False positives in security scans are a costly headache for both DevOps and security teams. They can slow down, or even stop the development process dead in its tracks while issues are researched to determine if they are truly issues or not. Loosen your security controls too much and you can potentially open the door for legitimate vulnerabilities to infiltrate your systems.
•
•
•
•
In this webinar, we’ll take a look at false positives in container security and these five methods for managing them and their impact on your workflows:
Continuous learning models
Customizable policies
Anchore’s unique methods, “hints” and “corrections”
Optimized vulnerability feeds
Temporary allowlists
•