Security Foundation: Shield Right
Shield Right = Detect & Contain (Runtime)
- Detect what bypasses build controls
- Zero-days, insider threats, misconfigurations
- Continuous monitoring & response
- Assume breach, limit blast radius
Tools: Behavioral detection (Falco), network policies, observability
Statistics: 200+ days average dwell time without runtime detection
Both Required: Shift Left + Shield Right = Complete coverage