We’re pleased to announce the limited-availability (beta) release of Oracle Cloud Infrastructure (OCI) Kubernetes Engine (OKE) Container Governance through Oracle Cloud Guard’s Container Security. The integration provides a single-pane-of-glass experience for managing large-scale containerized workload compliance.
Organizations are increasingly adopting containerization to build, deploy, and manage applications. Containers and Kubernetes offer unparalleled flexibility, scalability, and efficiency, making them a cornerstone of modern cloud native architectures. However, with great power comes great responsibility. As organizations scale their containerized environments, a robust governance model becomes paramount in the overall containerization strategy. Here, container governance plays a crucial role.
Container governance refers to the policies, practices, and tools that help ensure that containers operate securely and efficiently and comply with organizational and regulatory requirements.
Effective container governance is essential for the following reasons:
Multiple solutions exist for applying container governance to Kubernetes clusters. Examples range from native Kubernetes functionality or open source technologies that require in-depth knowledge to costly third-party solutions.
Teaming up with Oracle Cloud Guard, OKE has created a feature that makes applying container governance to your workloads easy, using the same Cloud Guard interface used to apply overall security posture management to your tenancy. Container Governance through Cloud Guard provides customers with a secure and governed container runtime environment, such as Kubernetes. We achieve this goal through the automated detection and enforcement of security, operational, and organizational policies. You can apply this configuration to any OKE-supported node type. This feature combines Cloud Security Posture Management (CSPM) and Kubernetes Security Posture Management (KSPM).
The Cloud Guard and OKE solution offers the following key features and benefits:
We’re actively recruiting beta participants! Sign up for the OCI Container Security Container Governance beta.
For more information on the concepts in this blog post, Oracle Cloud Infrastructure, Oracle Cloud Guard, and Oracle Kubernetes Engine, see the following resources:
Alan is a product manager for OCI's Containers, Kubernetes, and Serverless product family. He has a passion for security and helping applications focus primarily on their business logic versus common platform level functionality
Shasi Pulijala is responsible for Oracle Cloud Guard and the integration of Cloud Guard with the Human Capital Management (HCM) Cloud and other Fusion applications. Prior to Oracle, she worked on cryptography solutions, including hardware security modules and more at Marvell Inc.
Previous Post
Next Post