Securing K8s Apps on 
Google Cloud Platform

Securing K8s Apps on Google Cloud Platform

The Aqua Container Security Platform (CSP) works seamlessly on Google Cloud Platform, integrating with its container services, as well as with Google’s Cloud Security Command Center (SCC) to deliver container-level alerts that help security teams gather data, identify threats and take immediate action before they result in business damage or loss.

Deploy Aqua’s native solution for GKE Kubernetes apps directly from the GCP Marketplace, and pay only for the nodes that you protect while they’re running.


Deploy Aqua’s native solution for GKE Kubernetes apps directly from the GCP Marketplace, and pay only for the nodes that you protect while they’re running.

Provide zero-configuration security for GKEdeployments from development to production, enforcing consistent security policy and least privileges principle across the board.

Aqua integrates with Google’s Cloud Security Command Center to provide single pane-of-glass visibility into security and compliance-related events.

Image Vulnerability Scanning & Assurance

Prevent unauthorized images from running in your GKE environment. Continuously scan images stored in Google Container Registry (GCR) to ensure that DevOps teams do not introduce vulnerabilities, bad configurations, malware, or secrets into container images. Get actionable recommendations for remediation of security issues.

Runtime Protection

Aqua works seamlessly with Google Kubernetes Engine (GKE) to prevent unvetted containers from running, and prevent approved containers from performing unauthorized actions. It automatically learns container behavior and ensures that containers only do what they are supposed to do in the application context. It detects and prevents activities that violate policy, defending against container-specific attacks.

Secrets Management

Leverage 3rd party vaults, including HashiCorp Vault and CyberArk EPV, to securely deploy secrets (passwords, keys and tokens) to containers in runtime. Aqua makes it easy to manage, rotate, and revoke secrets in containers with no downtime, running only in memory without persistence on disk.

Visibility for Compliance and Security

Aqua integrates with 3rd party SIEM and security management tools, including Google’s Cloud Security Command Center (SCC) to provide single-pane-of-glass visibility into security and compliance-related events, and policy management for container security monitoring and policy violation detection.

Aqua support for Google Grafeas

Aqua supports Google Grafeas, providing image vulnerability results to Grafaes.


要查看或添加评论,请登录

Eric Gold的更多文章

  • Orca SideScanning Quick Intro

    Orca SideScanning Quick Intro

    Cloud workloads are vastly different than the ‘90s-style physical servers running on bare metal. Unfortunately, many…

    4 条评论
  • Cloud Security Deserves Better

    Cloud Security Deserves Better

    How is it possible for a startup like Orca Security to wipe the floor with prominent cloud security vendors like Palo…

    5 条评论
  • Virtualizationism: Winning the Cloud Security Game

    Virtualizationism: Winning the Cloud Security Game

    Overview To win at cloud security, tools must provide visibility based on the singularity of virtualization. The cloud…

    1 条评论
  • Agentless & Wide "Deep Cloud Inspection"

    Agentless & Wide "Deep Cloud Inspection"

    (If at any time during your reading of this article you decide you want to learn much more about Orca, then just visit…

  • Of Tricorders & Cloud Asset Visibility

    Of Tricorders & Cloud Asset Visibility

    Synopsys: Last year, eight Check Point architects and a CTO left to found Orca Security. They invented "Side Scanning"…

    6 条评论
  • Cybersecurity Assessments in Mergers and Acquisitions

    Cybersecurity Assessments in Mergers and Acquisitions

    (ISC)2 – the world’s largest nonprofit association of certified cybersecurity professionals – this week released the…

  • Why I joined Orca Security

    Why I joined Orca Security

    I coined a new phrase when I was prepping for my new job at Orca Security: "deep cloud inspection". Read the whole post…

    1 条评论
  • Securing Cloud-Native Workloads on AWS

    Securing Cloud-Native Workloads on AWS

    Learn more here: Aqua and AWS As an Advanced APN member and Container Competency technology partner, Aqua provides…

    1 条评论
  • Please Don't Kill Your Containers

    Please Don't Kill Your Containers

    Finally, the ability to view very granular components of an application and understand their behavior makes automated…

  • Please Don't Kill Your Containers

    Please Don't Kill Your Containers

    Finally, the ability to view very granular components of an application and understand their behavior makes automated…

社区洞察

其他会员也浏览了