logo

Securing ISV-Provided Container Images

ID: 945f8af8-bf1b-5398-99f0-5f799bf30914

STIX ID: report--945f8af8-bf1b-5398-99f0-5f799bf30914

Feed Name: Aqua Security Blog

Date Published: 2018-09-17

Date Updated: 2026-04-26

...
...

This guidance outlines best practices for securing ISV-provided container images: scan every image and integrate scanning into CI/CD, eliminate embedded secrets and excessive privileges, enforce vulnerability and license policies, label images to enable segregation and policy enforcement, verify image integrity and provenance with tools like Grafeas and Notary, and apply runtime protection and least-privilege profiles; automating these measures reduces attack surface and ensures consistent security for third-party and in-house images.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.