community/archive/wg-security-audit
Jay Beale 683ec8f8a3 Retiring wg-security-audit 2020-09-24 15:43:49 -07:00
..
OWNERS Retiring wg-security-audit 2020-09-24 15:43:49 -07:00
README.md Retiring wg-security-audit 2020-09-24 15:43:49 -07:00
letter-to-steering.md Retiring wg-security-audit 2020-09-24 15:43:49 -07:00

README.md

Security Audit Working Group

Perform a security audit on k8s with a vendor and produce as artifacts a threat model and whitepaper outlining everything found during the audit.

Stakeholder SIGs

  • SIG Auth

Meetings

Organizers

Contact

Published Documents

Trail of Bits and Atredis Partners, in collaboration with the Security Audit Working Group, have released the following documents which detail their assessment of Kubernetes security posture and their findings.

Findings

Ancillary Data

Mailing Lists

Request For Proposals

The RFP was open between 2018/10/29 and 2018/11/30 and has been published here.

Vendor Selection

The RFP is now closed. The working group selected Trail of Atredis, a collaboration between Trail of Bits and Atredis Partners to perform the audit.

You can read more about the vendor selection here.