Skip to main content
📬 Get weekly Production AI insights Practical notes on Kubernetes, AI infrastructure and platform engineering. No spam. Subscribe free
A speaker on stage at DevOpsDays Amsterdam 2025 in front of a slide titled The OTel call for o11y SMEs
DevOps

DevOpsDays Amsterdam 2025: OpenTelemetry and OpenSSF

DevOpsDays Amsterdam 2025 in photos: an OpenTelemetry adoption story, OpenSSF supply chain practices, trust-driven teams, and Identity Week Europe.

LB
Luca Berton
· 4 min read

DevOpsDays Amsterdam 2025 ran from 18 to 20 June, and I spent the afternoon of day two, 19 June, in the main room. Three talks stuck with me: an honest OpenTelemetry adoption story, a tour of OpenSSF practices for securing the software supply chain, and a talk on trust inside teams. The day before, I had been at Identity Week Europe, so there is a short section on that at the end.

An OpenTelemetry adoption story

The official programme lists Diana Todea’s talk as “From zero to developer: my one year serendipity journey with OpenTelemetry”. One slide in her deck was titled “The OTel call for o11y SMEs” and pointed at the OpenTelemetry Certified Associate (OTCA) exam from the Cloud Native Computing Foundation. The slide says the certification covers tracing, metrics and logs, with 12 months to schedule the exam and two attempts.

Speaker on stage at DevOpsDays Amsterdam 2025 beside a slide titled The OTel call for o11y SMEs, showing the OpenTelemetry Certified Associate certification

The “OTel call for o11y SMEs” slide, with the OpenTelemetry Certified Associate (OTCA) certification page.

The framing slide was the clearest one. OpenTelemetry was drawn as an observability framework and toolkit that handles generation, export and collection of logs, traces and metrics, so instrumenting applications and systems gets easier. Next to it, the slide listed what it is not: it is open source and vendor and tools agnostic, but it is not an observability backend or frontend, so you still need your own storage and visualisation tools.

A slide at DevOpsDays Amsterdam showing OpenTelemetry as an observability framework and toolkit for generation, export and collection of logs, traces and metrics, noting it is not a backend or frontend

OpenTelemetry as a toolkit: logs, traces and metrics out, but bring your own storage and visualisation.

That matches how the OpenTelemetry site describes the project: instrument once with the APIs and SDKs, then export to the backend you choose.

The “we loved it, but” slide

The part I valued most was the candid take-aways slide, based on a project where the speaker’s team ran a proof of concept. The positives were good collaboration between SRE and software engineers, a common format and protocol for telemetry data, and vendor neutrality. Then the slide listed what hurt:

  • instrumentation comes with a lot of manual effort;
  • onboarding was not the smoothest because of confusing docs;
  • the team had not accounted for enough engineering time and manpower;
  • they were not satisfied with the open source visualisation frontends;
  • OpenTelemetry was not yet a stable project, so what kind of support would they get in production?

Take-aways slide from an OpenTelemetry talk at DevOpsDays Amsterdam listing benefits such as vendor neutrality and the problems the team met, such as manual instrumentation effort

Take-aways: what the team loved about OpenTelemetry, and what slowed them down.

My take: the list lines up with what I see on platform projects. The collector and the semantic conventions are the easy part. The cost is in instrumentation effort and in choosing and running the backend. Some of these points will have aged since the talk, as OpenTelemetry keeps moving, so check current stability status per signal before judging it. For hands-on follow-ups see my posts on observability-driven development with OTel and the OTel Amsterdam meetup.

OpenSSF best practices for everyone

Avishay Balter of Microsoft gave “Building Secure Software: OpenSSF Best Practices for Everyone!”, with the Open Source Security Foundation branding on the deck.

Title slide of Building Secure Software - OpenSSF Best Practices for Everyone by Avishay Balter of Microsoft, with the speaker on stage at DevOpsDays Amsterdam

Opening slide of the OpenSSF talk.

One slide, “The Software Supply Chain”, sketched the path from source code management through build and CI/CD to packaging and finally use, with dependencies feeding into the loop and the user at the end. It is a useful reminder that every arrow is a place where something can be tampered with, which is why provenance and dependency hygiene matter as much as code review.

The Software Supply Chain slide from the OpenSSF talk at DevOpsDays Amsterdam, showing code, build, package and use stages with dependencies feeding in

The supply chain slide: each stage from source to user is something to protect.

Trust-driven teams

The last talk I caught was Busra Koken’s “Trust-Driven Teams: Building High Performance Through Connection”, listed in the programme for the 16:15 slot. I only photographed the opening slide, so I will not summarise it, but it was a good counterweight to a day of tooling talks.

Evening in the main hall

The conference programme on 19 June ended with dinner, drinks and a social programme according to the schedule, followed by an after party with a pub quiz. The main hall switched to round tables for it.

The DevOpsDays Amsterdam main hall set up with round tables and the event logo on the screens before the evening programme

The main hall with the DevOpsDays Amsterdam logo on every screen, set up for the evening.

Earlier that week: Identity Week Europe

On 18 June I visited Identity Week Europe in Amsterdam, a trade event on digital identity and secure documents. The sponsor wall named the event “Global, Trusted, Visionary”, with sponsors including Entrust, IDEMIA Smart Identity and Veriff among the platinum names.

Luca Berton taking a selfie in front of the Identity Week Europe sponsor wall listing title, diamond, platinum and other sponsors

The Identity Week Europe sponsor wall.

In the theatre I caught part of a panel titled “Ensuring authenticity: Innovations and challenges in breeder document management”. Breeder documents, such as birth certificates, are what other identity documents get issued from. I did not note details of the discussion.

Identity Week Europe stage with a panel on ensuring authenticity in breeder document management and mostly empty rows of chairs

The panel on authenticity and breeder document management.

At a seminar stage run by Terrapinn, a slide on the screen was headed “Concept creation by IDEMIA Design team”, about the design of a security document.

Identity Week Seminar area with a speaker on stage next to a screen showing a slide about concept creation by the IDEMIA design team

The seminar stage, with a slide on security document design.

My take: identity work sits close to the platform and security topics I cover, from workload identity to access management, for example Keycloak on Kubernetes.

Free 30-min Production AI consultation

Book Now