STOCK TITAN

VMware Pioneers Modern Security for Modern Applications from Development to Production

Rhea-AI Impact
(Low)
Rhea-AI Sentiment
(Neutral)
Tags
Rhea-AI Summary

VMware has launched enhanced container runtime security capabilities to fortify its security portfolio for cloud-native workloads. This new offering aims to address increasing concerns about Kubernetes security, as 97% of tech leaders expressed worries, with one-fifth identifying runtime security for containerized workloads as a top concern. Features include runtime cluster image scanning, an integrated alerts dashboard, and workload anomaly detection, designed to improve security visibility and compliance throughout the application lifecycle.

Positive
  • Introduction of container runtime protection enhances security for cloud-native workloads.
  • 97% of technology leaders express concerns about Kubernetes security, indicating demand for improved solutions.
  • New features like runtime cluster image scanning and integrated alerts dashboard improve security and operational efficiency.
Negative
  • None.

VMware enhances end-to-end security offering for cloud-native workloads with container runtime protection

PALO ALTO, Calif.--(BUSINESS WIRE)-- Modern applications require modern security. Today, VMware, Inc. (NYSE: VMW) unveiled new container runtime security capabilities that build upon a strong end-to-end security offering to help customers better secure modern applications at scale. VMware’s portfolio of security solutions for modern applications spans the entire application lifecycle and leverages the company’s deep expertise in workloads, security, and Kubernetes.

Source: VMworld 2021 – Innovations in Better Securing Modern Applications

Source: VMworld 2021 – Innovations in Better Securing Modern Applications

Containerized applications present unique runtime security challenges, including how to only allow legitimate traffic in, how to enable least-privileged communications between services and defend against the lateral movement of attackers, and how to validate that the workload itself is operating within the expected guardrails. VMware provides customers with a robust end-to-end security offering that addresses these challenges at the edge, in the microservices network layer, and in the workload itself. This gives organizations greater visibility and control over both their overall security posture as well as the compliance of their containerized applications for improved protection from development to production.

“At VMware, we aspire to be the best in the world at protecting applications from within,” said Tom Gillis, senior vice president and general manager, Networking and Advanced Security Business Group, VMware. “Protecting the runtime is the foundation of securing the inner workings of a modern application. With the introduction of container runtime protection, our end-to-end security offering is now tightly integrated across the entire application lifecycle, protects all east-west traffic, and brings a new level of distributed visibility and security to APIs.”

Announcing Container Runtime Protection to Enhance End-to-End Security for Cloud-Native Workloads
As threat actors increasingly launch attacks targeting containers, 97 percent of technology leaders surveyed by VMware say they have concerns about Kubernetes security, and 1 in 5 cite securing containerized workloads at runtime as their biggest concern1. To help customers stay one step ahead of attackers, VMware is adding container runtime protection capabilities to enhance its end-to-end security offering for cloud-native workloads. These capabilities build upon the VMware Carbon Black Container solution released in April 2021.

VMware’s new container runtime security capabilities include:

  • Runtime cluster image scanning enables security and DevOps teams to automate runtime vulnerability scanning and customize policies to reduce risk and ensure images used in running containers are secure. This expansion for image scanning capabilities allows for images to be scanned in Kubernetes clusters, whether they are on-premises or in the cloud.
  • Integrated alerts dashboard provides a single pane of glass for security teams to view events and address anomalies in their runtime environment, and enable faster investigation and correlation of events from both host and container layers.
  • Kubernetes visibility mapping allows DevOps and security teams to quickly understand the architecture of an application that was set pre-deployment to better identify egress destination connections, potential workload policy violations, and vulnerable images.
  • Workload anomaly detection leverages artificial intelligence to standardize networking modules and alert SecOps teams on any deviation from that module, which is critical when setting up new workloads.
  • Egress and ingress security provide security teams with added visibility into the external source that is reaching out to the Kubernetes service and easier detection of malicious egress connectivity based on the IP address and the behavioral data.
  • Threat detection allows customers to scan open ports to check for vulnerabilities and quickly see if there is a lateral attack in progress. If an attacker tries to exploit a vulnerability to find the next lateral move, the internal port scan and egress port scan will raise an alert.

