Container Security Engineering (Paperback)

Sprache: Englisch

Verlag: Independently Published, 2025

9798279346400

Anbieter: Grand Eagle Retail, Bensenville, IL, USAGrand Eagle Retail

Verkäufer/-in mit 5 Sternen

AbeBooks-Verkäufer/-in seit 12. Oktober 2005

Artikel dieses Verkäufers ansehen
Softcover

Zustand: Neu

EUR 29,56

 Versand gratis 
Versand innerhalb von USA

Anzahl: 1 verfügbar

In den Warenkorb
Kostenlose Rückgaben innerhalb von 30 Tagen

Artikelbeschreibung vom Verkäufer

Paperback. Container Security Engineering Rootless Containers, Supply-Chain Integrity, and Runtime Defense for Modern DevSecOps Containers power the world's most critical infrastructure-but most container platforms are still deployed with implicit trust, excessive privileges, and fragile supply chains. As attacks shift from applications to build pipelines, registries, and runtimes, traditional "container security basics" are no longer enough.Container Security Engineering is the definitive, modern guide for building hardened, verifiable, and continuously defended container platforms from the kernel up. Written for today's DevSecOps reality and tomorrow's threat landscape, this book moves beyond theory to deliver practical, production-ready security engineering for Linux containers.This is a systems-level security playbook for engineers responsible for protecting real workloads in hostile environments. What You'll LearnThis book walks you through the entire container security lifecycle, combining deep technical foundations with hands-on implementation: Threat modeling containers with MITRE ATT&CK, shared-kernel risks, and real escape vectors Rootless container architectures using Podman and Docker with secure UID/GID mappings and user namespaces Host and kernel hardening with seccomp, SELinux, AppArmor, sysctl controls, and No New Privileges Supply-chain security with reproducible builds, vulnerability scanning, and SBOM generation using Trivy and Syft Image signing, provenance, and trust enforcement with cosign, registries, and policy gates CI/CD security automation using GitHub Actions, Open Policy Agent (OPA), and release controls Runtime defense and isolation across networking, filesystem access, and process boundaries eBPF-driven detection and observability with Falco and Tetragon for real-time threat visibility Zero-Trust container platforms, workload identity, micro-segmentation, and continuous validation A capstone project that builds a fully secured, monitored, and policy-enforced container platform from scratch Who This Book Is ForThis book is designed for professionals who need security guarantees, not assumptions: - DevSecOps engineers securing CI/CD pipelines and production clusters- Platform engineers building rootless, least-privilege container runtimes- SREs and system administrators hardening Linux hosts and container platforms- Security engineers and analysts seeking runtime visibility and detection- Architects designing compliant, auditable, and zero-trust container environmentsA working knowledge of Linux and containers is helpful-but this book teaches the security engineering mindset . Modern, Practical, and Enterprise-ReadyAll configurations, policies, and workflows have been validated on real Linux environments, including Fedora, Ubuntu, RHEL, and Rocky Linux. The book emphasizes open-source, vendor-neutral tooling and aligns with industry standards such as: - CIS Benchmarks- NIST SP 800-190- MITRE ATT&CK for ContainersAppendices provide ready-to-use reference material, including rootless configuration guides, seccomp and SELinux cheat sheets, CI/CD templates, runtime detection rules, attack simulations, and a detailed glossary of container security terms. Why This Book MattersContainer security has entered a new era-defined by rootless execution, verified supply chains, and continuous runtime defense. Organizations that fail to adapt will continue to ship insecure platforms by default.Container Security Engineering Shipping may be from multiple locations in the US or from the UK, depending on stock availability.

Bestandsnummer des Verkäufers 9798279346400

Titel
Container Security Engineering (Paperback)
Autor
Zak Illman
Verlag
Independently Published
Veröffentlichungsjahr
2025
Zustand
new
Einband
Paperback
Sprache
Englisch
ISBN-13
9798279346400

Grand Eagle Retail

Bensenville, IL, USA

Verkäufer/-in mit 5 Sternen

AbeBooks-Verkäufer/-in seit 12. Oktober 2005

Versandkosten innerhalb von USA

Artikel6 bis 14 Werktage6 bis 16 Werktage
Erster ArtikelEUR 0,00EUR 0,00
Die Versandzeiten werden von den Verkäuferinnen und Verkäufern festgelegt. Sie variieren je nach Versanddienstleister und Standort. Sendungen, die den Zoll passieren, können Verzögerungen unterliegen. Eventuell anfallende Abgaben oder Gebühren sind von der Käuferin bzw. dem Käufer zu tragen. Die Verkäuferin bzw. der Verkäufer kann Sie bezüglich zusätzlicher Versandkosten kontaktieren, um einen möglichen Anstieg der Versandkosten für Ihre Artikel auszugleichen.

Zahlungsarten

  • Visa
  • Mastercard
  • American Express
  • Carte Bleue
  • Apple Pay
  • Google Pay

Unternehmensdaten der Verkäuferin bzw. des Verkäufers

APOLLO ONLINE CORP.

605 Geddes Street
Wilmington, DE USA 19805