Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Linux Foundation logo

Kubernetes and Cloud Native Security Associate (KCSA)

Domain 3Objective 6

Auditing and Monitoring KCSA Practice Questions (Page 4)

Part of the Kubernetes Security Fundamentals domain, which accounts for 22% of the KCSA exam. Linux Foundation does not publish an official question count, but from its 90-minute exam (~35–60 total, ~8–13 in this domain), expect 1–2 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)

26questions here
6free pages
7concepts
22%of the exam

Questions 16–20

  1. 16foundation · easy

    What is the purpose of enabling TLS for communication between Kubernetes components?

    Select an answer first
  2. 17foundation · easy

    Which of the following is a valid audit log backend in Kubernetes?

    Select an answer first
  3. 18application · medium

    A security analyst is investigating a potential data breach and needs to determine if any user accessed a specific ConfigMap that contains database credentials. Which audit log field should they search on?

    Select an answer first
  4. 19expert · hard

    A security auditor is reviewing the data flow in a cluster and wants to ensure that sensitive data stored in etcd is protected at rest. They have already enabled encryption at rest for etcd. What additional measure should they take to protect the encryption keys?

    Select an answer first
  5. 20foundation · easy

    Which API server flag is used to enable the log file audit backend?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “KCSA” is a trademark of its owner, used for identification only.