Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
LINUX FOUNDATION

Certified Kubernetes Security Specialist (CKS)

Certified Kubernetes Security Specialist

The Certified Kubernetes Security Specialist (CKS) certification validates advanced, hands-on skills in securing Kubernetes clusters and cloud-native workloads. Designed for experienced Kubernetes practitioners, it covers cluster hardening, supply chain security, and runtime threat detection. Earning CKS proves you can implement and maintain robust security controls in production environments, making you a valuable asset for security-focused DevOps and SRE roles.

Exam formatPerformance-based (hands-on tasks from the command line)
Duration120 minutes
DeliveryLinux Foundation
Free questions566

Content last reviewed 30 July 2026 · Up to date

The certification

What Certified Kubernetes Security Specialist (CKS) proves, and what it asks of you

What this certification covers, who it is written for, and what the exam itself looks like on the day.

6domains
26objectives
179concepts
$445exam fee
What it is

What this certification is

What it validates, who it is written for, and the experience it assumes.

Hands-on practical exam — no multiple-choice questions

Certified Kubernetes Security Specialist (CKS) is graded entirely on tasks you perform in a live environment, so there is no multiple-choice practice bank. To prepare: practice each objective hands-on in a real sandbox or lab; drill the key commands and workflows until they are second nature; work through timed task scenarios and verify your end state; and review the official documentation for every objective. The full objective breakdown is in the Curriculum tab.

About this certification

The Certified Kubernetes Security Specialist (CKS) certification is a performance-based credential that validates your ability to secure Kubernetes clusters and containerized applications. Created by the Linux Foundation and the Cloud Native Computing Foundation (CNCF), this exam goes beyond theoretical knowledge, requiring you to solve real-world security challenges directly from the command line. It is designed for experienced Kubernetes administrators who want to demonstrate their expertise in cluster hardening, supply chain security, and runtime threat detection.

Earning the CKS certification proves you have the practical skills to implement robust security controls across the entire Kubernetes lifecycle. From configuring network policies and RBAC to securing the software supply chain and monitoring for malicious activity, you will be equipped to protect production environments against evolving threats. This globally recognized, vendor-neutral credential is a powerful differentiator for DevOps engineers, SREs, and cloud professionals seeking to advance their careers in cloud-native security.

Who it’s for

The CKS certification is intended for experienced Kubernetes practitioners who are responsible for securing Kubernetes clusters and cloud-native applications. This includes DevOps engineers, site reliability engineers (SREs), system administrators, and cloud professionals who want to validate their advanced security skills. Candidates should already have a strong foundation in Kubernetes administration and be comfortable working from the command line. This certification is ideal for those who want to demonstrate their ability to implement and maintain security best practices in production environments. It is also valuable for professionals looking to specialize in cloud-native security, as it covers a broad range of topics from cluster hardening to runtime threat detection.

Recommended experience

While not mandatory, the Linux Foundation recommends that candidates have a solid understanding of Kubernetes administration and security concepts. The exam is designed for intermediate-level professionals. Hands-on experience with Kubernetes cluster administration; Familiarity with Linux command-line tools and shell scripting; Understanding of Kubernetes security concepts such as RBAC, network policies, and pod security standards; Knowledge of container security best practices and supply chain security

The syllabus

What you’ll learn

Every domain and objective Linux Foundation measures, with the weight they carry on the exam.

The official Linux Foundation exam outline · checked 30 July 2026 · See the source

