Victor Szalvay Profile picture
PM @googlecloud, Kubernetes, containers, DevOps. Opinions are my own.
Oct 26, 2022 8 tweets 3 min read
Kubernetes and container security can be hard. We hear you. That's why #GKE now provides built in workload security posture management in public preview.
cloud.google.com/blog/products/…

🧵Let's dive in! Once enabled for your clusters, GKE security posture scans your workloads on two dimensions:
- Misconfigurations (comparing against CNCF pod spec security standards
- OS level CVE vulnerabilities

These are surfaced in a snazzy dashboard with opinionated severity ratings Image