resources
 > Content library

Browse all content by asset type.

filter by:
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
No items found.

Blog Posts

OWASP Kubernetes Top 10
OWASP Kubernetes Top 10
Compliance
Kubernetes & Container Security
Threat Research

OWASP Kubernetes Top 10

Nigel Douglas
|
February 21, 2023
How to Monitor Kubernetes Control Plane with Sysdig
How to Monitor Kubernetes Control Plane with Sysdig
Monitoring

How to Monitor Kubernetes Control Plane with Sysdig

Victor Hernando
|
February 16, 2023
The Cloud Monitoring Journey
The Cloud Monitoring Journey
Monitoring

The Cloud Monitoring Journey

Emanuela Zaccone
|
February 15, 2023

Briefs

Sysdig Corporate Brief
Sysdig Corporate Brief

Sysdig Corporate Brief

Founded by the creators of open source standards — Falco, Stratoshark, and Wireshark — and built on agentic AI, Sysdig delivers real-time cloud defense grounded in the uncompromising truth of runtime.

BRIEF. 2025 Cloud‐Native Security and Usage Report
BRIEF. 2025 Cloud‐Native Security and Usage Report

BRIEF. 2025 Cloud‐Native Security and Usage Report

This is a special edition of Sysdig’s 2025 Cloud-Native Security and Usage Report, providing only the usage and analysis of the open source detection tool, Falco.

BRIEF. Top 5 Best Practices For Image Scanning
BRIEF. Top 5 Best Practices For Image Scanning

BRIEF. Top 5 Best Practices For Image Scanning

How do you manage container security risk without slowing down application delivery?

Case Studies

Greater Stability, Smarter Planning: How a Global Enterprise Gained Control of Its Cloud

Greater Stability, Smarter Planning: How a Global Enterprise Gained Control of Its Cloud

Global Technology Leader unifies cloud monitoring to eliminate blind spots and outages

Caught in Runtime: How Sysdig Detected Credential Exposure in a Crypto Platform Before It Became a Breach

Caught in Runtime: How Sysdig Detected Credential Exposure in a Crypto Platform Before It Became a Breach

Cryptotrading Platform prevents breach with real-time visibility

Good-Enough Security Isn’t Good Enough When You Serve a Billion People

Good-Enough Security Isn’t Good Enough When You Serve a Billion People

UIDAI secures 1.4B+ identities and 100M daily authentications with Sysdig.

Ebooks

Top 6 Use Cases for Monitoring Cloud-Native Workloads with Sysdig Monitor
Top 6 Use Cases for Monitoring Cloud-Native Workloads with Sysdig Monitor

Top 6 Use Cases for Monitoring Cloud-Native Workloads with Sysdig Monitor

Securing the Cloud: The Benefits of Falco with an Enterprise Experience
Securing the Cloud: The Benefits of Falco with an Enterprise Experience

Securing the Cloud: The Benefits of Falco with an Enterprise Experience

An ebook with 3 mini case studies heavily featuring Falco and how it works with Sysdig, plus a callout to Falco Feeds at the end.

The Value of Sysdig's CNAPP
The Value of Sysdig's CNAPP

The Value of Sysdig's CNAPP

Guides

Cloud Security for Google Cloud
Cloud Security for Google Cloud

Cloud Security for Google Cloud

This guide outlines key requirements and capabilities for establishing comprehensive security for Google Cloud services and containers.

Cloud Security for Amazon Web Services
Cloud Security for Amazon Web Services

Cloud Security for Amazon Web Services

This guide outlines key requirements and capabilities for establishing comprehensive security for AWS cloud services and containers.

