Arun Yadav

Arun Yadav

Lead DevOps Engineer, Salesforce

Gurugram, India

Actions

Arun is a Lead DevOps Engineer at Salesforce, and a Kubestronaut leading the Cloud Centre of Excellence (CCoE) and driving SRE/DevOps best practices across Salesforce products. He is passionate about sharing valuable insights on DevOps and cloud security.

Area of Expertise

  • Information & Communications Technology

Topics

  • Kubernetes Security
  • Kubernetes
  • Container and Kubernetes security
  • Cloud & DevOps
  • MLOps
  • Google Kubernetes Engine

No Escape From Kubescape: Hunting Vulnerabilities From Build to Runtime

Kubernetes environments are highly dynamic, making real-time detection of misconfigurations, vulnerabilities, and compliance violations challenging. Traditional security tools lack visibility into both build-time and runtime risks, leaving clusters exposed.

"The Great Escape? Not for Threats – Kubescape Has You Covered!"

Kubescape is designed to address this challenge by scanning Kubernetes configurations, workloads, and infrastructure for vulnerabilities and compliance violations. It provides comprehensive protection across both build-time and runtime by leveraging Open Policy Agent (OPA) and its powerful new partner, COPA (Copacetic), to enforce policy-driven defense.

This session will cover how security teams can track Software Bills of Materials (SBOMs) during builds while monitoring and mitigating runtime risks. Attendees will learn how Kubescape enhances security and compliance in multi-cloud environments, aligning with SOC2 and CIS Benchmarks.

Kubernetes Security Dream Team - Falco Investigates, Trivy Reports, Kyverno Enforces

Security without visibility is like a goalkeeper facing penalties blindfolded. Yet, many Kubernetes environments operate without real-time security visibility, making them an easy target for misconfigurations, runtime threats, and compliance failures. It’s time to take off the blindfold.

Falco, the open-source runtime security tool, plays a key role in detecting suspicious activity by leveraging eBPF and syscall monitoring. But security doesn’t stop at runtime, combining Falco with other CNCF projects like Trivy (vulnerability scanning), Kyverno (policy enforcement), OpenTelemetry (observability), and OPA/Gatekeeper (admission control) creates a multi-layered security approach.

This session will showcase how these tools work together, from Trivy’s build-time scans to Falco’s runtime detection, helping teams secure Kubernetes, integrate with CI/CD, and meet compliance standards like SOC2 and CIS Benchmarks.

Arun Yadav

Lead DevOps Engineer, Salesforce

Gurugram, India

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top