Container Security — Docker and Kubernetes Hardening
A hands-on guide to securing Docker and Kubernetes — image scanning, rootless containers, network policies, and runtime threat detection.
Technical essays, architectural deep-dives, and practical guides at the intersection of code and design.
Page 2 of 28
A hands-on guide to securing Docker and Kubernetes — image scanning, rootless containers, network policies, and runtime threat detection.
Automate SOC2 and ISO 27001 compliance with infrastructure as code, continuous monitoring, and policy-as-code tools like AWS Config and OPA.
Why code signing matters and how to implement it — signing Git commits, Docker images with cosign, and building a chain of trust to production.
How to build security observability in AWS using CloudTrail, CloudWatch, and Athena — audit logging, anomaly detection, and SIEM integration.
How to build a complete security pipeline into your CI/CD — SAST, DAST, SCA, secret scanning, and infra scanning without slowing developers down.
Build a real cloud security scanner from scratch with Python and AWS APIs — scan for open security groups, public S3 buckets, and bad IAM policies.
A deep dive into AWS IAM security — permission boundaries, SCPs, assume-role chains, and how to audit IAM for least-privilege access.
Build automated security remediation with AWS Lambda, EventBridge, and Config Rules — auto-close open security groups and revoke public S3 access.
Build real-time applications with WebSockets and Socket.io in Node.js — rooms, namespaces, scaling with Redis adapter, and handling reconnection
Comprehensive testing strategies for Node.js applications with Jest, Supertest, and Testcontainers — from unit tests to end-to-end API testing
Use Redis with Node.js for caching, session storage, pub/sub messaging, rate limiting, and distributed locks using ioredis
Connect Node.js to PostgreSQL using pg, Knex.js, and Prisma ORM. Learn connection pooling, migrations, transactions, and query optimization