Secure Your Cloud in Minutes - Your Checklist for Meeting the 555 Benchmark
Secure Your Cloud in Minutes - Your Checklist for Meeting the 555 Benchmark

Secure Your Cloud in Minutes - Your Checklist for Meeting the 555 Benchmark

Sysdig’s 555 Benchmark for Cloud Detection and Response offers a standard to use when measuring how fast your security teams can counter attackers. Specifically, the benchmark finds that to outpace attacks, your security teams need to detect threats within 5 seconds, correlate and triage data within the first 5 minutes, and initiate a tactical response within the next 5 minutes.Sysdig’s 555 Benchmark for Cloud Detection and Response offers a standard to use when measuring how fast your security teams can counter attackers. Specifically, the benchmark finds that to outpace attacks, your security teams need to detect threats within 5 seconds, correlate and triage data within the first 5 minutes, and initiate a tactical response within the next 5 minutes.

Infographics

Unlock the Power of NIS2
Unlock the Power of NIS2

Unlock the Power of NIS2

The Evolution of Modern Cloud Security
The Evolution of Modern Cloud Security

The Evolution of Modern Cloud Security

Remember asking your teachers why you needed to know history? They probably said that learning history is important in understanding how society has changed and progressed over time, and that we can learn from past experiences and mistakes.

The Grand Atlas of Software Security
The Grand Atlas of Software Security

The Grand Atlas of Software Security

This infographic demonstrates how to secure each stage of the software lifecycle, with a focus on the Shift Left approach, where early remediation reduces risks and costs.

Podcasts

Exploring Advanced Cybersecurity with Michael Isbitski

Exploring Advanced Cybersecurity with Michael Isbitski

"Cybersecurity leader Mike Isbitski explores the intricacies of cloud-native security and vulnerability management in today's technological landscape. With over 25 years of experience, he provides valuable insights into the challenges and complexities organizations face in securing ephemeral infrastructure and machine identities in the cloud. This episode also explores the cautious adoption of AI in cybersecurity, emphasizing the need for a balanced approach that maintains operational functionality while addressing evolving security concerns."

Screaming in the Cloud: Benchmarking Security Attack Response Times in the Age of Automation with Anna Belak

Screaming in the Cloud: Benchmarking Security Attack Response Times in the Age of Automation with Anna Belak

"Anna Belak, Director of the Office of Cybersecurity Strategy at Sysdig, joins Corey on Screaming in the Cloud to discuss the newest benchmark for responding to security threats, 5/5/5. Anna describes why it was necessary to set a new benchmark for responding to security threats in a timely manner, and how the Sysdig team did research to determine the best practices for detecting, correlating, and responding to potential attacks. Corey and Anna discuss the importance of focusing on improving your own benchmarks towards a goal, as well as how prevention and threat detection are both essential parts of a solid security program."

Screaming in the Cloud: An Open-Source Mindset in Cloud Security with Alex Lawrence

Screaming in the Cloud: An Open-Source Mindset in Cloud Security with Alex Lawrence

"Alex Lawrence, Field CISO at Sysdig, joins Corey Quinn on Screaming in the Cloud to discuss how he went from studying bioluminescence and mycology to working in tech, and his stance on why open source is the future of cloud security."

Press Releases

Sysdig Closes $70M in Series E Funding to Enable Enterprises to Confidently Secure Cloud-Native Workloads in Production
Sysdig Closes $70M in Series E Funding to Enable Enterprises to Confidently Secure Cloud-Native Workloads in Production

Sysdig Closes $70M in Series E Funding to Enable Enterprises to Confidently Secure Cloud-Native Workloads in Production

Investment fuels company’s leadership as the most advanced Kubernetes security tool to embed security, maximize availability, and validate compliance SAN…

January 22, 2020
Falco is the First Runtime Security Project to join CNCF Incubation
Falco is the First Runtime Security Project to join CNCF Incubation

Falco is the First Runtime Security Project to join CNCF Incubation

Falco, originally created by Sysdig in 2016, is approved to join the CNCF Incubator after a 257 percent increase in…

January 8, 2020
Sysdig Announces the Cloud-Native Security Hub is Available
Sysdig Announces the Cloud-Native Security Hub is Available

Sysdig Announces the Cloud-Native Security Hub is Available

Cloud-Native Security Hub creates a home for cloud-native best practices, rules, and configurations SAN DIEGO, KubeCon + CloudNativeCon — Nov….

