Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Linux Foundation logo

Certified Kubernetes Security Specialist (CKS)

Domain 2Objective 3

Secure Your Supply Chain (permitted Registries, Sign and Validate Artifacts, Etc.) CKS Practice Questions (Page 1)

Part of the Minimize Microservice Vulnerabilities domain, which accounts for 20% of the CKS exam. Linux Foundation does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 18 practice questions to prepare you well beyond it. (estimate)

18questions here
4free pages
4concepts
20%of the exam

Questions 1–5

  1. 1application · medium

    Your security team uses Trivy to scan images in CI. They want to block deployments of images with critical vulnerabilities in the production cluster, but allow them in development. Which approach should you take?

    Select an answer first
  2. 2application · medium

    Your team uses cosign to sign images in CI. You want to ensure that the public key used for verification is rotated regularly without downtime. Which approach should you use?

    Select an answer first
  3. 3foundation · easy

    Which tool is specifically designed to scan container images for known vulnerabilities?

    Select an answer first
  4. 4foundation · easy

    What is the purpose of enforcing a policy that blocks the deployment of images with known critical vulnerabilities?

    Select an answer first
  5. 5application · medium

    Your organization requires that all images come from registry.corp.example.com and are signed with cosign. You need to enforce both requirements. Which admission controller configuration should you use?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “CKS” is a trademark of its owner, used for identification only.