Speakers
Synopsis
Many organisations have adopted a Cloud-Native stack in order to improve scalability and resilience. While containers can offer improved security through isolation and stronger default configurations compared to VMs, certain Linux components remain outside the scope of namespacing.
It is crucial to recognize that containers are not a silver bullet for security and require specific configurations to reach their full security potential, but all too often a misunderstanding of specific terminology in the documentation, or a lack of understanding about the default configuration settings can lead to misconfiguration.
In this talk, we explore Container Security concepts, and how configuring them can help to reduce the Kubernetes Attack Surface, leaving you with clear action items to check in your own clusters.