NIST SP 800-190
Image Security

NIST SP 800-190 SP800-190-3.1: Container Image Vulnerability Management

Scan every container image for known vulnerabilities before it is promoted to production and continuously after deployment. Track vulnerabilities by image, base layer, and software package so that remediation can be prioritized against the actual runtime exposure.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Image Security

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.