Overview

About KCSA

The Kubernetes and Cloud Native Security Associate (KCSA) is a pre-professional certification designed for candidates interested in advancing to the professional level through a demonstrated understanding of foundational knowledge and skills of security technologies in the cloud native ecosystem. Reference: CNCF-KCSAarrow-up-right

Domains & Competencies

chevron-rightOverview of Cloud Native Security 14%hashtag
  • The 4Cs of Cloud Native Security

  • Cloud Provider and Infrastructure Security

  • Controls and Frameworks

  • Isolation Techniques

  • Artifact Repository and Image Security

  • Workload and Application Code Security

chevron-rightKubernetes Cluster Component Security 22%hashtag
  • API Server

  • Controller Manager

  • Scheduler

  • Kubelet

  • Container Runtime

  • KubeProxy

  • Pod

  • Etcd

  • Container Networking

  • Client Security

  • Storage

chevron-rightKubernetes Security Fundamentals 22%hashtag
  • Pod Security Standards

  • Pod Security Admissions

  • Authentication

  • Authorization

  • Secrets

  • Isolation and Segmentation

  • Audit Logging

  • Network Policy

chevron-rightKubernetes Threat Model 16%hashtag
  • Kubernetes Trust Boundaries and Data Flow

  • Persistence

  • Denial of Service

  • Malicious Code Execution and Compromised Applications in Containers

  • Attacker on the Network

  • Access to Sensitive Data

  • Privilege Escalation

chevron-rightPlatform Security 16%hashtag
  • Supply Chain Security

  • Image Repository

  • Observability

  • Service Mesh

  • PKI

  • Connectivity

  • Admission Control

chevron-rightCompliance and Security Frameworks 10%hashtag
  • Compliance Frameworks

  • Threat Modelling Frameworks

  • Supply Chain Compliance

  • Automation and Tooling

Last updated