In the media

Security Think Tank: Design security in to reap container benefits

By Farrukh Ahmad

10 October 2022

Provided container security basics are built into your development and runtime environment from the start, containerised services and applications can provide rapid – and secure – achievement of business objectives

Design is key in bringing scalability, speed and security advantages

According to research by DataDog, the number of Kubernetes pods being deployed doubled between 2019 and 2021. This, combined with the increase in stateful containers, implies that more organisations are migrating their traditional monolithic applications into Kubernetes, which for many, means moving to a microservice-based development approach.

Shifting to a microservice architecture can provide more flexibility and, if managed correctly, greater security. This is due to the nature of the architecture, where each service is given resources to meet its own requirements and is treated as a separate entity. This allows services to be edited or removed with little impact on the rest of the application.

An attacker who gains access to a monolithic application is likely to have access to all the resources within it, but in a containerised solution, they may be restricted to a single pod. Containers also allow continuous re-paving of the application, ridding it of vulnerabilities with little impact on user experience.

One thing to consider when increasing the number of pods in any given cluster is the danger of container sprawl. Having separate containers for everything can be attractive for the reasons mentioned above, but this can be overdone. Too many containers can lead to a lack of observability and make troubleshooting difficult. This can create unintentional attack paths as malicious users may exploit legacy containers that have been forgotten about.

Investment in security by cloud providers

Another recent trend, which feels like a natural result of increased container adoption, is the shift towards more managed container solutions and using products such as AWS Fargate. Container orchestration solutions, such as Kubernetes, are famously complicated to maintain and often require a large investment of time to set up clusters competently.

Having your cluster orchestrated for you by a cloud provider makes deployment quicker and easier than traditional methods of self-management. However, you are always bound by the shared responsibility model of providers, and container security will always be your team’s responsibility.

Common vulnerabilities and exposures

The appeal of containers being “able to run on anyone’s machine” is a double-edged sword because it means they are also vulnerable on anyone’s machine. Maybe in some part due to their ease and popularity, containers are often targets for attackers and all software relating to them has a considerable number of common vulnerabilities and exposures (CVEs). These vulnerabilities can lie in any part of the container, from the image to the runtime itself, to third-party applications running inside.

A key example of this is to look at the CVEs for Docker in 2020. All 32 of these have a Common Vulnerability Scoring System (CVSS) score of 10.0 and relate to the same issue for separate official Docker images. All of these images had no admin passwords by default; if a developer decided not to set their own security settings on these images, then a malicious user could easily escalate their privileges to exploit the entire cluster.

Even when considering images from reputable repositories, many third-party libraries may be pulled in, leading to a heightened supply chain risk. For these situations, having controls in place to dismantle, create a software bill of material (SBOM) and check each component, becomes a mandatory requirement.

Also, development pipelines must automatically check that containers are being developed securely and, where necessary, enforce the organisation’s security policy. This all needs to be carried out autonomously, relying heavily on guardrail implementation, security automation using policy agents and runtime enforcement.

Design security in to reap the full benefits of containers

Containers aren’t going away any time soon – and this is not a bad thing. Containerisation provides many benefits to all manner of applications, but security must not be sacrificed for convenience. Organisations should ensure that, regardless of how their containers are managed, they understand and carefully build the right environment, with the right controls in place to manage risk.

Basic measures such as using verified third-party software/base images, and/or signed images and libraries, ensuring deep observability and automated updates ensure there aren’t any “weak link” containers that may provide a pivot point for attackers.

Provided container security basics are built into your development and runtime environment from the start, containerised services and applications can provide rapid (and secure) achievement of business objectives.

Bring ingenuity to your inbox.

Subscribe for the latest insights and event invites on strategy, innovation, technology, and transformation.

Explore more

In the media

Britain is dangerously exposed in the North Sea, and shadow fleets know it

How can we safeguard the North Sea systems underlying the UK’s energy security?
In the media

Embedding AI without losing the human touch

How building societies can use AI to enhance trust, efficiency, and member experience.
Insight

Reclaiming manufacturing innovation in a shrinking global labour market

Three practical steps to reduce labour dependency and build manufacturing resilience.
Manufacturing workers
In the media

Why industrial companies get stuck in servitisation – and what it takes to scale

Why industrial companies struggle to scale service-led business models despite digital investments.
Manufacturing workers
Data Center Female System Administrator and Male IT Specialist talk, Use Laptop. Information Technology Engineers work on Cyber Security Protection in Cloud Computing Server Farm
Insight

The rise of the agentic product operating model: What will change in a world of agents?

