
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>Chaos and Order</title>
      <link>https://www.youngju.dev/blog</link>
      <description>천천히 올바르게. AI Researcher &amp; DevOps Engineer Youngju&#39;s tech blog. GPU/CUDA, LLM, MLOps, Kubernetes AI workloads, distributed training, and data engineering.</description>
      <language>ko</language>
      <managingEditor>fjvbn2003@gmail.com (Youngju Kim)</managingEditor>
      <webMaster>fjvbn2003@gmail.com (Youngju Kim)</webMaster>
      <lastBuildDate>Sat, 16 May 2026 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://www.youngju.dev/tags/cspm/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://www.youngju.dev/blog/culture/2026-05-16-cloud-security-zero-trust-sbom-slsa-cspm-wiz-falco-sigstore-vault-2026-deep-dive.en</guid>
    <title>Cloud Security 2026 Complete Guide - Zero Trust, SBOM/SLSA, CSPM/CNAPP, Wiz, Falco, Sigstore, Vault, Tailscale, Cloudflare Deep Dive</title>
    <link>https://www.youngju.dev/blog/culture/2026-05-16-cloud-security-zero-trust-sbom-slsa-cspm-wiz-falco-sigstore-vault-2026-deep-dive.en</link>
    <description>A complete look at the cloud security stack as of May 2026. Zero Trust (Cloudflare, Tailscale, Zscaler, Netskope), CSPM/CNAPP (Wiz, Orca, Lacework, Prisma Cloud, Sysdig, Aqua), SBOM/SLSA supply chain (Sigstore cosign, CycloneDX/SPDX, Trivy, Syft, Grype, Dependency-Track, GUAC), runtime security (Falco, Tetragon, KubeArmor), secrets/IGA (Vault, CyberArk, Doppler, Infisical), and IaC/policy (Checkov, OPA, Kyverno) — all in one place.</description>
    <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>cloud-security</category><category>zero-trust</category><category>sbom</category><category>slsa</category><category>cspm</category><category>cnapp</category><category>wiz</category><category>falco</category><category>sigstore</category><category>vault</category><category>tailscale</category><category>cloudflare-zero-trust</category><category>supply-chain-security</category><category>devsecops</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/culture/2026-05-16-cloud-security-zero-trust-sbom-slsa-cspm-wiz-falco-sigstore-vault-2026-deep-dive.ja</guid>
    <title>クラウドセキュリティ 2026 完全ガイド - Zero Trust・SBOM/SLSA・CSPM/CNAPP・Wiz・Falco・Sigstore・Vault・Tailscale・Cloudflare 徹底解説</title>
    <link>https://www.youngju.dev/blog/culture/2026-05-16-cloud-security-zero-trust-sbom-slsa-cspm-wiz-falco-sigstore-vault-2026-deep-dive.ja</link>
    <description>2026年5月時点のクラウドセキュリティスタックを一気に整理する。Zero Trust(Cloudflare、Tailscale、Zscaler、Netskope)、CSPM/CNAPP(Wiz、Orca、Lacework、Prisma Cloud、Sysdig、Aqua)、SBOM/SLSAサプライチェーン(Sigstore cosign、CycloneDX/SPDX、Trivy、Syft、Grype、Dependency-Track、GUAC)、ランタイムセキュリティ(Falco、Tetragon、KubeArmor)、シークレット/IGA(Vault、CyberArk、Doppler、Infisical)、そしてIaC/ポリシー(Checkov、OPA、Kyverno)まで一本でまとめる。</description>
    <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>cloud-security</category><category>zero-trust</category><category>sbom</category><category>slsa</category><category>cspm</category><category>cnapp</category><category>wiz</category><category>falco</category><category>sigstore</category><category>vault</category><category>tailscale</category><category>cloudflare-zero-trust</category><category>supply-chain-security</category><category>devsecops</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/culture/2026-05-16-cloud-security-zero-trust-sbom-slsa-cspm-wiz-falco-sigstore-vault-2026-deep-dive</guid>
    <title>클라우드 보안 2026 완벽 가이드 - Zero Trust · SBOM/SLSA · CSPM/CNAPP · Wiz · Falco · Sigstore · Vault · Tailscale · Cloudflare 심층 분석</title>
    <link>https://www.youngju.dev/blog/culture/2026-05-16-cloud-security-zero-trust-sbom-slsa-cspm-wiz-falco-sigstore-vault-2026-deep-dive</link>
    <description>2026년 5월 기준 클라우드 보안 스택을 끝까지 본다. Zero Trust(Cloudflare, Tailscale, Zscaler, Netskope), CSPM/CNAPP(Wiz, Orca, Lacework, Prisma Cloud, Sysdig, Aqua), SBOM/SLSA 공급망(Sigstore cosign, CycloneDX/SPDX, Trivy, Syft, Grype, Dependency-Track, GUAC), 런타임 보안(Falco, Tetragon, KubeArmor), 시크릿/IGA(Vault, CyberArk, Doppler, Infisical), IaC/정책(Checkov, OPA, Kyverno)까지 한 글에서 깊이 정리한다.</description>
    <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>cloud-security</category><category>zero-trust</category><category>sbom</category><category>slsa</category><category>cspm</category><category>cnapp</category><category>wiz</category><category>falco</category><category>sigstore</category><category>vault</category><category>tailscale</category><category>cloudflare-zero-trust</category><category>supply-chain-security</category><category>devsecops</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/culture/2026-05-16-cspm-cloud-security-posture-management-2026-wiz-google-32b-lacework-orca-aqua-sysdig-prisma-deep-dive.en</guid>
    <title>CSPM Cloud Security Posture Management 2026 — Wiz (Google $32B Acquisition) / Lacework / Orca / Aqua / Sysdig / Prisma Cloud / DSPM Deep Dive</title>
