Certified Kubernetes Security Specialist (CKS) with Practice Exam
Harden what you already know how to build.
01
Skill level
All levels
02
Sections
9
03
Lectures
45
04
Instructor
Team Mammoth
What's inside
This course includes.
✓
9
Sections
✓
45
Lectures
✓
27
Resources
✓
Certificate of completion
Included
✓
Mobile and desktop access
Included
✓
AI learning assistance
Included
Unlock all courses with our Subscription Bundle! Get unlimited access to entire course library, books and assets. Learn more and subscribe today!
Course content
Curriculum & lectures.
+ 00 Welcome 1 lecture
00 What is a Certified Kubernetes Security Specialist (CKS) and Prerequisites
Locked
+ 01 Cluster Setup (15%) 5 lectures
01 Use Network security policies to restrict cluster level access
Locked
02 Use CIS benchmark to review the security configuration of Kubernetes components
Locked
03 Properly set up Ingress with TLS
Locked
04 Protect node metadata and endpoints
Locked
05 Verify platform binaries before deploying
Locked
+ 02 Cluster Hardening (15%) 4 lectures
06 Use Role Based Access Controls to minimize exposure
Locked
07 Exercise caution in using service accounts
Locked
08 Restrict access to Kubernetes API
Locked
09 Upgrade Kubernetes to avoid vulnerabilities
Locked
+ 03 System Hardening (10%) 4 lectures
10 Minimize host OS footprint to reduce attack surface
Locked
11 Using leastprivilege identity and access management
Locked
12 Minimize external access to the network
Locked
13 Use kernel hardening tools such as AppArmor and seccomp
Locked
+ 04 Minimize Microservice Vulnerabilities (20%) 4 lectures
14 Use appropriate pod security standards
Locked
15 Manage Kubernetes secrets
Locked
16 Implement isolation techniques like multitenancy and sandboxed containers
Locked
17 Implement PodtoPod encryption like Cilium and Istio
Locked
+ 05 Supply Chain Security (20%) 4 lectures
18 Minimize base image footprint
Locked
19 Understand supply chain with SBOM CICD and artifact repositories
Locked
20 Secure supply chain with permitted registries and artifacts
Locked
21 Perform static analysis of user workloads and container images with Kubesec and KubeLinter
Locked
+ 06 Monitoring, Logging and Runtime Security (20%) 5 lectures
22 Perform behavioral analytics to detect malicious activities
Locked
23 Detect threats within physical infrastructure apps networks data users and workloads
Locked
24 Investigate phases of attack and bad actors in the environment
Locked
25 Ensure immutability of containers at runtime
Locked
26 Use Kubernetes audit logs to monitor access
Locked
+ Challenge Your FREE Practice Exam 1 lecture
Where To Find Your Exam
Locked
Description
About this course.
CKS assumes you already hold a current CKA, so it starts where cluster administration leaves off.
Like the other Kubernetes exams, it is performance based, and the material stays on the tasks rather than the theory.
► Cluster setup, hardening, and network policies.
► Supply chain security for images and manifests.
► Minimizing microservice vulnerabilities and RBAC scope.
► Runtime security, monitoring, and audit logging.
Security work on a cluster tends to land on whoever already knows how the cluster runs, and this is the layer that follows.
✅ Lifetime access to all modules and source files.
✅ Graded practice exam with unlimited attempts.
Ready to start building?
Harden what you already know how to build.