Continuous CVE Scanning with Trivy Operator - Vitaliy Schreibmann

15:50 · 03 Sep 2024 – 04 Sep 2024 · YouTube

About this talk

This talk addresses the critical need for timely identification and remediation of software vulnerabilities in critical infrastructure environments. The speaker discusses the limitations of traditional CI pipeline approaches that often overlook security gaps in production. He shares insights from the implementation of the Trivy Operator for continuous and periodic vulnerability scanning of production images, including the challenges faced during integration and the management of CVEs, with a focus on handling false positive alerts. Vitaliy Schreibmann, a consultant at Senacor Technologies AG, brings his expertise in DevOps and large transformation projects to this session.

From event

ContainerDays Conference 2024

03 Sep 2024 – 04 Sep 2024

All event videos
Back to Watch