Pradumna V Saraf
Open Source Developer @ Independent
Patna, India
Actions
Pradumna is a Developer Advocate, Docker Captain, and a DevOps and Go Developer. He is passionate about Open Source and has mentored hundreds of people to break into the ecosystem. He also creates content on X (formerly Twitter) and LinkedIn, educating others about Open Source and DevOps tools. Pradumna enjoys engaging with people in person and delivering talks.
Area of Expertise
Topics
Building Efficient and Secure Docker Images with Multi-Stage Builds
With more and more applications being containerized with Docker, creating efficient and secure images is crucial. Multi-stage builds in Docker provide a powerful way to optimize container images for performance, security, and efficiency. In this talk, we'll explore the benefits of multi-stage builds and learn how developers can use them to reduce the size and complexity of their images by separating the built environment from the runtime environment.
We'll cover best practices for organizing your Dockerfile, optimizing the build process with caching and parallelism, and using multi-stage builds for language-specific applications. Finally, we'll showcase real-world examples of multi-stage builds, including creating custom images for Go.
Automating Container Security: Docker Scout in CI/CD for Safer Software Supply Chains
As containerized applications dominate the software development landscape, securing these environments has become essential. Vulnerabilities within container images can expose your applications to significant risks and potential attacks. Docker Scout provides an effective solution to detect and fix these vulnerabilities, enhancing the overall security of your software supply chain.
This talk will help you understand the process of integrating Docker Scout into Continuous Integration and Continuous Deployment (CI/CD) pipelines using GitHub Actions. We will walk through the process of setting up automated vulnerability scans for incoming Pull Requests, comparing the current image with the base image to ensure continuous security checks are embedded within your development workflow. The session will include practical insights and real-world examples.
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top