Search results for: security


Cloud Native Security Whitepaper – Italian translation

Posted on June 3, 2022

This paper intends to provide organizations and their technical leadership with a clear understanding of cloud native security, its incorporation in their lifecycle processes, and considerations for determining the most appropriate application thereof.


Cloud Native Security Whitepaper

Posted on June 3, 2022

This paper intends to provide organizations and their technical leadership with a clear understanding of cloud native security, its incorporation in their lifecycle processes, and considerations for determining the most appropriate application thereof.


CNCF On-Demand Webinar: Kubernetes Security – Where do we begin?

Posted on May 26, 2022

Discussion on Kubernetes security


Kubernetes ephemeral container security

Posted on May 24, 2022 | Philip Laine

Guest post originally published on Xenit’s blog by Philip Laine, DevOps Engineer at Xenit Attempting to debug a Pod and realizing that you can’t install curl due to security settings has to be a meme at…


Computing: “Application security: shift-left is necessary but insufficent”

Posted on May 20, 2022

Integrating security checks into code should be seen as part of a bigger picture, says Kubecon panelShift-left, aka DevSecOps, the practice of making security checks part of the software development lifecycle rather than being a separate…


Announcing the Refreshed Cloud Native Security Whitepaper

Posted on May 18, 2022

The CNCF Security Technical Advisory Group (TAG) has just released a refreshed Cloud Native Security Whitepaper v2 to help educate the community about best practices for securing cloud native deployments. The whitepaper intends to provide organizations…


CNCF Live Webinar: KubeClarity: Bringing Clarity to Your Kubernetes Artifacts Security

Posted on May 17, 2022

While vulnerabilities detection became mainstream in the last couple of years, doing it effectively, at the right stages of SDLC, while relying on multiple sources in parallel, is stillchallenging. In this webinar we’ll introduce KubeClarity, an…


Cloud Native Live: Workload misconfiguration – the #1 security threat when using Kubernetes

Posted on April 13, 2022

Workload misconfiguration is the #1 security threat when using Kubernetes: here’s how you eliminate that risk. A recent report has suggested 94% of companies using Kubernetes has encountered an avoidable security vulnerability in the last year….


A MAP for Kubernetes supply chain security

Posted on April 12, 2022 | Jim Bugwadia

Guest post originally published on the Nirmata blog by Jim Bugwadia The sharp increase in software supply chain attacks has made securing the build and delivery of software a critical topic. But what does this mean…


Flux security: Using pod security standard “restricted”

Posted on April 5, 2022 | Daniel Holbach

Project post originally published on the Flux Blog by Daniel Holbach Next up in our blog series about Flux Security is how we moved to Pod Security Standard “restricted”, all the background info you need to know and…