logo

Falco is now available as an Amazon EKS add-on

ID: a51544f2-1a87-5319-9280-778f7df0395e

STIX ID: report--a51544f2-1a87-5319-9280-778f7df0395e

Feed Name: Sysdig Blog

Date Published: 2025-06-17

Date Updated: 2026-05-01

...
...

This document announces Falco’s availability as an AWS-validated Amazon EKS add-on and explains how it simplifies runtime security deployment for Kubernetes by offering single-command installation, native AWS integrations (CloudWatch, CloudTrail, IRSA), and managed lifecycle updates. It outlines installation via AWS CLI/eksctl/Console, describes Falco’s rule-based detection model, shows how to customize rules with ConfigMaps and DaemonSet patches, and provides steps to view events, troubleshoot, and stay updated on versions—enabling consistent, scalable runtime threat detection across EKS clusters.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.