Serverless Security

Why CNAPP is the Future of Cloud Protection
As more organizations move to the cloud, there is a growing need for cloud security solutions that can keep up with the constantly evolving threat landscape. Traditional security solutions, such as firewalls ...

Runtime Security Observability for Containerized Workloads in AWS
Recently we asked thought leaders from cutting-edge security teams to share their best practices for detecting and responding to threats in incredibly complex cloud environments. Here are some highlights from our most ...

Top 5 Open Source Serverless Security Tools
Here are some useful open source serverless security tools to help you secure your apps The growing popularity of serverless architecture has led to its massive adoption. My organization has jumped on ...
How To Handle Secret Management for Serverless Applications
Like most applications, serverless apps often need access to configuration data in order to function properly. And while most configuration data is non-sensitive, some needs to remain confidential. These strings are known ...
The Evolution of Application Security In The Serverless World
With developers more empowered than ever and infrastructure abstracted away, what is the new role of application security? We sat down with Amit Klein, who is considered by many to be one ...
The 12 Most Critical Risks for Serverless Applications 2019 Guide
PureSec recently joined the Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. As part of ...
Serverless Security And The Weakest Link (Or How Not to Get Nuked by App-DoS)
Here's a short blog post on design-for-failure, serverless scalability, App layer DoS and what happens when you rely on open source 3rd party libraries ...
Serverless And The Evolution In Cloud Security, How FaaS Differs From IaaS
Security is a shared responsibility between the cloud provider and the customer. This shared model can help relieve customer’s operational burden as cloud providers operate, manage and control the components from the ...

PureSec: 2018 Recap
As we're nearing the end of the year, it's time to look back and reflect on all the great things achieved during 2018. This year was remarkable for the Serverless security space, ...

OWASP ‘ServerlessGoat’: A Vulnerable Demo Serverless Application
Throughout the years, the concept of creating vulnerable applications for learning and demonstrating application security concepts has become common practice . Years ago, OWASP launched the WebGoat project, which has since become ...