Skip to main content
Engineering, Backend, Security

Building Uber’s Multi-Cloud Secrets Management Platform to Enhance Security

May 15 / Global
Featured image for Building Uber’s Multi-Cloud Secrets Management Platform to Enhance Security
Image
Figure 1: Secret Management Platform vision.
Image
Figure 2: Number of secrets distributed to data pipeline containers before (yellow) and after (green) the feature was enabled.
Image
Figure 3: Secret metadata model and impact level definition.
Image
Figure 4: Orchestrating secret rotation from secret management platform.
Image
Figure 5: Sequence diagram of interactions with SSX.
Matt Mathew

Matt Mathew

Matt is a Sr. Staff Engineer on the Engineering Security team at Uber. He currently works on various projects in the security domain. Previously, he led the initiative to containerize and automate Data infrastructure at Uber.

Ludi Li

Ludi Li

Ludi Li is a Staff Engineer on the Secrets team at Uber. She’s a key contributor to the secret management project, specializing in governance, secret generation, and rotation, and leading third-party secret sharing and PAM (Privileged Access Management) for secrets.

Chen Xi

Chen Xi

Chen Xi is a Staff Engineer on the Engineering Security team at Uber. He led the secrets management effort and also worked on Key Management and Identity Platform at Uber.

Yiting Fan

Yiting Fan

Yiting Fan is a former Security Engineer on the Application Security team at Uber, where she specialized in developing security tooling. Her work included spearheading the secret detection service and a binary scanning tool that prevents the exposure of sensitive information.

Posted by Matt Mathew, Ludi Li, Chen Xi, Yiting Fan