
Certified Kubernetes Security Specialist (CKS)
Domain 2Objective 2
Understand Your Supply Chain (e.g. SBOM, CI/CD, Artifact Repositories) CKS Practice Questions (Page 4)
Part of the Minimize Microservice Vulnerabilities domain, which accounts for 20% of the CKS exam. Linux Foundation does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
7concepts
20%of the exam
Questions 16–20
- 16
Which of the following are standard formats for representing an SBOM?
Select an answer first - 17
Which of the following is a common supply chain attack vector?
Select an answer first - 18
What is a key security control for artifact repositories?
Select an answer first - 19
A developer reports that a container image pulled from your internal registry behaves unexpectedly, and you suspect it may have been tampered with. Which step should you take first to investigate?
Select an answer first - 20
What is the primary purpose of a Software Bill of Materials (SBOM)?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “CKS” is a trademark of its owner, used for identification only.