
Certified Kubernetes Security Specialist (CKS)
Domain 2Objective 2
Understand Your Supply Chain (e.g. SBOM, CI/CD, Artifact Repositories) CKS Practice Questions (Page 5)
Part of the Minimize Microservice Vulnerabilities domain, which accounts for 20% of the CKS exam. Linux Foundation does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
7concepts
20%of the exam
Questions 21–25
- 21
Why should artifact repositories be scanned for vulnerabilities?
Select an answer first - 22
Your organization builds a container image from a base image that includes a popular open-source library. During a security review, you need to quickly identify all third-party components and their versions in the final image to assess exposure to a newly disclosed vulnerability. Which approach best achieves this?
Select an answer first - 23
You have an SBOM for a container image that is about to be deployed. A new critical vulnerability is disclosed in a library that is listed in the SBOM. What is the most effective use of the SBOM in this situation?
Select an answer first - 24
How does an SBOM help in identifying vulnerabilities in a software product?
Select an answer first - 25
How can an SBOM be used to track vulnerabilities in a deployed application?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “CKS” is a trademark of its owner, used for identification only.