Cluster Setup
  • Secure Cluster Components
  • Network Security
  • Access Control
  • Workload and Data Security
4 objectives · 94 free questions · 20 pages
Minimize Microservice Vulnerabilities
  • Minimize base image footprint
  • Understand your supply chain (e.g. SBOM, CI/CD, artifact repositories)
  • Secure your supply chain (permitted registries, sign and validate artifacts, etc.)
  • Perform static analysis of user workloads and container images (e.g. Kubesec, KubeLinter)
4 objectives · 95 free questions · 21 pages
Cluster Hardening
  • Minimize host OS footprint (reduce attack surface)
  • Using least-privilege identity and access management
  • Minimize external access to the network
  • Appropriately use kernel hardening tools such as AppArmor, seccomp
4 objectives · 72 free questions · 16 pages
Supply Chain Security
  • Perform behavioral analytics to detect malicious activities
  • Detect threats within physical infrastructure, apps, networks, data, users and workloads
  • Investigate and identify phases of attack and bad actors within the environment
  • Ensure immutability of containers at runtime
  • Use Kubernetes audit logs to monitor access
5 objectives · 115 free questions · 25 pages
System Hardening
  • Minimize host OS footprint (reduce attack surface)
  • Using least-privilege identity and access management
  • Minimize external access to the network
  • Appropriately use kernel hardening tools such as AppArmor, seccomp
4 objectives · 79 free questions · 17 pages
Monitoring, Logging and Runtime Security
  • Perform behavioral analytics to detect malicious activities
  • Detect threats within physical infrastructure, apps, networks, data, users and workloads
  • Investigate and identify phases of attack and bad actors within the environment
  • Ensure immutability of containers at runtime
  • Use Kubernetes audit logs to monitor access
5 objectives · 111 free questions · 24 pages
On the day

The exam itself

Everything Linux Foundation publishes about sitting it, and nothing we inferred.

Prerequisites

Must have passed the Certified Kubernetes Administrator (CKA) exam

CertificationCertified Kubernetes Security Specialist (CKS)
Exam formatPerformance-based (hands-on tasks from the command line)
Duration120 minutes
DeliveryLinux Foundation
LanguagesEnglish, Japanese
Pricing$445
After you pass

Where this credential goes next

The path Linux Foundation lays out, how the credential is kept, and where to book.

Step-by-step path to Certified Kubernetes Security Specialist (CKS)

PrerequisiteMust have passed the Certified Kubernetes Administrator (CKA) exam
Certified Kubernetes Security Specialist (CKS) badgeCredential earnedCertified Kubernetes Security Specialist (CKS) Certification
Renewal and maintenance

The CKS certification is valid for two years. To renew, you must pass the current CKS exam again before the expiration date. Stay current with the latest technologies and maintain your certification.

Learn more about renewal requirements
Lifecycle status

This certification is currently active and available. Linux Foundation maintains this certification to validate current skills and industry relevance.

Exam status: ActiveMaintained by Linux Foundation

Exam registration

Register for the exam through Linux Foundation, Linux Foundation’s authorized testing partner.

Schedule your exam

Visit the official Linux Foundation certification page for exam policies and requirements.

View the official page
Your coach

And when you are serious, your coach Pip takes over

Your coach in the app reads what you have answered with the book closed and tells you one thing to do tonight. It will not count an answer you gave with the page open, and it will tell you when you are not ready.

See how the coach works
Before you book

Questions people ask

How does the CKS exam relate to the CKA exam?

The CKS exam is a higher-level security certification that requires you to have already passed the CKA exam. It builds on the CKA's Kubernetes administration skills and focuses specifically on security.

Is the CKS exam hands-on?

Yes, the CKS exam is a performance-based test that requires you to solve multiple tasks from a command line running Kubernetes. It is not a multiple-choice exam.

What is the retake policy for the CKS exam?

The CKS exam includes two exam attempts. If you fail the first attempt, you can retake it. The specific waiting period between attempts is not published on the official page.

Are there any exam simulators available for CKS?

Yes, once enrolled, you receive access to an exam simulator provided by Killer.sh. You get two simulation attempts, each with 36 hours of access, and each session includes 17 questions with graded results.

What job roles does the CKS certification map to?

The CKS certification is best suited for advanced professionals working as DevOps, SRE, SysAdmin, and Cloud Professionals who want to demonstrate their Kubernetes security skills.

Can I recertify by passing a different exam?

No, the CKS certification must be renewed by passing the current CKS exam again. There is no alternative exam for renewal.

Is the CKS exam available in multiple languages?

The exam interface is available in English and Japanese, as indicated on the official Japanese page.

Information freshness · Content last reviewed on 2026-07-30 Up to date
Practice free questions 566 questions, free, no account needed.