How agentic AI is reshaping product operating models, teams, and decisions to drive faster, smarter outcomes.
Data Center Female System Administrator and Male IT Specialist talk, Use Laptop. Information Technology Engineers work on Cyber Security Protection in Cloud Computing Server Farm
Beyond GLP-1s
In the media

Beyond GLP-1s: Competing in the era of consumerized therapeutics

GLP‑1s are reshaping pharma as patient-consumers take control of treatment access and decisions.
Beyond GLP-1s
Passenger waiting while train speeds past
Insight

Unlocking a new era of cyber resilience and growth for UK critical infrastructure

Secure-by-design infrastructure using CHERI architecture strengthens hardware-based cybersecurity and improves critical national infrastructure resilience.
Passenger waiting while train speeds past
Aerial photo of London
Insight

The Risk and Reg Edit: Spring 2026 edition

Our quarterly update on how the risk and reg landscape is changing and how it’s impacting financial services leaders.
Aerial photo of London
Unilever Dove deodorant and antiperspirant refill packs
Client Story

Unilever

Designing and developing Dove deodorant’s refillable future
Unilever Dove deodorant and antiperspirant refill packs
Insight

The future of field services

From first signal to final fix, field services are becoming connected, preventative, and focused on keeping things running smoothly.
A woman wearing VR glasses
Client Story

Future Concept: Soma Sleep System

Exploring a future sleep ecosystem that adapts to your biology, routines, and environment.
A woman wearing VR glasses
Becky Noble
Insight

15 minutes with: Becky Noble

Becky uses new technologies safely and responsibly to deliver digital transformation.
Becky Noble
Data science on computer in office
In the media

The AI boom isn’t delivering returns

Most companies use AI, but few redesign their organisations to create real value from it.
Data science on computer in office
In the media

Cell and gene therapies: The emerging reality for scalable market readiness

Why CGT commercialization is failing and what must change next.
Consumer packaged goods being loaded from warehouse into vehicle
Insight

The impact of connected decisions

How connected decisions across operations create stronger, more predictable performance in consumer packaged goods.
Consumer packaged goods being loaded from warehouse into vehicle
Engineer in nuclear power station using digital tablet
Insight

Proving the bankable benefits of new nuclear

How can the energy ecosystem bring nuclear promise to reality?
Engineer in nuclear power station using digital tablet
Woman wearing headphones in office
Insight

Composing choices: How data engineering teams make decisions

How do data engineers combine collaboration, creativity, and AI to make smarter technical decisions?
Woman wearing headphones in office
Imagine
In the media

Imagine… Transforming medtech company workflows through AI adoption

Imagine how AI adoption can transform medtech workflows and accelerate innovation at scale.
Imagine
In the media

AI accelerated cyber-attacks aren’t new, but they are faster

Why AI speeds up cyber-attacks, not their nature.
Industrial manufacturing plant
Insight

Why industrial manufacturers are stalling on servitisation – and what it will take to scale

The hidden barriers preventing manufacturers from scaling digital and outcome-based services.
Industrial manufacturing plant
In the media

Companies are getting stuck with AI – the problem isn’t talent, it’s leadership

AI development stalls without clear leadership on risk, direction and accountability.
In the media

Airports must monetize their assets to fund infrastructure needs

Why airport growth now depends on monetizing assets, not relying on traditional funding.
In the media

AI won't fix clinical development until pharma changes how they use it

Why AI pilots fail in pharma and what actually improves clinical development performance.
Colleagues meeting with laptop in office
Insight

Four steps to unlock GenAI value in Nordic financial services

Generative AI transforms Nordic financial services with smarter operations, improved risk management, and responsible adoption guidance.
Colleagues meeting with laptop in office
Electric car charging station
Insight

How to integrate energy and transport systems to build EV customer confidence

Defining the critical path for UK decarbonisation through system-wide enablers, standardisation, and innovative commercial frameworks to accelerate electric mobility.
Electric car charging station
People watching a rocket launch
Insight

Cooperation without fragmentation: How can Europe govern space as critical national infrastructure?

