---
title: "We’ve just published a book on container and cloud-native application security and observability"
source: "https://www.tigera.io/blog/weve-just-published-a-book-on-container-and-cloud-native-application-security-and-observability/"
description: "Read our book to learn how to adopt a holistic approach to container and cloud-native application security and observability."
---

[Company Blog](https://www.tigera.io/category/company-blog/)

# We’ve just published a book on container and cloud-native application security and observability

By [Laura Ferguson](https://www.tigera.io/blog/author/laura-ferguson/) on Nov 10, 2021 • 2 min read

We are excited to announce the release of our O’Reilly book, [Kubernetes security and observability: A holistic approach to securing containers and cloud-native applications](https://link.tigera.io/udWxu). The book, authored by Tigera’s Brendan Creane and Amit Gupta, helps you learn how to adopt a holistic security and observability strategy for building and securing cloud-native applications running on Kubernetes.

## Why did we write this book?

Security practitioners are faced with a wide range of considerations when securing, observing, and troubleshooting containerized workloads on Kubernetes. These considerations range from infrastructure choices and cluster configuration to deployment controls and runtime and network security. Although securing cloud-native applications can be a daunting task, our book will give you the knowledge and confidence you’ll need to establish security and observability for your cloud-native applications.

 

## What’s included?![Book cover: 'Kubernetes Security and Observability,' illustrating the complexity of securing containerized workloads](https://www.tigera.io/app/uploads/2021/11/oreilly-book-mockup-256x300.png)

In 11 chapters, the book covers topics relevant to containers and cloud-native applications in detail, including:

- - Infrastructure security - Workload deployment controls and runtime security - Network policy - Managing trust across teams - Exposing services to external clients - Encryption of data in transit - Threat defense and intrusion detection - And more…

## What you’ll learn

After reading the book, you’ll have gained an understanding of key concepts behind security and observability for cloud-native applications, how to determine the best strategy, and which technology choices are available to support your strategy. You’ll also learn how to architect [Kubernetes security](https://www.tigera.io/learn/guides/kubernetes-security/) and observability for multi-cloud and hybrid environments, and best practices for sharing security responsibilities across multiple teams and/or roles.

Whether you want to know how to secure and troubleshoot your cloud-native applications, or are exploring Kubernetes for your organization and would like to solve security and observability challenges before making a decision, you will find that this book provides valuable insight.

***Get your free copy of our [O’Reilly eBook: Kubernetes security and observability](https://link.tigera.io/udWxu)***

 

[Best Practices](https://www.tigera.io/tags/best-practices/)[How-To](https://www.tigera.io/tags/how-to/)[Announcements](https://www.tigera.io/tags/announcements/)

## Related posts

[![The Clearinghouse For AI Agents Has A Blind Spot](https://www.tigera.io/app/uploads/2026/09/Lynx-Clearinghouse-Blog.png)](https://www.tigera.io/blog/clearinghouse/)

[Technical Blog](https://www.tigera.io/category/technical-blog/)

#### [The Clearinghouse For AI Agents Has A Blind Spot](https://www.tigera.io/blog/clearinghouse/)

By [Dillon Barry](https://www.tigera.io/blog/author/dillon-barry/)
on Sep 23, 2026

Jamin Ball’s recent piece, “Systems of Record Won the SaaS Era — Clearinghouses Will Win the Agents Era,” is the cleanest articulation I’ve seen of where the durable moat goes next. His argument is simple...

[Read more](https://www.tigera.io/blog/clearinghouse/)

[![Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/app/uploads/2026/09/Meet-Mylo-An-AI-native-way-to-work-with-Calico.png)](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

#### [Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

By [Phil DiCorpo](https://www.tigera.io/blog/author/phil-dicorpo/)
on Sep 3, 2026

A library of Calico tools and skills — delivered through the Calico MCP Server What if your hardest network question took ten minutes instead of ten days? Anyone who has operated Kubernetes networking at scale...

[Read more](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

[![The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/app/uploads/2026/08/The-Safest-Place-to-Run-an-AI-Agent-Is-On-a-Cluster-That-Doesnt-Trust-It.png)](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

#### [The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Aug 27, 2026

Every organization running AI agents has already made a hosting decision. Most made it by accident. The sales team switched on the agent built into their CRM. Engineering is piloting a coding agent in a...

[Read more](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

<!-- plugin=object-cache-pro client=phpredis metric#hits=6089 metric#misses=33 metric#hit-ratio=99.5 metric#bytes=2230853 metric#prefetches=0 metric#store-reads=428 metric#store-writes=14 metric#store-hits=427 metric#store-misses=22 metric#sql-queries=31 metric#ms-total=961.09 metric#ms-cache=60.10 metric#ms-cache-avg=0.1363 metric#ms-cache-ratio=6.3 sample#redis-hits=14711680 sample#redis-misses=5545857 sample#redis-hit-ratio=72.6 sample#redis-ops-per-sec=271 sample#redis-evicted-keys=0 sample#redis-used-memory=97440336 sample#redis-used-memory-rss=87506944 sample#redis-memory-fragmentation-ratio=0.9 sample#redis-connected-clients=1 sample#redis-tracking-clients=0 sample#redis-rejected-connections=0 sample#redis-keys=44764 -->
