The DevSec Guide to Kubernetes

Report Report Cover

This guide explores the unique considerations Kubernetes presents for cloud native application security and how to build on top of its built-in security foundation to embrace DevSecOps. It focuses mostly on securing Kubernetes infrastructure up to the container by leveraging its built-in security features and securing infrastructure as code (IaC) templates used to configure clusters and their components.

Report Snapshot

This report covers:

  • Basic Kubernetes Security Considerations
  • Basic Kubernetes Security Best Practices
  • Kubernetes Security Across the DevOps Lifecycle