DevConf.CZ 2026

Hendrik Brueckner

Hendrik works within the IBM Linux and KVM Virtualization teams to drive the integration of IBM Z/ LinuxONE technologies. He has a strong focus on virtualization, security, and confidential computing technologies.
Hendrik has over 15 years experiences enabling emerging technologies for LinuxONE and contributing to open source communities. He started as Linux kernel developer and expanded his scope to container, security, and virtualization technologies.


Company or affiliation:

IBM Deutschland Research & Development GmbH

Job title:

Chief Product Owner (CPO) Linux/KVM Virtualization on IBM Z & LinuxONE


Session

06-19
15:15
15min
Crypto Express meets Kubernetes - Introducing local HSMs for containers at scale
Hendrik Brueckner

Network attached hardware security modules (HSMs) are established these days but what if containerized applications could use local HSMs? And this at scale?

This talk introduces you to a device plug-in for Kubernetes that allows containers to access a local HSM. Container applications can benefit from the protection of key material by the HSM encryption key. This enables a variety of use cases on improving throughput when performing many cryptographic operations with wrapped keys or protecting signing keys to improve end-to-end and supply chain security.

This lightning talk provides an overview how Crypto Express cards can help clients to scale their cryptographic workload and, at the same time, protecting keys with HSM.

Cloud, Hybrid Cloud, and Hyperscale Infrastructure
A113 (capacity 64)