Europe and its allies have the talent, capital, and industrial strength to meet their space ambitions.
People watching a rocket launch
Seniors hiking group
In the media

Less burden, more benefit

Healthcare leaders see the potential of digitally powered prevention
Seniors hiking group
Various world currency banknotes
In the media

Europe tightens its grip on money laundering – but criminals remain ahead

Record compliance spend – but money laundering shifting to cash, trade and crypto.
Various world currency banknotes
Medication manufacturing process glass vials with orange caps on conveyor belt medical ampoule production line at modern pharmaceutical factory vaccine production facility
In the media

Smarter safety stocks for a volatile world: Harnessing artificial intelligence and real-time data for resilient pharmaceutical supply chains

How AI and quality data reshape inventory, lead times and resilience in pharma.
Medication manufacturing process glass vials with orange caps on conveyor belt medical ampoule production line at modern pharmaceutical factory vaccine production facility
Client Story

European defence organisations

Collaborating across borders to keep our nations safe
Client Story

Energy and digital infrastructure investors

Powering the digital backbone of a resilient energy transition
Clean And Smart Mobility
Insight

Using AI engineering to help navigate complex operational data

How can AI engineering reshape vehicle‑repair timelines to deliver faster insights and smoother experiences?
Clean And Smart Mobility
Colleagues collaborating in office
Insight

How people will define the next era of AI in financial services

Redesigning financial services workforces to unlock value from AI and become an intelligent enterprise.
Colleagues collaborating in office
Celebrating five decades of breakthrough technologies at our Global Innovation and Technology Centre.
Insight

Fifty years of world firsts at our Global Innovation and Technology Centre

Reflecting on five decades of breakthrough technologies at our GITC.
Celebrating five decades of breakthrough technologies at our Global Innovation and Technology Centre.
New Build Power Plant
Insight

Bring Your Own Generation (BYOG): Accelerating the path to power supply solutions

BYOG accelerates data center power with onsite generation for faster, reliable, scalable grid solutions.
New Build Power Plant
Overhead view of construction workers and engineers at construction site
Insight

From gridlock to greenlight: How strong utility partnerships accelerate data center development

Early utility partnerships and smart site selection speed up data center power and reduce delays.
Overhead view of construction workers and engineers at construction site
Safety engineers working outside power plant
In the media

Bridging the skills gap for safe utility delivery

Driving safe, collaborative growth in UK utilities through improved workforce competency and enterprise-based contracting models to ensure delivery success.
Safety engineers working outside power plant
Jeremy Irwin
Insight

15 minutes with: Jeremy Irwin

Jeremy Irwin, aviation expert, supports clients in navigating operational turbulence and helps their ambitions take wing.
Jeremy Irwin
Engineer walking amongst pipes of nuclear power station
Insight

Incentivising the energy ecosystem to invest in new nuclear

Nuclear’s success relies on market support mechanisms and incentives that appreciate broader value.
Engineer walking amongst pipes of nuclear power station
Woman using device on sofa
In the media

Is the Netherlands ready for the digital civil servant?

Agentic AI is coming. Is the Netherlands ready?
Woman using device on sofa
Electricity Pylon in sunset
In the media

Defining American next-gen energy leadership

Successful next-gen energy projects need community buy-in, regulatory clarity, and easy permitting to draw investment.
Electricity Pylon in sunset
Airport departure gate
In the media

How airports can unlock new revenue streams to fund the next generation of infrastructure

As airports face rising energy demand, PA explores how airports can unlock alternative energy opportunities to support future infrastructure needs.
Airport departure gate
In the media

Is there a leader in the room?

Good leaders master both empathy and accountability and have the courage to make difficult decisions.
Colleagues collaborating in an office meeting room
In the media

As AI rewrites business, it’s time to rewrite your strategy

How leaders must adapt strategy, skills and decisions in an AI driven enterprise.
Colleagues collaborating in an office meeting room
Client Story

The Trade Desk

Advancing omnichannel advertising through audience-first insights
In the media

PA breaks with perfection culture to lead a new generation

Reflecting on flexibility, performance culture, and leading a new generation.
Client Story

Metroselskabet

Shaping the future of The Copenhagen Metro
Equinor
Client Story

Equinor

Advancing a low-cost pathway for direct air capture
Equinor
In the media

Building the intelligent operating room: The rise of digital surgery

What does the operating room of the future actually look like?
In the media

Building confidence in clinical trial data and technology processes

Early, end‑to‑end data validation that prevents study delays and improves clinical trial quality.
Thomas Sweetman
Insight

15 minutes with: Thomas Sweetman

Thomas Sweetman accelerates the adoption of technologies, and delivers innovative solutions at scale.
Thomas Sweetman
Scientist with test tube and flask
Insight

Real-time PFAS detection methods at parts per trillion: Mission impossible?

Real-time monitoring solutions for PFAS (forever chemicals) detection.
Scientist with test tube and flask
Mother and infant outside near forest
In the media

Imagine… Cradle-to-bedside: Health journeys, powered by diagnostics

What does the future of diagnostics look like, and how can it enable a positive change in how we approach healthcare?
Mother and infant outside near forest
GLP-1 device
In the media

Revisiting the predictions: How have GLP-1s changed the food industry?

