---
title: Considerations for Security Controls in Containerized and Virtual Environments
description: "Current security controls will need to be re-defined with how we protect the enterprise with two primary considerations: containerized and virtualized environments according to CIO and CISO of RMS Dave Ruedger."
image: https://blog.nisos.com/hubfs/shutterstock_1293146305.jpg
---

[![NISOS_logo_high_res_horiz-black](https://blog.nisos.com/hs-fs/hubfs/NISOS_logo_high_res_horiz-black.png?width=3357&height=674&name=NISOS_logo_high_res_horiz-black.png "NISOS_logo_high_res_horiz-black")](https://www.nisos.com/)

- [Home](https://www.nisos.com/)
- Solutions 
    - [Manage Human Risk](https://nisos.com/solutions/human-risk/)
    - [Protect Online Platforms](https://www.nisos.com/solutions/trust-safety/)
    - [Manage Cybersecurity Risks](https://www.nisos.com/solutions/cybersecurity/)
    - [Protect Executives, Assets, and Reputation](https://www.nisos.com/solutions/corporate-security/)
    - [Secure the Employee Lifecycle](https://nisos.com/solutions/workforce-risk/)
- Services 
    - [Human Risk](https://nisos.com/services/human-risk/) 
          - [Employment Shield](https://nisos.com/services/employment-shield/)
          - [Executive Shield](https://nisos.com/services/executive-shield/)
          - [Third-Party Intelligence Solutions](https://nisos.com/services/third-party-intelligence-solutions/)
          - [Insider Threat Intelligence Solutions](https://nisos.com/services/executive-shield/)
    - [Risk Assessment](https://www.nisos.com/services/risk-assessments/) 
          - [Threat Landscape](https://www.nisos.com/services/threat-landscape-assessment/)
    - [Threat Monitoring](https://www.nisos.com/services/threat-monitoring/) 
          - [OSINT Monitoring & Analysis](https://www.nisos.com/services/osint-monitoring-and-analysis/)
    - [Investigations](https://www.nisos.com/services/investigations/) 
          - [Adversary Investigation](https://www.nisos.com/services/adversary-insights/)
- Company 
    - [About Us](https://nisos.com/company/about-us/)
    - [The Nisos Difference](https://nisos.com/company/the-nisos-difference/)
    - [Client Success](https://nisos.com/company/client-success/)
    - [Careers](https://www.nisos.com/company/about-the-company/careers/)
- Resources 
    - [News](https://www.nisos.com/newsroom/)
    - [Blog](https://www.nisos.com/nisos-blog/)
    - [Events](https://www.nisos.com/events/)
    - [Resource Library](https://www.nisos.com/resources/library/)
    - [Podcasts](https://www.nisos.com/podcasts/)
- [Contact](https://www.nisos.com/contact/)

- [Home](https://www.nisos.com/)
- Solutions 
    - [Manage Human Risk](https://nisos.com/solutions/human-risk/)
    - [Protect Online Platforms](https://www.nisos.com/solutions/trust-safety/)
    - [Manage Cybersecurity Risks](https://www.nisos.com/solutions/cybersecurity/)
    - [Protect Executives, Assets, and Reputation](https://www.nisos.com/solutions/corporate-security/)
    - [Secure the Employee Lifecycle](https://nisos.com/solutions/workforce-risk/)
- Services 
    - [Human Risk](https://nisos.com/services/human-risk/) 
          - [Employment Shield](https://nisos.com/services/employment-shield/)
          - [Executive Shield](https://nisos.com/services/executive-shield/)
          - [Third-Party Intelligence Solutions](https://nisos.com/services/third-party-intelligence-solutions/)
          - [Insider Threat Intelligence Solutions](https://nisos.com/services/executive-shield/)
    - [Risk Assessment](https://www.nisos.com/services/risk-assessments/) 
          - [Threat Landscape](https://www.nisos.com/services/threat-landscape-assessment/)
    - [Threat Monitoring](https://www.nisos.com/services/threat-monitoring/) 
          - [OSINT Monitoring & Analysis](https://www.nisos.com/services/osint-monitoring-and-analysis/)
    - [Investigations](https://www.nisos.com/services/investigations/) 
          - [Adversary Investigation](https://www.nisos.com/services/adversary-insights/)
- Company 
    - [About Us](https://nisos.com/company/about-us/)
    - [The Nisos Difference](https://nisos.com/company/the-nisos-difference/)
    - [Client Success](https://nisos.com/company/client-success/)
    - [Careers](https://www.nisos.com/company/about-the-company/careers/)
- Resources 
    - [News](https://www.nisos.com/newsroom/)
    - [Blog](https://www.nisos.com/nisos-blog/)
    - [Events](https://www.nisos.com/events/)
    - [Resource Library](https://www.nisos.com/resources/library/)
    - [Podcasts](https://www.nisos.com/podcasts/)
- [Contact](https://www.nisos.com/contact/)

# Blog

## Considerations for Security Controls in Containerized and Virtual Environments

 by [Landon Winkelvoss](https://blog.nisos.com/blog/author/landon-winkelvoss)  | Jun 15, 2020 | [Cybersecurity](https://blog.nisos.com/blog/tag/cybersecurity), [Blogs](https://blog.nisos.com/blog/tag/blogs), [threat intelligence](https://blog.nisos.com/blog/tag/threat-intelligence), [containerized](https://blog.nisos.com/blog/tag/containerized), [virtual](https://blog.nisos.com/blog/tag/virtual)

Current security controls will need to be re-defined based on how we protect the enterprise with two primary considerations: containerized and virtualized environments [according to CIO and CISO of Risk Management Solutions (RMS) Dave Ruedger](https://podcasts.apple.com/us/podcast/how-todays-cisos-think-about-future-threat-intelligence/id1502270117?i=1000477555016).

