Your company's development teams wish to incorporate various open-source operating systems into their Docker builds. As images are generated and published in containers within your company's environment, you need to conduct scans for Common Vulnerabilities and Exposures (CVEs) without hindering software development agility. Additionally, you prefer employing managed services whenever possible. What's the best course of action?