
Kubernetes and Cloud Native Associate (KCNA)
Domain 1Objective 4
Security KCNA Practice Questions (Page 2)
Part of the Kubernetes Fundamentals domain, which accounts for 44% of the KCNA exam. Linux Foundation does not publish an official question count, but from its 90-minute exam (~35–60 total, ~15–26 in this domain), expect 3–4 from this objective — we provide 23 practice questions to prepare you well beyond it. (estimate)
23questions here
5free pages
8concepts
44%of the exam
Questions 6–10
- 6
A security team wants to mitigate supply chain risks by ensuring that images are built from trusted base images and have not been tampered with. What should they implement?
Select an answer first - 7
Which Pod Security Standard is the most restrictive and is recommended for the highest security?
Select an answer first - 8
A pod runs a container that needs to write to a host directory. The container should run as a non-root user and have read-only root filesystem. What should be configured in the pod's security context?
Select an answer first - 9
How does a pod use a custom service account to authenticate with the Kubernetes API?
Select an answer first - 10
A team wants to ensure that all container images used in the cluster come from an approved private registry. What should they configure?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “KCNA” is a trademark of its owner, used for identification only.