Containers are not the best option for security. VMs and/or a MAC are better.
What do you mean by "MAC"?
https://en.wikipedia.org/wiki/Mandatory_access_control
https://wiki.archlinux.org/title/Security#Mandatory_access_c...