Network Privacy Posture Review of a Fintech's Internal Service Mesh
Overview
What this challenge is about.
Receive an anonymized service inventory (110 services with owner, data classification, traffic volume buckets) and a sample of east-west traffic logs (5 high-volume service pairs, 1 week each). Assess: mTLS coverage and strict-mode enforcement across the mesh, AuthorizationPolicy completeness (deny-by-default vs. allow-by-default), PII fields appearing in headers or payloads, payload-encryption at rest in transit-time buffers, and egress controls. Identify the top 8 privacy gaps. Produce a 90-day remediation plan with named owners and rollout sequencing. Deliver: 14-page posture review, gap-tracker sheet, 8-page 90-day remediation plan, and a CISO readout deck.
The Brief
What you'll do, and what you'll demonstrate.
Run a network-privacy posture review of a 110-service Istio mesh and deliver an 8-gap remediation plan executable in 90 days.
Earning criteria — what you'll demonstrate
- Assess mTLS coverage and strict-mode enforcement across a service mesh
- Audit AuthorizationPolicy completeness for east-west traffic
- Identify PII leakage paths in service-to-service communication
- Sequence a 90-day mesh-privacy remediation that respects service owners
Program Fit
Where this fits in your program.
Sharpens the same skills your degree expects you to demonstrate.
Skills
Skills you'll demonstrate.
Each one shows up on your verified credential.
Careers
Roles this prepares you for.
Real titles. Real skill bridges. Pick the one closest to your trajectory.
Career mappings coming soon.