Deploy in your cluster
Blog

Runtime security, eBPF, and K8s engineering.

Engineering-first writing from the Kubesentry team. Detection mechanics, architecture decisions, and the operational realities of running Kubernetes in production.

K8s Security 12 min read

The Three-Layer K8s Security Model: Build, Deploy, Runtime

Most teams nail the build layer. Some get the deploy layer. Almost nobody has full runtime coverage. This guide maps all three and shows where the gaps live.

Priya Nakamura Head of Detection Engineering
eBPF 13 min read

How eBPF Makes Runtime Security Practical for K8s Teams

Before eBPF, runtime security meant kernel modules (fragile) or sidecar agents (overhead). eBPF changed the equation: full syscall visibility, zero overhead to your application.

Dev Anand CTO

Get new posts in your inbox.

Detection engineering deep-dives, K8s security guides, and changelog announcements. No marketing.