Kubernetes and Cloud Native Security Associate
Practice questions and flashcards for the CNCF Kubernetes and Cloud Native Security Associate (KCSA) certification. Covers cluster setup and hardening (CIS benchmarks, etcd encryption, audit logging), system hardening (seccomp, AppArmor), workload security (pod security standards, Falco, Trivy, supply chain), threat detection, and compliance governance (OPA, Kyverno, policy as code).
A developer wants to restrict system calls available to a container using the default security profile provided by the container runtime on Amazon EKS. Which securityContext field should they use?
| Domain | Weight | Items | Coverage |
|---|---|---|---|
Cluster Setup and Hardening | 25% | 75 items | |
System and Workload Security | 30% | 95 items | |
Threat Detection and Response | 20% | 56 items | |
Platform Security and Compliance | 25% | 75 items |
Invest in your career with this comprehensive study pack