This course covers how to maintain and improve Kubernetes security with continuous monitoring, logging, and runtime protection. You’ll enforce container immutability, manage audit logging, and use open-source tools for log storage. You'll detect threats in real time with Falco, using behavioral analysis and custom rules. The course also covers investigating and responding to security incidents using the MITRE ATT&CK framework. Each lesson gives you practical tools to secure your clusters and succeed in the CKS exam.
What you'll learn
maintaining Kubernetes security
enforcing container immutability
managing audit logging
using open-source tools for log storage
detecting threats with Falco
investigating security incidents using MITRE ATT&CK