Attackers often attempt to hide in the noise of an environment, so container runtime security helps to reduce the noise and alert on real, active events, or block the events immediately while minimizing impact to the application and user experience. By consolidating these events to a single dashboard, security teams can accelerate their investigation into incidents impacting endpoints, virtual machine workloads, and containerized workloads. This provides VMware’s customers with a better understanding their overall security posture while reducing alert fatigue, effectively managing risk, and easing enforcement of compliance.

VMware Breaks Down Silos for More Secure Applications
According to a recent study, 70 percent of developer and security managers believe better alignment between their teams creates more secure applications2. VMware Cross-Cloud services helps customers reduce team silos to accelerate the development lifecycle and enable security to be built in from the beginning. For example, VMware Carbon Black is highly complementary with VMware Tanzu solutions in addressing the security challenges of modern applications. Together, the two solutions enable more secure applications and simplify operations for security and DevOps teams.

Discovery Limited is a financial services organization that operates in the healthcare, life assurance, short-term insurance, savings and investment and wellness markets.
“Security is a top priority for our organization given we provide services globally to make people healthier and enhance and protect people’s lives,” said Johan Marais, senior platform services manager at Discovery Limited. “With VMware, we’ve been able to better secure the entire development lifecycle and can protect all of the workloads within our environment with a single consolidated platform. We can now go from idea to production in a fast, secured, and reliable way, while tapping into a level of security dimension that we haven’t had access to previously. The powerful combination of VMware infrastructure and security capabilities has armed our organization with the critical context needed to protect our cloud-native workloads.”

OpenX is a pioneering leader in advertising technology, helping create a world where the open web thrives.
“As the only 100% cloud-based ad exchange in the industry, we require strong security to protect our Google Kubernetes Engine (GKE) environment,” said Joel Meyer, Chief Architect at OpenX. “VMware’s Kubernetes visibility mapping feature and threat detection capabilities have helped us to reduce our risk, simplify our operations, and embed security into the full application lifecycle. With VMware, we’ve unlocked a new level of GKE visibility and security.”

Product Availability
Container runtime protection is currently available through the VMware Carbon Black Cloud Container Advanced Bundle. For more information, please visit our website.

Sources

  1. The State of Kubernetes 2021, VMware Tanzu survey of 357 software development and IT professionals with responsibility for Kubernetes at companies with 1,000 or more employees, May 5, 2021
  2. Bridging the Developer and Security Divide, Forrester Consulting on behalf of VMware, September 22, 2021

About VMware
VMware is a leading provider of multi-cloud services for all apps, enabling digital innovation with enterprise control. As a trusted foundation to accelerate innovation, VMware software gives businesses the flexibility and choice they need to build the future. Headquartered in Palo Alto, California, VMware is committed to building a better future through the company’s 2030 Agenda. For more information, please visit www.vmware.com/company.

VMware, VMworld, Carbon Black, and Tanzu are registered trademarks or trademarks of VMware, Inc. or its subsidiaries in the United States and other jurisdictions.

Kerry Tuttle

VMware Global Communications

ktuttle@vmware.com

(470) 247-1987

Source: VMware, Inc.

FAQ

What new security features did VMware introduce for cloud-native workloads?

VMware introduced enhanced container runtime security capabilities, including runtime cluster image scanning and an integrated alerts dashboard.

Why are Kubernetes security concerns significant for VMware?

97% of technology leaders surveyed by VMware have concerns about Kubernetes security, highlighting the importance of robust security solutions.

What percentage of tech leaders cite securing containerized workloads at runtime as a major concern?

One in five technology leaders identify securing containerized workloads at runtime as their biggest concern.

How does VMware's new offering improve security visibility?

The integrated alerts dashboard and workload anomaly detection features consolidate security events for faster investigation and improved compliance.

Where can I find more information about VMware's container runtime protection?

More details can be found on VMware's official website under the Carbon Black Cloud Container Advanced Bundle.

VMware, Inc.

NYSE:VMW

VMW Rankings

VMW Latest News

VMW Stock Data

61.52B
234.13M
36.16%
49.65%
2.37%
Software - Infrastructure
Technology
Link
United States
Palo Alto