Platform Engineering Workshop

Who this is for

This workshop is designed for platform engineers and DevOps leads with intermediate to advanced experience with OpenShift and Kubernetes. Developers and Developer Leads will also appreciate this workshop as it gives them greater insight into OpenShift and Platform Engineering concepts.

Developer experience impacts humans and AI

The numbers tell a compelling story about why platform engineering matters:

  • 50% of developers lose 10+ hours weekly to inefficiencies — an estimated annual $7.9M loss per 500 developers1

  • 243% increase in incidents per pull request when AI lacks context — potential outage, security event, or customer-facing failure2

  • 46% of platform teams remain mostly reactive, unable to focus on top challenges like driving developer adoption3

Your role and mission

You are a platform engineer at Parasol Insurance. Your development teams are growing, but several challenges are slowing them down:

  • Onboarding is slow — new developers wait days for access, environments, and documentation

  • Environments are inconsistent — "works on my machine" is a regular refrain, and production incidents trace back to configuration drift

  • Developers file tickets instead of self-serving — provisioning a database, spinning up a dev environment, or accessing a secret requires waiting on another team

  • Security teams struggle with software supply chain compliance — there’s no consistent way to scan dependencies, generate SBOMs, or verify artifact provenance across teams

  • The C-suite wants AI everywhere — developers should be using AI coding assistants to accelerate development and integrating AI capabilities into Parasol’s applications, but there’s no standardized approach

Three Personas. One loop. Now with Agents.
Figure 1. Three Personas. One loop. Now with Agents.

Your CTO has tasked you with expanding the platform engineering initiatives to build out a consistent Internal Developer Platform (IDP) and Internal Developer Portal (based on Red Hat Developer Hub) that facilitates better self-service and discovery for developers and AI agents.

The platform should make the secure path the easy path — developers get self-service access to golden-path templates, pre-configured CI/CD pipelines, standardized AI model access, and a unified portal where they and their AI harnesses can discover services, APIs, and documentation without filing a ticket.

What you will learn

  • Platform engineering fundamentals — golden paths, developer experience challenges, and the OpenShift capabilities that form an IDP foundation

  • GitOps-driven deployment — declarative infrastructure management with Argo CD and the app-of-apps pattern, as opposed to scripting and manual patches

  • Secrets management — manage and distribute secrets securely using HashiCorp Vault and External Secrets Operator

  • Software catalog — modeling systems, components, APIs, and exposing documentation; exposing them to developers and AI agents via MCP/APIs

  • Self-service templates — golden-path workflows that deliver production-ready applications with zero YAML and security by default

  • Secure supply chain — automated SBOM generation, vulnerability scanning, and compliance gates in CI/CD pipelines

  • Cloud development environments — rolling out secure, standardized AI-enabled workspaces with OpenShift Dev Spaces

  • Identity and access — SSO integration with Keycloak across the platform

What you will build

You will progressively build Parasol’s IDP using a GitOps-driven approach:

  1. Explore the application platform — See the OpenShift capabilities that form the foundation of internal platform platform

  2. Deploy a Developer Portal — Use Argo CD to deploy a minimal instance of Red Hat Developer Hub (based on CNCF’s Backstage)

  3. Connect Developer Hub to the platform — Add authentication, CI/CD visibility, Kubernetes and JIRA integrations, and OpenShift plugins

  4. Build Context for Agents and Developers — Register systems, components, APIs, and documentation in Developer Hub; query them with Lightspeed for Developer Hub via MCP

  5. Enable self-service templates — Experience the golden path: create secure, compliant, and production-ready applications in minutes with zero YAML

  6. Launch AI-enabled development environments — Use OpenShift Dev Spaces to provide developers with standardized, browser-based workspaces with agentic AI coding assistance built-in

Each step builds on the previous one. You will advance through configurations using Argo CD — no hand-crafted YAML required.

Prerequisites

  • Familiarity with OpenShift and Kubernetes concepts

  • Basic understanding of Git and YAML

  • Experience with CLI tooling (oc, git)

Let’s get started!

Click on Workshop details in the navigation to review the environment setup, then jump into Module 1.