November 18, 2019

Reports

Cloud Detection and Response: Market Growth as an Enterprise Requirement - July 2023
Cloud Detection and Response: Market Growth as an Enterprise Requirement - July 2023

Cloud Detection and Response: Market Growth as an Enterprise Requirement - July 2023

To gain further insight into these trends, TechTarget’s Enterprise Strategy Group (ESG) surveyed 393 IT and cybersecurity professionals at organizations in North America (US and Canada) responsible for evaluating or purchasing cloud security technology products and services.

2023 Global Cloud Threat Report
2023 Global Cloud Threat Report

2023 Global Cloud Threat Report

The 2023 Global Cloud Threat Report exposes the latest security threats to public clouds, containers, Kubernetes, and cloud-native apps, based on extensive research by the Sysdig Threat Research Team (TRT).

EDR and CDR are different. Here’s how
EDR and CDR are different. Here’s how

EDR and CDR are different. Here’s how

In this article, we explain the differences between EDR and CDR. Our goal is to support the enterprise buyer who might be led by vendors to believe the two capabilities are the same.

Videos

Detecting Threats to Kubernetes, Containers, and Google Cloud

Detecting Threats to Kubernetes, Containers, and Google Cloud

See how Sysdig helps secure and accelerate innovation with Google Cloud.

Secure DevOps Practices at Yahoo Japan

Secure DevOps Practices at Yahoo Japan

With more than 3,000 developers and a large Kubernetes environment, learn how Yahoo Japan is preventing cyber-attacks and unauthorized access by introducing appropriate security measures for the container environment.

Securing and Monitoring AWS Container Services

Securing and Monitoring AWS Container Services

Developers, operations, and security teams must work together to address key workflows to secure and monitor containers, Kubernetes and cloud services across...

Webinars

Shai-Hulud: The self-replicating NPM worm
Shai-Hulud: The self-replicating NPM worm

Shai-Hulud: The self-replicating NPM worm

How it works, why it matters, and how to defend

See the Future of Cloud Defense: Agentic Cloud Security in Action
See the Future of Cloud Defense: Agentic Cloud Security in Action

See the Future of Cloud Defense: Agentic Cloud Security in Action

Break the Bot: The Ultimate AI Challenge
Break the Bot: The Ultimate AI Challenge

Break the Bot: The Ultimate AI Challenge

Join us Aug 13 for an exclusive, hands-on demonstration of Sysdig's latest AI security innovations. Our new demo, Break the Bot: The Ultimate AI Challenge, gives you a front-row seat to the real-world risks AI introduces—and how Sysdig stops attackers in their tracks.

Aug 13, 2025 11 am CEST | 10am BST

Events

Cloud Native Bergen
Cloud Native Bergen

Cloud Native Bergen

Bergen
Oct 27
Oct 28
KubeCon NA
KubeCon NA

KubeCon NA

Nov 10
Nov 13
ITCM Marbella
ITCM Marbella

ITCM Marbella

Marbella
Nov 18
Nov 20

Whitepapers

Securing AI: Navigating a New Frontier of Security Risk

Securing AI: Navigating a New Frontier of Security Risk

Organizations worldwide are turning to artificial intelligence (AI) to gain insights, optimize operations, and remain competitive in an increasingly digitized economy. As businesses move workloads to cloud‑native environments to support these AI initiatives, they encounter a new frontier of security risk. For security managers building cloud security programs, it’s crucial to take a step back and ask: Does your current program truly cover the unique risks AI workloads bring?

NIS2 Action Plan for the Cloud CISO

NIS2 Action Plan for the Cloud CISO

The 555 Guide for Cloud Security Practitioners

The 555 Guide for Cloud Security Practitioners

The Sysdig 555 Benchmark for Cloud Detection and Response sets the standard for operating securely in the cloud, emphasizing the need for security teams to detect, triage, and respond to attacks within the average time it takes threat actors to conduct them: 10minutes.

Like what you see?