I'm Natalie, a DevSecOps engineer and consultant experienced in developer experience and consolidation within a wide array of security-focused environments. I work at the intersection of technology, people, and highly-regulated industries as a Principal Solutions Engineer for Public Sector at Chainguard!
π I write about tech, what I'm working on, and what I'm playing with on my blog. Here's what I've been up to lately:
- Signing and verifying multi-architecture containers with Sigstore: When you run
docker pull image
it πͺ magically πͺ pulls the right architecture. But what about verifying it? Here's a handful of questions that I see often around this one big thing - how Sigstore works with multi-architecture containers. - Following the 'golden image' road: best practices and pitfalls: Let's share some hard-earned lessons in building adoption of a 'golden image' or standardized open-source program across large, heavily-regulated industries ... and have a few laughs in the process.
- What's a container, anyways?: Probably the most common misconception I run across in the field ... what is a container, anyways?
- Linux (mostly RHEL and Ubuntu these days) - fedora-acs-override
- Kubernetes - kubernoodles, self-hosted GitHub Actions runners made for humans
- Software development in highly regulated industries (ITAR, CMMC, NIST 800-171, DoD IL 2-6)
- Python - Advanced Security CSV export
- Go - gh-org-admin-promote
- GitHub Enterprise - enterprise security team, audit and compliance reporting
- but mostly, I work with people on all of the above! π
You can find me in our work Slack sharing all sorts of neat things you can do with all that fun stuff and probably find out how I've broken and maybe fixed something too. π
- All sorts of handy Raspberry Pi projects, including
- Kodi set up on a television for local media (build directions)
- OpenWRT router (build directions)
- Pi-hole, for DNS and ad-blocking (build directions)
- Ubiquiti UniFi network controller, in Docker of course
- I'm getting into the Flipper Zero lately - it's so handy and mischievous! (some fun uses)
- Video games in a Windows VM on my Fedora desktop with libvirt, KVM, and a custom Linux kernel to pass hardware to it. It's got about 5% or so performance drop (just looking at frame rates) over a native install. You should check it out - code and write-up on how it works.
I have an awesome life outside of tech, so while I have a few projects that I enjoy, nothing above is close to where I spend most of my time / energy. If you need anything of mine above fixed, please feel free to fork it and send me a pull request! β€οΈ
- π± Iβm currently studying to sit for my OSCP certification and learning the ropes at a container security startup.
- π€ Public speaking is fun! Check out what I've been up to here.
- π Pronouns: she/her
- β Looking for my rΓ©sumΓ©? It's here, but you can also find some of what I've been up to in my profile. If you want to know about where else I've worked and went to school, you should go to LinkedIn.
- π¬ Want to chat? I'm on Mastodon.