A hard fact- Kubernetes security needs work. I said it 😅 Our cloud work keeps getting hit by cyberattacks. A recent report says that 99% of companies using cloud services faced attacks last year. https://lnkd.in/dyP8hXd2 It's not a secret; it's happening all the time, but nobody really talks about it. The problems are usually wrong settings, bugs, or giving out too much access. The thing is, it's not because we don't have the cash or the experts to fix it any of these issues. The real issue is we haven't actually taken the steps to solve these problems for good. We've got to start building security into every step of our work, not just as a final check. It's about making it a habit, something we do without even thinking. So I'm asking: How can we make sure security is always part of the job and not just an extra step at the end? #CloudSecurity #DevSecOps #Kubernetes #Cybersecurity
100% agree and that's why we at Practical DevSecOps are on a mission to make #CloudNative #K8s Security accessible to wider #community with the best hands-on learning programs and pathways for #Upskilling #reskilling 🤝🚀
Genuinely feel CKS should be on ops radar for adoption to those best practices with practical hands on. Like anything killercoda.com does a lot for free and controlplane
By engaging a Cyber Security company that can install ISO27001 standards, 24/7 monitoring with vulnerability scanning and Penetration testing. The scanning and Pen testing should also have problems highlighted by importance and then provided with resolution steps. Feel free to reach out if you want all of the above, plus the peace of mind that your cloud environment is monitored and secured. Also the above tools also can scan API's as well.
Profits. When profits are top of mind constantly, teams are indirectly put under pressure to trade security and fine architecture for increased velocity.
CEO & Co-Founder, ARMO
11moThanks for reposting Michael Sisul & Carlos Eduardo de Oliveira Nogueira