Weight‑loss drugs like GLP‑1s are redefining how consumers eat and how food companies respond.
GLP-1 device
Military personnel using tablet device
In the media

The UK must help drive NATO unity to secure the alliance’s digital and industrial edge

How should Europe balance its investment in cutting-edge digital technologies and traditional industrial power?
Military personnel using tablet device
Copenhagen office
In the media

Rethinking the consulting model: Experience over hierarchy

Why experienced specialists matter more than seniority in the hierarchy in the evolving consulting industry.
Copenhagen office
View of meeting in modern office
Insight

Overcoming leadership challenges in complex transformations

Leaders explore how to deliver confident, goal-driven transformation.
View of meeting in modern office
In the media

Breakthroughs in the lab – Blind spots in reality

GLP-1-driven obesity care needs personalized, real-world systems to sustain long‑term outcomes.
Ambulance worker
Insight

How Ambulance Trusts can use data effectively to transform productivity 

How can Ambulance Trusts use data to improve NHS response times, efficiency, and urgent care outcomes?
Ambulance worker
Close-up Portrait of Software Engineer Working on Computer, Line of Code Reflecting in Glasses. Developer Working on Innovative e-Commerce Application using Machine Learning, AI Algorithm, Big Data.
In the media

AI: Exponential hype meets a linear reality?

AI hype promises exponential change. In reality, adoption moves slower – limited by trust and implementation.
Close-up Portrait of Software Engineer Working on Computer, Line of Code Reflecting in Glasses. Developer Working on Innovative e-Commerce Application using Machine Learning, AI Algorithm, Big Data.
Woman consumer using mobile phone
Insight

Why outcome-based shopping will redefine retail

As agentic AI rises, multimodal tech moves retail forward towards outcome driven, personalised shopping journeys.
Woman consumer using mobile phone
Digital representation of fingerprint
In the media

Leading not lagging: How can counter terrorism keep pace with tech-driven threats?

Chris Miles and Ewan Sharp discuss how UK counter terrorism must keep pace with tech-enabled threats.
Digital representation of fingerprint
Buildings in a city's financial centre
In the media

Time to rethink the three lines of defence in financial services

Risk management in the financial sector should drive innovation, not hinder it.
Buildings in a city's financial centre
Bank of England
Client Story

Bank of England

Keeping money moving with a world-leading payments service
Bank of England
Group of people smiling look at a tablet device
Insight

How business integration can unlock ERP transformation success

Business integration drives ERP success through strong design, change management, and process optimisation.
Group of people smiling look at a tablet device
Aeroplanes and aircraft carrier
Insight

Securing Europe together: How to step into the future with confidence

Strategic intent must be translated into new capabilities that provide much-needed deterrence and operational readiness
Aeroplanes and aircraft carrier
Colleagues collaborating in an office
Insight

Five lessons non-consumer brands can learn from the consumer brand playbook

Consumer brand strategies non-consumer brands can adopt to strengthen positioning and performance.
Colleagues collaborating in an office
Woman using tablet device with stylus
In the media

We are producing more than ever – yet losing value along the way

Producing more does not guarantee value or measurable business impact.
Woman using tablet device with stylus
Woman laying down on floor with headphones reading mobile phone
Insight

Understanding digital prevention: A conversation with Rima Makarem

What do you see as some of the biggest challenges to delivering the prevention agenda?
Woman laying down on floor with headphones reading mobile phone
Drone flying in cloudy sky
In the media

What can the UK learn from Ukraine’s whole-of-society response?

As the war continues, resilience remains Ukraine’s superpower. If the time comes, will it be ours?
Drone flying in cloudy sky
Cloud computing server farm
In the media

When automation replaces offshoring

How automation is reshaping the economics of offshoring.
Cloud computing server farm
Hertfordshire County Council
Client Story

Hertfordshire County Council

Accelerating smarter growth and service delivery for local government with AI
Hertfordshire County Council
Insight

C-Suite convergence: Why CFOs and CSOs are on a collision course 

See how new pressures are rewriting the CSO role and the capabilities defining those who succeed.
In the media

Cyber Security and Resilience Bill: Navigating utility sector impacts

Expert analysis on managing the operational and financial risks of the new UK Cyber Security and Resilience Bill.
Factory worker using tablet device
Insight

Four paths to rapid operational value on the factory floor

Optimising factory operations with AI-driven, autonomous decision making for enhanced control and rapid ROI.
Factory worker using tablet device
Insight

