There's a KubeCon North America talk (also from 2019) that goes into more detail on this very issue including some additional recommendations
HN user
rifelpet
Location: USA (Central Time)
Remote: Yes (only)
Willing to relocate: No
Technologies: Kubernetes, AWS, Terraform, GitLab CI, Golang, Python, Ansible, Linux, Shell scripting
Email: pgrifel at gmail / https://github.com/rifelpet / https://www.linkedin.com/in/peterrifel/
I have 7 years of experience in DevOps / Platform / Site Reliability Engineering. I'm a maintainer of Kops (a Kubernetes cluster management tool) and have years of experience building and maintaining self-serve CI-based solutions for Kubernetes clusters and cloud resource management with Terraform. I've worked to significantly improve reliability of high volume services (>15k req/sec) and their underlying infrastructure. I've helped reduce outage frequency and impact while also reducing lead time on infrastructure needs through automation and the aforementioned self-serve solutions. I can facilitate engineering team growth by helping establish infrastructure patterns for success.
They're addressing the lack of service accounts, targeted for 13.1: