THANK YOU FOR SUBSCRIBING
Enterprise Security Magazine | Monday, May 15, 2023
The Kubernetes Security Operations Center (KSOC) unveils the first real-time Kubernetes Security Posture Management (KSPM) platform.
FREMONT, CA: “Anybody who operates Kubernetes knows how ephemeral workloads are; they come, and they go in the space of 5 minutes. There is no way to secure Kubernetes without taking this into account, and yet that is what the industry has been trying to force-feed platform teams and cloud security teams. It hasn't worked; nobody is using those solutions. KSOC is here to change all that and give teams a solution so they can finally operationalize security at the speed of Kubernetes," says Co-founder and CTO Jimmy Mesta. Kubernetes Security Operations Center (KSOC) has introduced the industry's first and only real-time KSPM platform with security capabilities considering the critical context of the Kubernetes lifecycle. This enhances the precision of cloud security teams that struggle to operationalize security in dynamic Kubernetes environments. With real-time context in the KSOC platform, current and historical information pinpoints transient adversary activity while providing remediation advice based on the cluster's current state.
Cloud security teams have struggled with KSPM tools that, by definition, produce findings that may or may not be pertinent, depending on whether the associated workloads are still running. This reality has rendered it impossible for teams to adhere to remediation recommendations or comprehend their true posture. The polling intervals of these tools can range from hours to days, whereas a vulnerable Kubernetes misconfiguration or an overly permissive RBAC policy can compromise and exfiltrate data in seconds.
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
For cloud security teams attempting to secure Kubernetes, it is hazardous to disregard the Kubernetes lifecycle. This lifecycle comprises rapidly rising and falling Kubernetes workloads. Evidence shows that orchestrators can increase churn by up to five times, and containers survive for less than 5 minutes. A typical day for a Kubernetes cluster can entail tens of thousands of pod and container deployments with short lifetimes.
The CTO & Head of Security Research at Invicti, Frank Catucci, says, “KSOC allows for a bird's eye view perspective of the security posture of what is running in a cluster. Scanning running workloads instead of everything contained in the image registry allows teams to focus and have visibility into the security practices of 3rd party components trusted to run in the cluster. Continuous real-time security allows for prompt feedback and action.”
With this release, KSOC aims to enable cloud security teams to ultimately operationalize security for their Kubernetes estate, allowing them to control one of the largest attack vectors and limit the impact of any incident. Ninety-six percent of developers use Kubernetes for application deployment, making it the primary deployment mechanism for most DevOps processes and cloud-native applications.
More in News