Reconciling Kubernetes and PCI DSS for a Modern and Compliant Payment System

Ana Calin, systems engineer at Paybase, gave an experience report at QCon London [slides PDF] on how this end-to-end payments service provider managed to achieve PCI DSS level 1 compliance (the highest) with 50+ Node.js microservices running on Google Kubernetes Engine (GKE) and using Terraform for infrastructure provisioning and Helm for service deployment. Besides pinpointing and addressing some Kubernetes security shortcomings, another crucial factor was to challenge the “status quo”

Read full article on InfoQ