← Back to catalogue
Certification preparation

CKS: Kubernetes security in production

Prepare for CKS through Kubernetes security, images, auditing, and production-incident decisions.

CNCF / Linux FoundationAvailable
CNCF / Linux FoundationCKS8 lessons
Performance-based command-line exam with 120 minutes and official passing score of67%. Kubernetes1.35 environment according to inspected sources. Candidates must have taken and passed CKA before attempting CKS. Task count and exact curriculum edition date unconfirmed; commercial simulator items were not used as an official count. Domains15/15/10/20/20/20%..

Objectives and progression

Eight lessons, 50 questions, and eight original cases across six CKS domains. The internal assessment contains 32 decisions in 50 minutes. Fictional banking examples connect security configuration to continuity, RUN handover, suppliers, and incident response. The official exam is practical and command-line based; this decision preparation does not execute a cluster or replace authorized practice. Official sources state Kubernetes version 1.35; the exact curriculum edition date was not confirmed.

Audience: Kubernetes administrators, APS/L3 teams, security engineers, and technical platform managers.

Prerequisites: Experience with Linux, Kubernetes, RBAC, and troubleshooting. Taking CKS requires having taken and passed CKA according to the official source; the DR path does not grant eligibility.

274 estimated study minutes

  • Distinguish allowed connectivity, authentication, and encryption.
  • Analyze direct permissions and the effects of creating workloads.
  • Connect syscalls, local profiles, and node preparation.
  • Read admission rejection and correct the complete template.
  • Treat credentials from delivery through retained backups.
  • Bind approval to exact content and matching evidence.
  • Collect what is needed without creating new data exposure.
  • Turn an alert into containment, diagnosis, and verifiable recovery.

Modules

  1. Network boundaries and cluster exposure
  2. API identities and authorization
  3. Linux hardening and kernel controls
  4. Admission and workload protection
  5. Secrets, encryption, and recovery
  6. Artifacts, provenance, and vulnerabilities
  7. Auditing and evidence preservation
  8. Runtime detection and coordinated response

Continue learning

Kubernetes / Cloud Native

References and version

Kubernetes v1.35; current six-domain CKS outline

What you will explore

0 / 8

Learning is also trying.

Original explained questions, flashcards, and scenarios to apply the concepts.

Practice
This module covers foundations. It is not a complete certification course or a full simulation of the official exam.

Exam domains

Cluster Setup15%
Cluster Hardening15%
System Hardening10%
Minimize Microservice Vulnerabilities20%
Supply Chain Security20%
Monitoring, Logging and Runtime Security20%