top of page
VM at the Speed of Cloud: Cloud Native Vulnerability Management When the Estate Won't Stay Still
Episode 7 of the CAXA Technologies Security Operations Series If a container lives for 60 seconds and your scanner runs on a schedule, you do not have a cloud VM programme. You have a cloud visibility gap with a reporting cadence attached to it. That framing sounds extreme until you look at the data. Sysdig’s 2025 Cloud-Native Security and Usage Report found that 60% of containers now live for 60 seconds or less. In 2019, half of containers lasted at least five minutes. The t
Christopher Clarkson
Mar 2412 min read
Vulnerability Prioritisation in Practice: CVSS, EPSS, KEV and SSVC
88% of published CVEs carry an exploitation probability below 10%. If your backlog is ordered by CVSS score, most of the effort it consumes is aimed at
vulnerabilities attackers are ignoring. This episode delivers a working alternative: EPSS, the CISA KEV catalogue, and SSVC applied to real CVEs.
Christopher Clarkson
Mar 1011 min read
bottom of page