    <link>https://www.youngju.dev/blog/culture/2026-05-16-cspm-cloud-security-posture-management-2026-wiz-google-32b-lacework-orca-aqua-sysdig-prisma-deep-dive.en</link>
    <description>As of May 2026, the Cloud Security Posture Management (CSPM) market has been completely reshaped by Google acquiring Wiz for $32B in March 2025. This deep dive covers Wiz, Lacework (acquired by Fortinet), Orca Security, Aqua Security, Sysdig, Prisma Cloud, Snyk Cloud, Tenable Cloud Security, Datadog CSM, Microsoft Defender for Cloud, Google Security Command Center, and AWS Security Hub — plus the CNAPP/CWPP/CIEM/DSPM four-category framework and Cyera/Varonis/BigID, with Toss, Kakao KSec, Mercari, and NTT references.</description>
    <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>cspm</category><category>cloud-security</category><category>wiz</category><category>google-wiz</category><category>lacework</category><category>orca-security</category><category>aqua-security</category><category>sysdig</category><category>prisma-cloud</category><category>snyk-cloud</category><category>tenable</category><category>datadog-csm</category><category>defender-for-cloud</category><category>security-command-center</category><category>aws-security-hub</category><category>cnapp</category><category>cwpp</category><category>ciem</category><category>dspm</category><category>cyera</category><category>varonis</category><category>2026</category><category>deep-dive</category><category>english</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/culture/2026-05-16-cspm-cloud-security-posture-management-2026-wiz-google-32b-lacework-orca-aqua-sysdig-prisma-deep-dive.ja</guid>
    <title>CSPM クラウドセキュリティポスチャマネジメント 2026 — Wiz(Google $32B 買収)/ Lacework / Orca / Aqua / Sysdig / Prisma Cloud / DSPM 徹底ガイド</title>
    <link>https://www.youngju.dev/blog/culture/2026-05-16-cspm-cloud-security-posture-management-2026-wiz-google-32b-lacework-orca-aqua-sysdig-prisma-deep-dive.ja</link>
    <description>2026年5月時点のクラウドセキュリティポスチャマネジメント(CSPM)市場を整理します。2025年3月にGoogleが$32Bで買収したWiz、Fortinetに買収されたLacework、Orca Security、Aqua Security、Sysdig、Prisma Cloud、Snyk Cloud、Tenable Cloud Security、Datadog CSM、Microsoft Defender for Cloud、Google Security Command Center、AWS Security Hubまで — そしてCNAPP/CWPP/CIEM/DSPM 4分類フレームとCyera/Varonis/BigID、トス・カカオ KSec・メルカリ・NTTセキュリティの事例を1本にまとめました。</description>
    <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>cspm</category><category>cloud-security</category><category>wiz</category><category>google-wiz</category><category>lacework</category><category>orca-security</category><category>aqua-security</category><category>sysdig</category><category>prisma-cloud</category><category>snyk-cloud</category><category>tenable</category><category>datadog-csm</category><category>defender-for-cloud</category><category>security-command-center</category><category>aws-security-hub</category><category>cnapp</category><category>cwpp</category><category>ciem</category><category>dspm</category><category>cyera</category><category>varonis</category><category>2026</category><category>deep-dive</category><category>日本語</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/culture/2026-05-16-cspm-cloud-security-posture-management-2026-wiz-google-32b-lacework-orca-aqua-sysdig-prisma-deep-dive</guid>
    <title>CSPM 클라우드 보안 자세 관리 2026 — Wiz (Google $32B 인수) / Lacework / Orca / Aqua / Sysdig / Prisma Cloud / DSPM 심층 가이드</title>
    <link>https://www.youngju.dev/blog/culture/2026-05-16-cspm-cloud-security-posture-management-2026-wiz-google-32b-lacework-orca-aqua-sysdig-prisma-deep-dive</link>
    <description>2026년 5월 기준 클라우드 보안 자세 관리(CSPM) 생태계를 정리합니다. 2025년 3월 Google이 $32B에 인수한 Wiz를 비롯해 Lacework(Fortinet 인수), Orca Security, Aqua Security, Sysdig, Prisma Cloud, Snyk Cloud, Tenable Cloud Security, Datadog CSM, Microsoft Defender for Cloud, Google Security Command Center, AWS Security Hub까지 — 그리고 CNAPP·CWPP·CIEM·DSPM 4분류 프레임과 Cyera/Varonis/BigID, 토스·카카오 KSec·메르카리·NTT 보안 사례를 한 글에 담았습니다.</description>
    <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>cspm</category><category>cloud-security</category><category>wiz</category><category>google-wiz</category><category>lacework</category><category>orca-security</category><category>aqua-security</category><category>sysdig</category><category>prisma-cloud</category><category>snyk-cloud</category><category>tenable</category><category>datadog-csm</category><category>defender-for-cloud</category><category>security-command-center</category><category>aws-security-hub</category><category>cnapp</category><category>cwpp</category><category>ciem</category><category>dspm</category><category>cyera</category><category>varonis</category><category>2026</category><category>deep-dive</category>
  </item>

    </channel>
  </rss>
