Enterprise AI is changing from software that primarily generates information to software that can take action. AI agents can call APIs, invoke tools,…
Category: Red Hat Security
Red Hat Enterprise Linux 10 STIG automation now matches DISA STIG V1R2
For the U.S. Department of Defense (DoD) and its contractors, security has to hold up against a published baseline—not a general claim that systems are…
Turning security complexity into useful intelligence: What’s new in Red Hat Lightspeed
In a post-Mythos world, IT teams face a mounting crisis. Many are doing more with the same staff, and security work hasn’t gotten simpler. Alerts still…
2026 update: The road to quantum-safe cryptography in Red Hat OpenShift
A year ago, I wrote about the road to quantum-safe cryptography in Red Hat OpenShift. At the time, much of that road was forward-looking: TLS 1.3 was not…
Stop rewriting stable code: How Lightwell protects your bottom line and developer velocity
How Lightwell breaks the forced-upgrade cycle to keep your systems protected and your developers focused on innovation.The Monday morning CISO…
Closing the loop: From network policy intent to verified reality
Part 3 of a series on implementing zero trust security in Red Hat OpenShift with the layered zero trust validated pattern.Kubernetes NetworkPolicies are…
The Lightwell reality check
We’ve been talking with business leaders about Lightwell for the past few months, and the conversation always starts with enthusiasm. AI-driven exploits…
Accelerating post-quantum security migration with Red Hat Certificate System
The realities of quantum computing and its inevitable impact on enterprise cryptography are already taking shape:Red Hat Enterprise Linux has been…
Accelerating post-quantum security migration with Red Hat Certificate System
The realities of quantum computing and its inevitable impact on enterprise cryptography are already taking shape:Red Hat Enterprise Linux has been…
The Lightwell reality check
We’ve been talking with business leaders about Lightwell for the past few months, and the conversation always starts with enthusiasm. AI-driven exploits…
Beyond container boundaries: Kernel-level agent security in Red Hat OpenShift AI 3.5
77% of organizations now have AI agents running in production.1 The adoption curve is steep. The governance curve is not. Agents operate over-permissioned…
5 ways to augment security risk management in the AI era
IT operations and security teams receive thousands of alerts every day from threat intelligence sources, such as vulnerability scanners, observability…
Streamlining container security: Red Hat Hardened Images now supported in AWS InspectorScan API and ECR Basic scanning
Software security teams can face an overwhelming influx of vulnerability alerts, often stemming from non-essential packages bundled inside traditional…
Preparing OpenStack for the post-quantum era: A systematic approach to crypto-agility
OpenStack powers clouds used by some of the most security-sensitive organizations on the planet: government agencies, telecommunications providers,…
How a global financial messaging network secured millions of containers and defeated alert fatigue
For a network that helps the financial community securely exchange payment instructions representing the equivalent of the world’s GDP every 3 days,…
Why IT security’s future is more than just AI models
Much of the public discussion around AI and its impact on cybersecurity focuses almost exclusively on models, with some arguments calling for a central…
Lights on! Real-time threat response with Red Hat Advanced Cluster Security
Part 2 of a series on implementing zero trust in Red Hat OpenShift with the layered zero trust validated pattern (ZTVP)In our previous article, we…
No time to lose: Why post-quantum security for financial services must start now
Post-quantum cryptography: The emerging threatThe transition to post-quantum cryptography (PQC) is becoming an urgent priority for the global financial…
Substituting IP address evaluation with hardware-rooted sovereign zero trust
The need for trustworthy networking, reliable cloud access, and compliance with digital sovereignty requirements has increased substantially in recent…
Substituting IP address evaluation with hardware-rooted sovereign zero trust
The need for trustworthy networking, reliable cloud access, and compliance with digital sovereignty requirements has increased substantially in recent…
