Securing Containers

Qualys Container Security provides discovery, tracking, and continuous protection to container environments. This addresses vulnerability management for images and containers in their DevOps pipeline and deployments across cloud and on-premise environments. Qualys Container Security supports:

  • Discovery, inventory and near-real-time tracking of container environments
  • Vulnerability analysis for images and containers
  • Vulnerability analysis for registries
  • Integration with CI/CD pipeline using Jenkins/Bamboo Plugins or REST APIs (DevOps flow)
  • Support for GKE deployments
  • Support for Google Container Registry (GCR) and Google Artifactory Registries

    securing_containers

For more details, refer to the Qualys Container Security User Guide.

Deploying Container Sensor

The sensor from Qualys is designed to support native Docker environments. The sensor is packaged and delivered as a Docker Image. Download the image and deploy it as a Container alongside other application containers on the host. Since they are docker-based, the sensor can be deployed into orchestration tool environments such as Kubernetes, Mesos, or Docker Swarm, just like any other application container.

For more details, refer to the Qualys Container Security Deployment Guide.