RCCE Course
Course #116

Containers Hardening Workshop

📊 Level: Advanced
⏱️ Duration: 2 Days
🏷️ Track: DevSecOps
📋 Prerequisites: DevSecOps foundations
🖥️ Mode: Online Instructor-Led
📝 Course Description

RCCE students will learn container security including Docker security configurations, container image scanning, runtime protection, orchestrator security, container networking, and container forensics. RCCE students will learn to build secure container images following minimal base image and multi-stage build practices, scan images for vulnerabilities and misconfigurations, implement container runtime security using seccomp, AppArmor, and SELinux profiles, configure Docker daemon security, isolate container workloads, monitor container behavior for anomalies, investigate compromised containers, and establish container security governance across development and operations teams. This hands-on hardening course focuses on reducing attack surface through practical configuration changes and security guardrails. At an expert level, RCCE students will learn to apply hardening baselines, validate configurations, and measure the security improvement achieved. Students walk away with actionable hardening checklists and the skills to maintain hardened configurations as environments evolve.

🎯 Target Audience
  • Security Engineers building defensive controls
  • Security Analysts and Blue Team members
  • Systems Administrators with security responsibilities
  • GRC and Risk Professionals supporting controls
  • Professionals implementing Containers Hardening Workshop
🧠 What You Will Learn
  • Execute hands-on tasks for containers hardening workshop
  • Execute hands-on tasks for advanced cyber defense mastery
  • Explain Executive Overview fundamentals
  • Execute hands-on tasks for why container hardening matters — covering Containers expand attack surface rapidly.
  • Measure attack surface reduction and program effectiveness
  • Execute hands-on tasks for operational efficiency
  • Execute hands-on tasks for compliance alignment — covering Minimize container escape risk, Automate security baselines, CIS Docker Benchmark.
  • Execute hands-on tasks for core definitions & terminology
  • Design a scalable privilege management architecture with policy and enforcement
  • Execute hands-on tasks for applications / microservices
  • Execute hands-on tasks for attack surface areas
  • Execute hands-on tasks for container engine (docker, podman)
📚 Course Outline
Module 01Containers Hardening Workshop
Module 02Advanced Cyber Defense Mastery
Module 03Executive Overview
Module 04Why Container Hardening Matters
Module 05Risk Reduction
Module 06Operational Efficiency
Module 07Compliance Alignment
Module 08Core Definitions & Terminology
Module 09Container Architecture & Attack Surface
Module 10Applications / Microservices
Module 11Attack Surface Areas
Module 12Container Engine (Docker, Podman)
Module 13Container Stack
Module 14Container Threat Landscape
🧪 Lab Details

All hands-on labs run on Rocheston Rose X OS. Students practice containers hardening workshop by implementing the controls discussed in class, with a focus on real-world deployment, monitoring, and validation.

  • Lab 1: Execute hands-on tasks for containers hardening workshop
  • Lab 2: Execute hands-on tasks for advanced cyber defense mastery
  • Lab 3: Explain Executive Overview fundamentals
  • Lab 4: Execute hands-on tasks for why container hardening matters
  • Lab 5: Measure attack surface reduction and program effectiveness
📊 Skill Level
Advanced
Beginner Intermediate Advanced Expert
Duration
2 Days
🎓
Certificate
Completion
🖥️
Lab Platform
Rose X OS
👨‍🏫
Mode of Training
Online Instructor-Led
🔥
Platform
Zelfire
🐦‍⬛
Cyber Range
Raven
📓
Study Material
CyberNotes
🏆 Certificate

Upon successful completion of this course, students will receive an official RCCE Course Completion Certificate for Containers Hardening Workshop, verifiable through the Rocheston certification portal.

🔑 Student Access & Materials
  • Full access to all course materials and slide decks
  • Hands-on lab access on Rocheston Rose X OS environment
  • Access to Rocheston CyberNotes
  • Access to Rocheston Zelfire — EDR/XDR SIEM platform
  • Access to Rocheston Raven — online cyber range exercise platform
  • Access to Rocheston Vulnerability Vines AI