ownership clearly with Teams, and keep everyone aligned using Scorecards. Along the way, we'll dive into New Relic's enhanced APM for Kubernetes: automatic service detection, unified views across infra and app layers, and how to fine-tune your agent setup for better signal and less noise.
By the end, you won't just know what these tools are - you'll know how to use them. You'll walk away with:
A framework for organizing services in large-scale K8s environments
The skills to identify and visualize service relationships and dependencies
Strategies for assigning and managing team ownership across services
Hands-on experience using observability to reduce MTTR and improve collaboration
A clear understanding of how to apply these techniques in your own org, right away
If you're wrangling microservices and tired of flying blind, this workshop will give you the tools (and the confidence) to take control.
"Working code wins": Win big with a platform hackathon starter pack
"Working code wins": Win big with a platform hackathon starter pack
Building internal platforms isn't just assembling tools: success requires people, process, and aligned business outcomes. Join us to learn how a hackathon can drive innovation, platform adoption, and create a platform using Backstage and Kratix.
Looking at landscapes such as the CNCF Landscape or Platform Tooling Landscape, it’s easy to think building internal platforms only requires assembling tools and technologies. But anyone who has experienced platform adoption challenges will recognize that tech alone is not enough: the real mission includes people, process, policy, and ultimately business outcomes. Join this workshop to learn how running an internal hackathon can spark innovative business ideas, grow awareness, and drive adoption of platform technologies.
Attendees will get hands-on experience creating an effective developer experience using a Backstage portal and orchestrating the platform with Kratix. By the end of this session, participants will have a working platform blueprint ready to take back for hacking in their organizations.
Attendees will get hands-on experience creating an effective developer experience using a Backstage portal and orchestrating the platform with Kratix. By the end of this session, participants will have a working platform blueprint ready to take back for hacking in their organizations.
You have Terraform. How do you orchestrate it?
You have Terraform. How do you orchestrate it?
You’ve become a Terraform master, delivering significant efficiencies to application teams using your platform. But some challenges remain. This session shows how Temporal and Terraform solve more problems together than either can alone.
Terraform is arguably the most widely adopted infrastructure-as-code tool in use today, with good reason. Its multi-cloud and data center support, combined with declarative configuration, has simplified infrastructure management. However, platform engineers often need capabilities beyond Terraform alone. They may need to schedule Terraform actions, apply configurations in a specific order, or manage long-running processes involving humans. Infrastructure is typically distributed and not always available when management is needed.
Widely used by platform engineers across many verticals, Temporal addresses these challenges. This session will demonstrate how Temporal and Terraform together can overcome common orchestration difficulties.
Widely used by platform engineers across many verticals, Temporal addresses these challenges. This session will demonstrate how Temporal and Terraform together can overcome common orchestration difficulties.
Streamline Kubernetes deployments with Helm, GitOps, and Terraform for SaaS
Streamline Kubernetes deployments with Helm, GitOps, and Terraform for SaaS
Engineers often struggle with code reusability, which slows delivery. GitOps, Terraform, and Helm can offer standardized and reusable assets, streamlining application deployments alongside infrastructure components enabling governance and reducing toil.
Join Lucas Duarte as he demonstrates how Fluxv2 and GitOps principles enable a seamless integration of infrastructure and application resources in Kubernetes. You will dive into a real-world use case, showcasing the deployment of a multi-tenant SaaS platform on Kubernetes using Helm for consistent packaging and Git-centric workflows.
You'll learn to use Helm Charts for bundling application and infrastructure configurations, incorporating the Tofu Controller to manage Infrastructure as Code via Terraform CRDs, and Argo Workflows for automated template generation. The workshop covers semantic versioning, including how to apply patch version updates automatically and staggered deployment strategy for minor and major version rollouts.
You'll learn to use Helm Charts for bundling application and infrastructure configurations, incorporating the Tofu Controller to manage Infrastructure as Code via Terraform CRDs, and Argo Workflows for automated template generation. The workshop covers semantic versioning, including how to apply patch version updates automatically and staggered deployment strategy for minor and major version rollouts.
How to coordinate your infrastructure automations (and humans!)
How to coordinate your infrastructure automations (and humans!)
Your infrastructure isn’t homogeneous, nor are your automation tools or maturity. Learn how Temporal can durably orchestrate across this landscape, even when jobs are long running and involve human interaction.
Your platform is complex. It may facilitate use of cloud services from hyperscalers or third-party services like payment processors. It probably integrates with corporate systems such as IAM and implements processes combining new automations with manual, human-involved steps. Despite this, you want your infrastructure to remain consistent and cost effective, avoiding orphaned cloud resources.
Used by some of the world’s largest brands to orchestrate processes across various use cases, Temporal is ideally suited for managing heterogeneous, distributed IT environments. This workshop will walk through a concrete example and provide a Git repository full of code to jump-start your automation efforts.
Used by some of the world’s largest brands to orchestrate processes across various use cases, Temporal is ideally suited for managing heterogeneous, distributed IT environments. This workshop will walk through a concrete example and provide a Git repository full of code to jump-start your automation efforts.
What supply chain risks are hidden in your Helm charts?
What supply chain risks are hidden in your Helm charts?
Helm charts simplify Kubernetes deployments but pose security risks. This talk covers vulnerabilities, attack scenarios, and best practices for securing Helm charts with Cloudsmith’s artifact management, ensuring supply chain security and compliance.
Helm is the go-to package manager for Kubernetes. It simplifies deployments but introduces security risks. Misconfigured charts, unverified dependencies, and lax RBAC settings can lead to supply chain attacks. As Kubernetes adoption grows, these challenges increase.
Organizations using Amazon EKS, Google GKE, or self-managed clusters must secure their Helm charts to prevent privilege escalation and data exfiltration. This talk examines real-world threats and demonstrates how Cloudsmith’s comprehensive artifact management helps teams verify and secure Helm charts, allowing only trusted assets into their environments.
Organizations using Amazon EKS, Google GKE, or self-managed clusters must secure their Helm charts to prevent privilege escalation and data exfiltration. This talk examines real-world threats and demonstrates how Cloudsmith’s comprehensive artifact management helps teams verify and secure Helm charts, allowing only trusted assets into their environments.
Forget 'works on my machine' forever: Hands-on workshop with Development Containers
Forget 'works on my machine' forever: Hands-on workshop with Development Containers
Convert your software projects to Development Containers using AI conversion tools. Eliminate "works on my machine" problems with standardized dependencies, runtime, and tools built on the Dev Container open standard.
This hands-on workshop guides participants through converting an existing repository to use Development Containers, leveraging AI to accelerate the process. By the end, attendees will have a working Development Container configuration for their own project that eliminates "works on my machine" problems once and for all.
Participants will bring their own repositories and learn how to analyze requirements, use AI tools to generate baseline configurations, implement and test Development Container setups, and apply advanced techniques for multi-container environments and team standardization. The session also explores how AI can help maintain and evolve configurations as projects grow.
Designed for platform engineers and developer experience leaders, this workshop provides immediate practical value and insights into scaling Development Container approaches across organizations.
Participants will bring their own repositories and learn how to analyze requirements, use AI tools to generate baseline configurations, implement and test Development Container setups, and apply advanced techniques for multi-container environments and team standardization. The session also explores how AI can help maintain and evolve configurations as projects grow.
Designed for platform engineers and developer experience leaders, this workshop provides immediate practical value and insights into scaling Development Container approaches across organizations.


