Securing the Cloud-Native Edge

The job of “protecting the data” in a cloud-native environment used to mean snapshots and offsite copies of stateful workloads. That definition is breaking down quickly. Once an organization starts running RAG databases, fine-tuned models and agent state alongside its application data, the protected surface area expands well beyond what traditional Kubernetes backup was designed to cover — and the recovery story has to expand with it.

Alan Shimel, broadcasting from SUSECON in Prague, sits down with Kevin Keller and Matt Slotten to dig into what AI workloads actually do to the resilience model. Their argument is that vector stores, model weights and pipeline metadata are now mission-critical artifacts in their own right, and treating them as opaque storage doesn’t cut it. Recovery needs to be aware of what kind of data is being restored, not just where it lives.

The discussion gets into the practical mechanics of doing that on Kubernetes — application-aware capture, immutable backups to defend against ransomware aimed at AI assets, and policy-driven retention that recognizes the difference between a transient inference cache and a curated training corpus. They also walk through how integrating directly with the underlying cluster substrate (in this case SUSE Rancher) lets platform teams enforce protection as a property of the namespace rather than something bolted on after deployment.

The bigger thread is the move off legacy virtualization platforms and onto Kubernetes-based infrastructure, and what that consolidation means for security architecture. Keller and Slotten make the case that the organizations doing this well are using the migration window to rebuild their resilience posture around cloud-native primitives — GitOps, declarative policy, immutable artifacts — so that the same controls protect VMs, containers and AI workloads under a single operational model.

Alan Shimel

Alan Shimel is founder, CEO and editor-in-chief of Techstrong Group, a Futurum company, and a member of Futurum's executive leadership team. A technology entrepreneur, media executive and industry commentator, Shimel has spent more than three decades building businesses, communities and media platforms serving enterprise technology professionals, including co-founding StillSecure, a network security company, and the DevOps Institute, a DevOps certification and training body. At Techstrong, he leads a portfolio of media brands including DevOps.com, Security Boulevard, Cloud Native Now, Techstrong AI, Techstrong IT, Digital CxO, Platform Engineering, Techstrong Semi and Techstrong TV, along with a growing portfolio of events, educational programs and digital communities. With more than 25 years of experience in cybersecurity, Shimel is a familiar voice in the space and was an early advocate of the DevOps movement, helping bring DevOps practices into mainstream enterprise technology. His work today spans cybersecurity, DevOps, cloud-native technologies, artificial intelligence, semiconductors and digital transformation, and he hosts popular programs including Techstrong Gang, Shimmy Says and Still Cyber, After All These Years. He holds a Bachelor of Arts in Government and Politics from St. John's University and a Juris Doctor from New York Law School.

Alan Shimel has 116 posts and counting. See all posts by Alan Shimel