The State of Kubernetes Security

  • Wednesday, 06 Mar 2019 1:00PM EST (06 Mar 2019 18:00 UTC)
  • Speaker: Liz Rice

Kubernetes is fundamentally a complex system with lots of different potential attack vectors aimed at data theft, currency mining and other threats. This talk provides an overview of the current state of security-related features in Kubernetes, and gives directional starting points on how to secure Kubernetes components and the applications that run on top of these Kubernetes components. For the topics explored, pointers on where to further investigate will be offered.

Topics Covered:

  • Container image scanning and container security
  • Security boundaries (pod, namespace, node, cluster)
  • Securing the control plane and Kubernetes APIs
  • Authentication and authorization, including new tools available
  • Say no to root (and why)!
  • Runtime considerations, secrets management and more!