SeaGL 2025

Andrew Puch

Andrew Puch
๐Ÿ‘ท ๐Ÿ— Enterprise System Architect IT / CSuite Consultant / lean / agile/ ScrumMaster ๐Ÿง™โ€โ™‚๏ธ
The Pied Piper of Linux ๐Ÿง as a Enterprise System Architect๐Ÿ‘ท ๐Ÿ— 20+ years of experience simplifying IT solutions for Fortune 500 companies from Wall Street๐Ÿ‡บ๐Ÿ‡ธ ๐Ÿ‚๐Ÿ“ˆ๐Ÿ“‰๐Ÿป to Montreal๐Ÿ‡จ๐Ÿ‡ฆ ๐Ÿ“ณ๐Ÿฆ to Hollywood ๐ŸŽž๏ธ & internal ๐ŸŒ๐ŸŒ๐ŸŒŽ.

Road warrior ๐Ÿฅท๐ŸŽ’ of professional services decades of experience providing solutions architecture for IBM ๐Ÿ‘๏ธ๐Ÿโ“‚๏ธ / RedHat๐ŸŽฉ / etc with a vast base customer Public Sector { (local , state, federal ) , Private Sector Verticals (banking/Fintech, manufacturing, retail) } compliance / governance regimes [DEFARS ,hippa , NERC ๐Ÿ”Œ , ๐Ÿ‡บ๐Ÿ‡ธ๐Ÿฅท , nist-800-53,171, pci, ] .


Session

11-07
16:30
20min
Patch management / BareMetal as a service on Linux ( RedHat / Suse / tbd other ) Windows ?Vmware ?
Andrew Puch

High Level talk with the following topics

What is patch management / content management at scale ?

compliance as a service

metal as a Service

Some vendor options for patch management & ( baremetal & compliance as a service )

What are the os in your environment ?
What package management tooling ?
What is an errata ?
Why are there no security updates for most 3rd party repo ?

Multi Vendors OS pro&cons of software tooling ?

What 3rd party vendors embedded system is in your closet with an exception think deep packet inspection boxes / firewalls ?
Where are the sbom for these vendors ?

What is vendor embedded os running , arch linux , gentoo , etc .

What is your Env/Estate you need to defend ๐Ÿ›ก๏ธ ?

What compliance / governance regi

Cloud and Infrastructure
Room 340