NIST SP 800-190
Image Security

NIST SP 800-190 SP800-190-3.2: Image Configuration Hardening

Build images using minimal base layers, remove development tools and shells where possible, and configure non root users. Treat the Dockerfile or equivalent build specification as code that is reviewed and version controlled.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Image Security

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.