From bureaucratic silos to user-centred services: Rewiring government for real-world value

Rewiring government around end‑to‑end services boosts outcomes, efficiency, accountability, and long‑term user value.
Person sitting on furniture at home with dog
Insight

Reimagining NHS care with smart hospitals

How smart hospitals and digital care models can transform NHS efficiency.
Person sitting on furniture at home with dog
PA colleagues in meeting room
Insight

Building a digital and data career: My journey as a degree apprentice

How does hands‑on digital work empower apprentices to build real skills, gain confidence, and accelerate tech careers?
PA colleagues in meeting room
Houses of Parliament
Insight

Delivering the new Green Book vision

The Green Book update guides UK public sector funding with clearer appraisal requirements to demonstrate value.
Houses of Parliament
Insight

Don’t let AI happen by accident: Intentionally moving beyond adoption to value creation

Explore how organisations intentionally build AI value creation through skills, trust, leadership, and collaboration.
In the media

Healthcare reform: Structure and realism are the way forward

Realism and making digital a structural enabler will determine the success of healthcare reform.
Colleagues looking at light diagram
In the media

AI in 2026: How organisations will change as they continue to embed and scale

Six shifts drawn from working with organisations that want either to lead on AI or follow safely.
Colleagues looking at light diagram
A person working on a laptop at nighttime
In the media

Three trends that will drive more AI value in 2026

Three AI trends shaping 2026: how to deliver strategic value, fit-for purpose data and adoption.
A person working on a laptop at nighttime
Maggie Hunt
Insight

15 minutes with: Maggie Hunt

Maggie helps organisations build inclusive, sustainable futures by unlocking the power of tech, talent, and data.
Maggie Hunt
Two ladies in front of a pharmacy
Insight

The role of pharmacies in digital prevention: A conversation with Zoe Long

What makes pharmacies so central to the delivery of digital prevention?
Two ladies in front of a pharmacy
Overhead view of warehouse worker moving pallet of goods with forklift in warehouse
In the media

Supply chains do not succeed through luck but by data

Supply chains succeed not through luck but data-driven insight that enables faster decisions and greater resilience.
Overhead view of warehouse worker moving pallet of goods with forklift in warehouse
Bank employee
In the media

The invisible threat of financial crime lies inside the bank

Financial crime’s hidden threat lies inside banks, where access and pressure create insider risk.
Bank employee
Insight

Enhancing manufacturing capacity to enable growth

Inside how consumer goods companies are confronting capacity strain and reshaping their supply networks.
Insight

Practical strategies to mitigate today’s trade pressures

Why evolving tariffs are complicating sourcing and how businesses are protecting margins.
British military flag patch on camouflage uniform
In the media

Can private capital close the UK’s warfare readiness gap?

British military flag patch on camouflage uniform
Business meeting
Insight

Techno-economic assessments: The energy metrics that matter

Techno-economic assessments evaluate energy technologies’ viability and value, guiding investment in complex energy markets.
Business meeting
Women looking at tablet device.
In the media

Can building societies and banks stay human in an AI world?

How AI can streamline tasks while preserving the human touch in banking.
Women looking at tablet device.
In the media

The AI innovation mirage: How to shift from talk to impact

London city street
Insight

The Risk and Reg Edit: Winter 2026 edition

What's on the risk agenda for financial services in 2026?
London city street
Insight

People-first strategies for AI adoption in financial services

How HR can drive transformation through culture, skills, and trust.
Digital image of a padlock
In the media

Essential tips to ensure you bounce back after a cyber attack

Four essential steps to help businesses bounce back stronger after an attack.
Digital image of a padlock
Confident young Asian woman using smartphone against blue coloured illuminated LED digital display screen
Insight

From ‘pilotitis’ to a learning system: Growing impactful change in complex public services

Adopting test, learn, grow principles to scale impact, foster collaboration, and deliver adaptive public services.
Confident young Asian woman using smartphone against blue coloured illuminated LED digital display screen
Couple looking at smartphone
Client Story

L&G

Automating data privacy to drive trust and operational excellence
Couple looking at smartphone
In the media

Clinical trials in 2026: Platformization, AI fluency, and the redrawing of the value chain

How platformization, AI, and new players will redefine clinical research and trial operations in 2026.
Digital fingerprint
In the media

Cutting through the noise: SaaS accelerators vs. enterprise AI

How CISOs and security leaders can cut through the AI hype.
Digital fingerprint

Contact the team

We look forward to hearing from you.