Securing Kubernetes Clusters: From Access Control to System Hardening
About this talk
This talk addresses the security challenges faced by Kubernetes clusters, which are often targeted due to misconfigurations and insufficient hardening. The speakers explore advanced security practices such as RBAC auditing, Network Policy testing, runtime security monitoring, and Linux-level hardening techniques. Attendees learn how to enforce least privilege with RBAC, block unauthorized traffic with Network Policies, and detect anomalies in real-time using tools like Falco. The session also covers strategies for reducing attack surfaces through the implementation of seccomp profiles, Linux Security Modules, dropped capabilities, and sandboxing technologies like gVisor and Kata Containers, providing actionable strategies to enhance the security of Kubernetes environments. Rafik Harabi, a Senior Solution Architect, and Mohamed Rafraf, a Kubernetes Platform Engineer, bring extensive experience to the discussion.
More from this event
See all 108 talks →
Why are we still talking about containers? - Kelsey Hightower at ContainerDays 2025
46:56
Saxo Service Blueprint: Bridging Old and New World with Kubernetes Operators - Jinhong Brejnholt
36:25
Engineering Velocity, Building Trust: DevOps in 2025 - Stephan Stapel
33:17
Getting Started with eBPF Made Easy - Qasim Sarfraz & Michael Friese
33:05