Google Brings In Container Security Startups to Secure Kubernetes

Published: May 3, 2018
Updated: Feb 2, 2021
2 minute read
Maya Kaczorowski
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

COPENHAGEN, Denmark—Google is extending its container security capabilities with an expansion of the Cloud Security Command Center (SCC) via integrations with five container security vendors.

The announcement was made at the KubeCon and CloudNativeCon Europe 2018 event here on May 3. The five container security vendors that are part of the initial integration are Aqua Security, Capsule8, Stackrox, Sysdig Secure and Twistlock.

In a video interview with eWEEK, Maya Kaczorowski, product manager of security and privacy at Google, explains what the SCC expansion is all about and why Google decided to partner rather than build its own capabilities for additional container security.


The Google Cloud Platform (GCP) has the SCC capability, which lets users see any potential security incidents occurring across their container deployments, according to Kaczorowski. SCC is now being expanded to provide insight into Google Kubernetes Engine (GKE). As part of the new partner integrations, results from Aqua Security, Capsule8, Stackrox, Sysdig Secure and Twistlock container security investigations will now be available to users inside of SCC.

Google has taken multiple steps to help keep GKE users secure, and the new integrations provide an additional layer of security.

“I’d argue that nothing is ever 100 percent secure,” Kaczorowski said. “We obviously try to have secure default in GKE and make it easy for users to properly configure their clusters.”

Kaczorowski said the new container security partner integrations solve a parallel problem to the one that Google has been working on to secure GKE infrastructure. She said Google thinks about GKE security in terms of infrastructure, software supply chain and runtime security. The focus for the partner integrations is on the runtime security component.

Runtime security is about users being able to monitor and detect if a running container is acting badly and then enabling the user to react, according to Kaczorowski. She noted that even if an organization has everything perfectly configured, an attacker could still start crypto-mining on a cluster and there needs to be a way to detect that.

As to why Google decided to integrate with third-party vendors for container security, Kaczorowski said it’s all about time to market.

Advertisement

“This is a need that people are asking for right now,” she said. 

Watch the full video interview with Maya Kaczorowski above.

Sean Michael Kerner is a senior editor at eWEEK and InternetNews.com. Follow him on Twitter @TechJournalist.

Sean Michael Kerner

Sean Michael Kerner is an Internet consultant, strategist, and writer for several leading IT business web sites.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。