• Online, Self-Paced
Course Description
Widespread adoption of cloud computing and DevOps have led to containers becoming the most popular and efficient way to deploy applications. However, containerization presents enterprise security risks that question existing security policies and compliance frameworks. This course provides a necessary understanding of known attacks required to improve the security of container application deployments.

Learning Objectives

On successful completion of this course, learners should have the knowledge and skills to:

  • Understand the importance of Identifying threats to containers and data in the DevSecOps framework
  • Understand why containers are particularly susceptible to image vulnerabilities, and how to mitigate the threat by rebuilding images as part of security updates
  • Validate external images in order to prevent malware, unintended functionality, functional bugs, or components with known vulnerabilities into your environment
  • Securely encrypt communication channels to prevent man-in-the-middle attacks designed to extract image contents, compromise credentials used to access registries, or tamper with images being sent to orchestrators

Framework Connections

The materials within this course focus on the Knowledge Skills and Abilities (KSAs) identified within the Specialty Areas listed below. Click to view Specialty Area details within the interactive National Cybersecurity Workforce Framework.