View
738
Download
0
Category
Preview:
Citation preview
Why Do We Need To Rethink Container Security
Sasan Padidar
Founder & CTO @ FLAWCHECK
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
HOW CAN WE EXPEDITE CONTAINER ADOPTION?
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
WHY DO WE NEED TO RETHINK SECURITY?
• Trusting images & containers is key• Current security products are not designed
for container ecosystems• Scalability is critical• Products serving containers need to be
agile and flexible • Security products need to integrate tightly
with the SDLC
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
HOW CAN WE TRUST IMAGES?
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
FLAWCHECK SECURITY ENGINE
•Scalable solution for detecting vulnerabilities & malware in containers
•Takes seconds per container (supports parallelization & concurrent analysis for limitless scale)
•Runs on-premise or in the cloud
•Supports Docker, CoreOS, Continuum
•Checks containers before they reach production environments
•Checks containers as they are turned on or scaled up
•Checkpoint inserted into the data pipeline to layer policy on top of containers
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
DEMO TEARING APART CONTAINERS What did we find?
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
THANK YOU
Sasan Padidar, Founder & CTO
spadidar@FlawCheck.com
@spadidar
Are you using Docker in development environments but concerned about the security of running it in production?
Register today for an unlimited usage 30-day free enterprise trial at: https://console.flawcheck.com/register
SASAN PADIDAR - FLAWCHECK - KUBECON 2015
Recommended