Walkthrough of how policies are defined in Sysdig Secure through scoping, alerting and defined actions to be taken, based on Falco rules. Covers whitelisting/blacklisting policies by containers, processes, network traffic, file system I/O and system calls.
Review of Policy Events in Sysdig Secure, showcasing our fast methodology to identify a service, host or container operating in runtime that is generating undesirable or nefarious activity defined by the events policy.
Sysdig Platform v2.0 is the first tool that provides unified visibility across your microservices, containers and Kubernetes; By unlocking rich sources of data, our platform solves a ton of the issues you’ll face in operating modern applications.
Container compliance for Docker and Kubernetes is an essential part of enterprise security. It’s important for your environments, no matter where they reside, to remain compliant with industry regulation and/or company security policy.
Review of the two categories of metric aggregation in Sysdig Monitor - Time aggregation and Group aggregation. Includes detailed suggestions for when each aggregation type is appropriate depending on metric type.
Review of alert functionality within Sysdig Monitor. Understanding alert types, parameters and criteria that make up an alert, as well as how alerts can quickly be defined from different views of Sysdig metric panels.
Review of notification platforms Sysdig Monitor integrates into out of the box, such as Slack, PagerDuty, VictorOps and more, as well as configuring custom web hooks.