Are you struggling to implement robust container security at scale without creating friction with your development teams? In this episode, host Ashish Rajan sits down with Cailyn Edwards, Co-Chair of Kubernetes SIG Security and Senior Security Engineer, for a masterclass in practical container security. This episode was recorded LIVE at KubeCon EU, London 2025.
In this episode, you'll learn about:
- Automating Security Effectively: Moving beyond basic vulnerability scanning to implement comprehensive automation
- Bridging the Security-Developer Gap: Strategies for educating developers, building trust, fostering collaboration, and understanding developer use cases instead of just imposing rules.
- The "Shift Down" Philosophy: Why simply "Shifting Left" isn't enough, and how security teams can proactively provide secure foundations, essentially "Shifting Down."
- Leveraging Open Source Tools: Practical discussion around tools like Trivy, Kubeaudit, Dependabot, RenovateBot, TruffleHog, Kube-bench, OPA, and more.
- The Power of Immutable Infrastructure: Exploring the benefits of using minimal, immutable images to drastically reduce patching efforts and enhance security posture.
- Understanding Real Risks: Discussing the dangers lurking in default configurations and easily exposed APIs/ports in container environments.
- Getting Leadership Buy-In: The importance of aligning security initiatives with business goals and securing support from leadership.
Questions asked:
00:00 Intro: Container Security at Scale
01:56 Meet Cailyn Edwards: Kubernetes SIG Security Co-Chair
03:34 Why Container Security Matters: Risks & Exposures Explained
06:21 Automating Container Security: From Scans to Admission Controls
12:19 Essential Container Security Tools (Trivy, OPA, Chainguard & More)
19:35 Overcoming DevSecOps Challenges: Working with Developers
21:31 Proactive Security: Shifting Down, Not Just Left
25:24 Fun Questions with Cailyn
--------------------------------------------------------------------------------
📱Cloud Security Podcast Social Media📱
_____________________________________
🛜 Website: https://cloudsecuritypodcast.tv/
🧑🏾💻 Cloud Security Bootcamp - https://www.cloudsecuritybootcamp.com/
✉️ Cloud Security Newsletter - https://www.cloudsecuritynewsletter.com/
Twitter: https://twitter.com/CloudSecPod
LinkedIn: https://www.linkedin.com/company/Cloud-security-podcast
#cloudsecurity #kubernetes #containersecurity