Session 1: Tetragon Getting Started - How to secure Cloud Native nodes bottom up Your Kubernetes environment may be running smoothly, but what happens when threats emerge at the host level? In this hands-on session, we explore how Tetragon brings security observability and runtime enforcement to VMs or Kubernetes nodes, giving real-time visibility into process and network activity where traditional tools often fall short. Get practical experience detecting suspicious behavior, understanding runtime signals, and following a real-world attack scenario step by step, including how to identify indicators of container escape in a production-like environment. What You’ll Learn What Security Observability is and why it matters How Tetragon uses eBPF to observe runtime activity Monitoring process and network events in real time Turning kernel-level events into actionable security signals Detecting suspicious behavior and container escape indicators Strengthening host and Kubernetes runtime security Join us to master the first step in securing your cloud native environment bottom up: protecting the host layer with deep runtime visibility, actionable detection, and precise enforcement.