Looking towards the future, there should be numerous endpoint solutions with protective controls, and network security could be very locked down with defined vendors. Furthermore, threat intelligence should generally support “on-network” environments that feed data to a SIEM to augment endpoint and network data. 

Areas that are relatively formative and represent large-scale risk are cloud environments and containerized environments.

**Container Security**

Many medium and large organizations dedicate significant resources to vulnerability management to harden the baseline image, the application stack, and SaaS web application security controls. However, the container environment, by its nature, is part of a larger hosting environment that presents two levels of configuration risk, one at the server level and another at the container level. 

Even with some automation, it currently takes a lot of manpower and time to understand what is normal within the container environment, and what is a misconfiguration or a potential zero-day attack.

While there is not necessarily evidence yet of an increase in targeting container environments, attackers are starting to look at ways to exploit the topology itself. If attackers know what takes place in the DevOps automation process, they can cause a lot of problems in production, especially for companies that have a need for constant up time in their business models. 

Ruedger recommends security teams adopt an [insider threat](https://blog.nisos.com/insider-threat) approach to  manage the risk of malicious actions within these containerized environments.

**Virtual Environments**

A lot of organizations are thinking about what it means to be “on network” and shifting  to a cloud-first model, which requires a re-evaluation of security controls. 

Many tech companies are going to models where authenticated users that use authenticated apps and take advantage of zero trust security control models where they may not even need services like a VPN. 

Another option would be to implement a VDI approach using virtualized environments. If these virtualized environments are configured appropriately with established controls in place, they provide more flexibility, while maintaining the security posture. 

 

---

---

---

- Solutions 
    - [Human Risk](https://nisos.com/solutions/human-risk/)
    - [Cybersecurity](https://nisos.com/solutions/cybersecurity/)
    - [Trust and Safety / Platform](https://nisos.com/solutions/trust-safety/)
    - [Corporate / Physical Security](https://nisos.com/solutions/corporate-security/)

- [Human Risk](https://nisos.com/services/human-risk/) 
    - [Employment Shield](https://nisos.com/services/employment-shield/)
    - [Executive Shield](https://nisos.com/services/executive-shield/)
    - [Third-Party Intelligence Solutions](https://nisos.com/services/third-party-intelligence-solutions/)
    - [Insider Threat Intelligence Solutions](https://nisos.com/services/insider-threat-intelligence-solutions/)
- [Risk Assessments](https://www.nisos.com/services/risk-assessments/) 
    - [Threat Landscape Assessment](https://nisos.com/services/threat-landscape-assessment/)
- [Threat Monitoring](https://www.nisos.com/services/threat-monitoring/) 
    - [OSINT Monitoring & Analysis](https://www.nisos.com/services/osint-monitoring-and-analysis/)
    - [Executive Shield](https://www.nisos.com/services/executive-shield/)
- [Investigations](https://www.nisos.com/services/investigations/) 
    - [Adversary Insights® Investigation](https://www.nisos.com/services/adversary-insights/)
    - [Event-Driven Intel Investigation](https://www.nisos.com/services/event-driven-investigation/)

- Why Nisos 
    - [About Us](https://nisos.com/company/about-us/)
    - [Client Success](https://nisos.com/company/client-success/)
    - [Our Approach](https://nisos.com/company/our-approach/)
    - [The Dogpile](https://www.nisos.com/the-dogpile/)
    - [Team Pandion™](https://www.nisos.com/company/team-pandion/)
    - [Careers](https://www.nisos.com/company/about-the-company/careers/)

- Resources 
    - [Blog](https://www.nisos.com/nisos-blog/)
    - [Resource Library](https://nisos.com/resources/library/)
    - [Podcast](https://www.nisos.com/podcasts/)
    - [News](https://www.nisos.com/news/)
    - [Events](https://nisos.com/events/)
    - [Law Firms](https://nisos.com/law-firms/)
    - [Federal](https://nisos.com/federal/)
    - [Media Inquiries](https://nisos.com/company/about-us/media-support/)

**Contact**  
[info@nisos.com](mailto:info@nisos.com)  
tel: [703-382-8400](tel:7033828400)  
2101 Wilson Blvd. Suite 304  
Arlington, VA 22201

<https://twitter.com/nisos>

<https://www.linkedin.com/company/nisos/>

<https://www.facebook.com/nisos.managed.intelligence/>

<https://www.instagram.com/nisos.managed.intelligence/>

![Nisos](https://blog.nisos.com/hs-fs/hubfs/Nisos_July2023/images/NISOS_logo_high_res_vert_white@2x.png?width=320&name=NISOS_logo_high_res_vert_white@2x.png "Nisos")

[Terms and Conditions](https://www.nisos.com/terms-conditions/) [Cookie Policy](https://www.nisos.com/cookie-policy/) [Privacy Policy](https://www.nisos.com/privacy-policy/)

©2025 Nisos All Rights Reserved

![](https://px.ads.linkedin.com/collect/?pid=1593266&fmt=gif)