OVERVIEW
As container platforms scale, analyzing and managing Common Vulnerabilities and Exposures (CVEs) becomes increasingly complex and time-consuming. Security teams often struggle with large volumes of vulnerabilities, varying severity ratings, multiple scanner sources, and frequent false positives. Red Hat Advanced Cluster Security (RHACS) helps address these challenges by providing centralized visibility into CVEs across clusters, images, and workloads, powered by trusted Red Hat security data.
This session focuses on practical approaches to CVE management using RHACS. It covers severity ratings, common triaging challenges, and how RHACS integrates vulnerability scanners and their data sources. To simplify analysis, the session demonstrates techniques such as using pivot tables and VBA scripts to clean and interpret vulnerability reports. It also explains how Red Hat VEX files can be used to improve CVE analysis by distinguishing remediable risks from false positives and residual risks. Attendees will leave with actionable strategies to prioritize vulnerabilities effectively and reduce noise, enabling more efficient and informed security decisions in containerized environments.
The following topics will be covered in this webinar:
- Cut through CVE noise and focus on the vulnerabilities that truly matter
- Leverage trusted Red Hat security data and built-in vulnerability scanners
- Simplify decisions with VEX-based insights
- Confidently classify and prioritize risks to improve your security posture
Questions? Please reach out to Sylvia A
Vidhya
Senior Technical Account Manager, Red Hat
Vidhya is a seasoned IT professional with over 13 years of experience, specializing in automation and enterprise infrastructure. She brings deep expertise in Red Hat technologies, including Red Hat Enterprise Linux (RHEL), Ansible Automation Platform, and OpenShift. She has extensive experience working on automation and security-focused initiatives, including vulnerability remediation workflows, and CI/CD integrations for OpenShift environments. Her current focus is on helping organizations strengthen their container and Kubernetes security posture using Red Hat Advanced Cluster Security (RHACS), enabling effective CVE management, risk prioritization, and compliance. She helps customers maximize the value of their Red Hat subscriptions while operating secure and resilient platforms.
Mos Nattapong E.
Technical Account Manager, Red Hat
Mos is an experienced platform architect with deep expertise in designing, deploying, and operating OpenShift at scale. He has helped enterprise customers optimize their container environments for performance, security, and compliance. Mos brings extensive hands-on experience integrating OpenShift with CI/CD pipelines, observability tools, and security platforms such as Red Hat Advanced Cluster Security (RHACS) to streamline vulnerability management and CVE remediation. His practical insights into securing Kubernetes workloads, implementing compliance controls, and building resilient, scalable OpenShift clusters make him a trusted advisor for organizations adopting or expanding OpenShift platforms. Mos has exposure on the real-world strategies for combining OpenShift and RHACS to maintain secure, efficient, and compliant container environments.