惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

人人都是产品经理
人人都是产品经理
Blog — PlanetScale
Blog — PlanetScale
MyScale Blog
MyScale Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
WordPress大学
WordPress大学
Vercel News
Vercel News
D
Docker
博客园 - 聂微东
T
Tailwind CSS Blog
aimingoo的专栏
aimingoo的专栏
云风的 BLOG
云风的 BLOG
D
DataBreaches.Net
B
Blog RSS Feed
酷 壳 – CoolShell
酷 壳 – CoolShell
博客园 - Franky
Microsoft Security Blog
Microsoft Security Blog
美团技术团队
F
Fortinet All Blogs
MongoDB | Blog
MongoDB | Blog
T
The Blog of Author Tim Ferriss
GbyAI
GbyAI
N
Netflix TechBlog - Medium
G
Google Developers Blog
腾讯CDC

Datadog | The Monitor blog

Introducing our open source AI-native SAST Instrument and monitor Boomi integration flows with OpenTelemetry and Datadog Not all index scans are equal: How we cut query latency by over 99% Platform engineering metrics: What to measure and what to ignore Integrate Recorded Future threat intelligence with Datadog Cloud SIEM CI/CD security: threat modeling using a MITRE-style threat matrix CI/CD security: How to secure your GitHub ecosystem Ingress NGINX is EOL: A practical guide for migrating to Kubernetes Gateway API Operating agentic AI with Amazon Bedrock AgentCore and Datadog LLM Observability: Lessons from NTT DATA Introducing the Datadog Code Security MCP Capture and analyze custom heatmaps in Session Replay Understand session replays faster with AI summaries and smart chapters Monitor ClickHouse query performance with Datadog Database Monitoring How we designed empathetic alert sounds for on-call engineers Search and act across Datadog to resolve issues faster with Bits Assistant Measure the business impact of every product change with Datadog Experiments Analyzing round trip query latency Configuring JavaScript caches for better performance Introducing Bits AI Dev Agent for Code Security Datadog achieves ISO 42001 certification for responsible AI Monitor Nutanix clusters, hosts, and VMs with Datadog Monitor Juniper Mist in Datadog A new Host Map for modern infrastructure Annotate traces to improve LLM quality with Datadog LLM Observability What’s new in Cloud SIEM: AI-powered investigations, enhanced threat intelligence, and scalable security operations Explore Kubernetes with native OpenTelemetry data Monitor Oracle Fusion Cloud Applications with Datadog Announcing the Datadog Terraform provider v4.0.0 Scaling Kubernetes workloads on custom metrics How to design cloud environments for AI-powered threat analysis
Monitor your Kubernetes security posture with Datadog Clo...
Etienne Le Blan, Dany Kanes · 2024-04-02 · via Datadog | The Monitor blog
Etienne Le Blan

Etienne Le Blan

Dany Kanes

Dany Kanes

In recent years, the popularity of Kubernetes deployments has surged—as has the prevalence of security risks associated with the technology. Red Hat’s State of Kubernetes Security for 2023 reveals that 67 percent of organizations have encountered delays in application deployments due to Kubernetes-related security issues. Additionally, 37 percent have experienced significant revenue or customer losses stemming from Kubernetes security incidents. These trends underscore the importance of proactively monitoring your Kubernetes environment for misconfigurations and vulnerabilities to mitigate business risk.

That’s why we are excited to introduce our new Kubernetes Security Posture Management (KSPM) capabilities, which are available within Datadog Cloud Security. KSPM helps you proactively strengthen the security posture of your Kubernetes deployments by benchmarking your environment against established industry best practices, such as those defined by CIS, or your own custom detection policies.

In this post, we’ll show you how KSPM helps you:

  • Monitor risk across Kubernetes deployments

  • Assess your Kubernetes security posture against industry-standard frameworks

  • Create your own Kubernetes security detections

Monitor risk across Kubernetes deployments

Datadog’s security experts have curated a comprehensive list of 100+ built-in Kubernetes detection rules that are now available in Cloud Security. These rules relieve security teams of the hard work of searching for common Kubernetes security issues and determining how best to solve them—now, Datadog will scan your environment for risks defined by these rules and offer clear descriptions of any issues detected, along with straightforward remediation guidelines.

Each finding contains all the context you need to identify the issue’s impact, such as the full resource configuration, resource-level tags, and a map of the resource’s relationships with other components of your infrastructure. Once you understand the problem and its impact, you can quickly start remediating the issue by creating a Jira ticket from within Cloud Security or executing a Datadog workflow.

EKS cluster misconfiguration finding in Cloud Security

Assess your Kubernetes security posture against industry-standard frameworks

With a wide range of resources and controls for Kubernetes security available online, it can be complicated to clearly understand and evaluate what good security posture means. Datadog Cloud Security lets you evaluate your posture against industry-standard frameworks like CIS in real time and maps out requirements and controls in an easy-to-consume report.

Cloud Security provides a Posture Score that helps you understand your security and compliance status at a glance through a single metric. You can obtain this score for your entire organization or for specific teams, accounts, and environments—including your Kubernetes deployments. From this report page, you can generate detailed PDF or CSV exports to share internally or to auditors, or use our API to programmatically interact with the findings surfaced.

CIS compliance page for EKS in Datadog Cloud Security

Create your own Kubernetes security detections

Each organization has unique security needs. Datadog Cloud Security empowers you to create your own detection rules by cloning an existing control or creating one from scratch.

Rules are written in the Rego policy language, a simple but flexible Python-like language that serves as the industry standard for detection rules. As you draft your detection query, you can test it immediately against your existing Kubernetes resources to ensure the rule is accurate and works as expected.

In-app rule validation for Cloud Security detections

Once your detection is ready, you can customize its severity (Critical, High, Medium, Low, or Info) and set alerts so the right people will be notified immediately of any findings for the rule.

Start monitoring Kubernetes security risks

In addition to these KSPM features, Datadog Cloud Security also enables you to:

Our new KSPM frameworks are now generally available to all CSM Pro customers for AWS EKS, Azure AKS, and unmanaged Kubernetes deployments, with Google Cloud GKE support coming later this year. Check out our KSPM documentation to get started, or head to the Frameworks page in Datadog Cloud Security. If you don’t already have a Datadog account, you can sign up for a 14-day free trial today.