Amazon Web Services

In this AWS re:Inforce 2023 session, experts from Palo Alto Networks dive deep into container security on AWS. They explore container security layers, including Linux kernel features like namespaces, capabilities, seccomp, and cgroups. The presenters demonstrate how to configure these security layers for specific use cases while minimizing risk on AWS platforms like Amazon EKS and Amazon ECS. They emphasize the principle of least privilege and show how to identify and grant only the necessary extra privileges to containers without using privileged mode. The session also covers tools for profiling containers to determine required privileges and how to implement fine-grained security controls in AWS deployments. Additionally, the speakers introduce Prisma Cloud by Palo Alto Networks, highlighting its comprehensive cloud native application protection capabilities across the full application lifecycle.

product-information
skills-and-how-to
security-marketing-priority
containers
security-identity-compliance
Show 2 more

Up Next

VideoThumbnail
52:11

Firewalls in AWS: Types, Placement Strategies, and Best Practices for Cloud Security

Nov 22, 2024
VideoThumbnail
31:20

Enhancing Security Operations with Amazon OpenSearch Service: Introducing Security Analytics for Efficient Threat Detection and Investigation

Nov 22, 2024
VideoThumbnail
43:12

Amazon ECR Unveiled: Architecture, Features, and Scalability for Container Image Management

Nov 22, 2024
VideoThumbnail
58:49

AWS Clean Rooms ML and Differential Privacy: Revolutionizing Secure Data Collaboration

Nov 22, 2024
VideoThumbnail
56:48

AWS re:Invent 2023: Latest Innovations in Cloud Governance and Compliance Services

Nov 22, 2024