Back to all checklists
SecurityIntermediate

Docker Security Hardening Checklist

Comprehensive security checklist for hardening Docker containers, images, and runtime environments.

60-90 minutes
12 items
dockercontainerssecurityhardeningdevsecops
Progress0 / 12 completed
0%

Use official or verified base images

Critical

Run containers as non-root user

Critical

Use minimal base images and multi-stage builds

Scan images for vulnerabilities

Critical

Use read-only filesystem

Drop unnecessary Linux capabilities

Critical

Never store secrets in images

Critical

Set resource limits

Enable AppArmor or Seccomp profiles

Use private container registry

Use network segmentation

Implement health checks