Overview
Learn how to enhance container security through a comprehensive 18-minute conference talk that demonstrates the integration of Docker Scout into CI/CD pipelines. Discover effective methods for detecting and addressing vulnerabilities within container images to strengthen software supply chain security. Master the implementation of automated vulnerability scanning for Pull Requests using GitHub Actions, while gaining practical knowledge about comparing current and base images for continuous security monitoring. Through real-world examples and hands-on demonstrations, explore essential techniques for embedding security checks directly into development workflows, ensuring robust protection for containerized applications in modern software development environments.
Syllabus
Automating Container Security: Docker Scout in CI/CD for Safer Software Supply... - Pradumna V Saraf
Taught by
OpenSSF