Cloud

Container ManagerNew

Provides security visibility across your containerised workloads and Kubernetes clusters — monitoring running containers, image vulnerabilities, cluster health, and namespace access controls.

Container Manager

Container and Kubernetes security visibility

What it does

Key capabilities

Kubernetes Cluster Monitoring

Monitor node status, pod health, and cluster resource utilisation across all your Kubernetes environments.

Container Inventory

Complete inventory of running containers with image versions, ports, and runtime status.

Image Vulnerability Scanning

Identifies known CVEs in container images before and after deployment to production clusters.

Namespace Access Controls

Audits RBAC policies and namespace access controls to enforce least-privilege across your cluster.

Runtime Anomaly Detection

Detects unexpected process execution, privilege escalation, and suspicious network activity inside containers.

Compliance Reporting

Maps container security posture to CIS Kubernetes Benchmark and ISO 27001 controls.

Highlights

Why Container Manager?

  • Kubernetes, Docker, and Azure Kubernetes Service (AKS) supported
  • Container image vulnerability scanning
  • RBAC and namespace access audit
  • Runtime anomaly detection
  • CIS Kubernetes Benchmark alignment
Included in OneView

Container Manager is part of the Hakware OneView platform. All findings, events, and data from this module flow into your central dashboard alongside every other security signal in your environment.

24/7 Support Available
Phone: +27 060 984 1210
FAQs

Frequently asked questions

Container Manager supports Kubernetes clusters including Azure Kubernetes Service (AKS), Amazon EKS, and self-managed Kubernetes deployments. It also provides visibility into standalone Docker deployments. Cluster connection is via the Kubernetes API, and no privileged container access is required for monitoring.

Container Manager scans the image layers of running containers against the NIST NVD CVE database, identifying known vulnerabilities in base images, language runtimes, and installed packages. Scanning occurs both when images are deployed and on a recurring schedule, so newly published CVEs affecting existing deployments are caught automatically.

The audit reviews all Kubernetes Role and ClusterRole bindings to identify service accounts, users, and groups with excessive permissions — particularly those with cluster-admin, wildcard verbs, or cross-namespace access. This helps enforce least-privilege and reduces the blast radius of a compromised pod or service account.

Container Manager maps its security checks to the CIS Kubernetes Benchmark controls, providing a per-control pass/fail assessment across API server configuration, RBAC settings, network policies, pod security standards, and logging configuration. The results can be exported as evidence for ISO 27001 or SOC 2 audits.

See Container Manager in action

Request a personalised demo and we'll show you exactly how Container Manager works within your environment.