Amazon Web Services

In this AWS re:Inforce 2023 session, experts from Palo Alto Networks dive deep into container security on AWS. They explore container security layers, including Linux kernel features like namespaces, capabilities, seccomp, and cgroups. The presenters demonstrate how to configure these security layers for specific use cases while minimizing risk on AWS platforms like Amazon EKS and Amazon ECS. They emphasize the principle of least privilege and show how to identify and grant only the necessary extra privileges to containers without using privileged mode. The session also covers tools for profiling containers to determine required privileges and how to implement fine-grained security controls in AWS deployments. Additionally, the speakers introduce Prisma Cloud by Palo Alto Networks, highlighting its comprehensive cloud native application protection capabilities across the full application lifecycle.

product-information
skills-and-how-to
security-marketing-priority
containers
security-identity-compliance
Show 2 more

Up Next

VideoThumbnail
47:39

Simplifying Application Authorization: Amazon Verified Permissions at AWS re:Invent 2023

Nov 22, 2024
VideoThumbnail
2:53:33

Streamlining Patch Management: AWS Systems Manager's Comprehensive Solution for Multi-Account and Multi-Region Patching Operations

Nov 22, 2024
VideoThumbnail
53:14

AWS re:Invent 2023: SaaS DevOps Deep Dive - Automating Multi-Tenant Deployments for Container and Serverless Environments

Nov 22, 2024
VideoThumbnail
1:01:07

Accelerate ML Model Delivery: Implementing End-to-End MLOps Solutions with Amazon SageMaker

Nov 22, 2024
VideoThumbnail
6:45

Grindr's Next-Gen Chat System: Leveraging AWS for Massive Scale and Security

Nov 22, 2024