Cut Through Vulnerability Noise with Runtime Insights (DockerCon 2023)

Опубликовано: 04 Ноябрь 2024
на канале: Docker
326
12

Shift-left security has a noise problem. Developers working with pre-release scanning tools find themselves drowning in a deluge of scanner output. Finding vulnerabilities is never a problem — determining if a risk must be addressed is the real challenge.
Try Docker Scout now!
https://www.docker.com/products/docke...

Successful vulnerability management and supply chain security require teams to prioritize issues based on the actual risk to their organization. Learn:

How runtime insights can provide a lens into risk by identifying the packages actually loaded in memory at runtime
How filtering based on what is in use and exploitable helps prioritize where to focus, reducing vulnerability noise up to 95%
How to analyze Docker images, generate a corresponding software bill of materials (SBOM), and correlate an image inventory with a vulnerability database to identify common vulnerabilities and exposures (CVEs) in your images
How Sysdig Secure and Docker Scout are used together to prioritize issues using runtime context and improve container security from source to run.

Presentation: Cut Through Vulnerability Noise with Runtime Insights
Speakers:
Christian Dupuis, Sr. Principal Engineer, Docker
Alex Lawrence, Principal Security Architect, Sysdig

Try Docker Scout now!
https://www.docker.com/products/docke...

Resources:

Docker Scout announcement: https://www.docker.com/blog/announcin...
Docker Scout product page: https://www.docker.com/products/docke...
Docker Scout Design Partner Program:https://www.docker.com/scout-design-p...
Try Docker Scout: https://www.docker.com/products/docke...
Looking to get up and running? Use our Quickstart guide: https://docs.docker.com/scout/quickst...
Highlights from DockerCon 2023 New Docker Local, Cloud, and AI/ML Innovations :https://www.docker.com/blog/highlight...


Join the conversation!
LinkedIn → https://dockr.ly/LinkedIn
Twitter → https://dockr.ly/Twitter
Facebook → https://dockr.ly/Facebook
Instagram → https://dockr.ly/Instagram

ABOUT DOCKER: Docker provides a suite of development tools, services, trusted content, and automations, used individually or together, to accelerate the delivery of secure applications.

#Docker #Containers #Devops