Skip to content

Security at Scale — Senior

Apply zero-trust principles: explicit identity, least privilege, continuous verification, segmented access, and auditable policy. Protect build provenance, dependencies, registries, deployment authority, and secrets lifecycle.

Design DDoS and abuse controls across edge, application, queue, and dependency budgets. Prepare credential compromise, key rotation, revocation, and forensic evidence.

Test yourself

  1. Which implicit trust remains in the design?
  2. How is compromised identity revoked fleet-wide?
  3. What happens when KMS is unavailable?
  4. Which supply-chain evidence is verified before deploy?

Continue to professional.md.