Container Security Engineering (Paperback)

Idioma: inglés

Editorial: Independently Published, 2025

9798279346400

  • Tapa blanda
  • Nuevo
Ver todos los detalles

Librería: Grand Eagle Retail, Bensenville, IL, Estados Unidos de AmericaGrand Eagle Retail

Vendedor de 5 estrellas

Vendedor de AbeBooks desde 12 de octubre de 2005

Ver los artículos de este vendedor
Tapa blanda

Condición: Nuevo

EUR 29,72

 Gastos de envío gratis 
Se envía dentro de Estados Unidos de America

Cantidad disponible: 1 disponibles

Añadir al carrito

Descripción del artículo del vendedor

Paperback. Container Security Engineering Rootless Containers, Supply-Chain Integrity, and Runtime Defense for Modern DevSecOps Containers power the world's most critical infrastructure-but most container platforms are still deployed with implicit trust, excessive privileges, and fragile supply chains. As attacks shift from applications to build pipelines, registries, and runtimes, traditional "container security basics" are no longer enough.Container Security Engineering is the definitive, modern guide for building hardened, verifiable, and continuously defended container platforms from the kernel up. Written for today's DevSecOps reality and tomorrow's threat landscape, this book moves beyond theory to deliver practical, production-ready security engineering for Linux containers.This is a systems-level security playbook for engineers responsible for protecting real workloads in hostile environments. What You'll LearnThis book walks you through the entire container security lifecycle, combining deep technical foundations with hands-on implementation: Threat modeling containers with MITRE ATT&CK, shared-kernel risks, and real escape vectors Rootless container architectures using Podman and Docker with secure UID/GID mappings and user namespaces Host and kernel hardening with seccomp, SELinux, AppArmor, sysctl controls, and No New Privileges Supply-chain security with reproducible builds, vulnerability scanning, and SBOM generation using Trivy and Syft Image signing, provenance, and trust enforcement with cosign, registries, and policy gates CI/CD security automation using GitHub Actions, Open Policy Agent (OPA), and release controls Runtime defense and isolation across networking, filesystem access, and process boundaries eBPF-driven detection and observability with Falco and Tetragon for real-time threat visibility Zero-Trust container platforms, workload identity, micro-segmentation, and continuous validation A capstone project that builds a fully secured, monitored, and policy-enforced container platform from scratch Who This Book Is ForThis book is designed for professionals who need security guarantees, not assumptions: - DevSecOps engineers securing CI/CD pipelines and production clusters- Platform engineers building rootless, least-privilege container runtimes- SREs and system administrators hardening Linux hosts and container platforms- Security engineers and analysts seeking runtime visibility and detection- Architects designing compliant, auditable, and zero-trust container environmentsA working knowledge of Linux and containers is helpful-but this book teaches the security engineering mindset . Modern, Practical, and Enterprise-ReadyAll configurations, policies, and workflows have been validated on real Linux environments, including Fedora, Ubuntu, RHEL, and Rocky Linux. The book emphasizes open-source, vendor-neutral tooling and aligns with industry standards such as: - CIS Benchmarks- NIST SP 800-190- MITRE ATT&CK for ContainersAppendices provide ready-to-use reference material, including rootless configuration guides, seccomp and SELinux cheat sheets, CI/CD templates, runtime detection rules, attack simulations, and a detailed glossary of container security terms. Why This Book MattersContainer security has entered a new era-defined by rootless execution, verified supply chains, and continuous runtime defense. Organizations that fail to adapt will continue to ship insecure platforms by default.Container Security Engineering Shipping may be from multiple locations in the US or from the UK, depending on stock availability.

N° de ref. del artículo 9798279346400

Título
Container Security Engineering (Paperback)
Autor
Zak Illman
Editorial
Independently Published
Año de publicación
2025
Estado
new
Encuadernación
Paperback
Idioma
inglés
ISBN 13
9798279346400

Grand Eagle Retail

Bensenville, IL, Estados Unidos de America

Vendedor de 5 estrellas

Vendedor de AbeBooks desde 12 de octubre de 2005

Tarifas de envío en Estados Unidos de America

ArtículoDe 6 a 14 días hábilesDe 6 a 16 días hábiles
Primer artículoEUR 0,00EUR 0,00
Los plazos de entrega los establecen los vendedores y varían según el transportista y la ubicación. Los pedidos que pasan por la aduana pueden sufrir retrasos y los compradores son responsables de los aranceles o tarifas asociadas. Los vendedores pueden ponerse en contacto con usted en relación con cargos adicionales para cubrir cualquier aumento en los costes de envío de los artículos.

Métodos de pago

  • Visa
  • Mastercard
  • American Express
  • Carte Bleue
  • Apple Pay
  • Google Pay

Información empresarial del vendedor

APOLLO ONLINE CORP.

605 Geddes Street
Wilmington, DE Estados Unidos de America 19805