UnitTest • Code review • ・・・ • Container • Scanning - Trivy • Check dockerfile – hadolint • ・・・ • Cluster • Yaml Test - Kubeval, kubetest • REGO test – conftest, gatekeeper • ・・・ • Cloud(AWS) • IAM least privilege principle • Backup volume and use KMS • Use optimized AMI • Guardduty • Cloudwatch • ・・・