Overview
Syllabus
Intro
Containers: Expectations versus reality
Cybercrime is the most profitable type of crime
This is a major vulnerability
Apache struts 2 - the Equifax affair
Container technology 101
Container runtime security 101
Laying the (runtime) foundations
Privileges and Capabilities
Metadata - Adding Labels at build time
Metadata - Adding Labels at runtime
External registry with metadata support
Testing security in the build pipeline
Security Visibility: Basic (Java) Code Scanning
Dependency Scanning
Static Image Scanning
Delaying NFRs to the 'Last Responsible Moment'
Taught by
Devoxx