CKS: Certified Kubernetes Security Specialist
Browse certifications
Exam Resources
Official learning paths, exam details, skills measured, and community resources to supplement your study.
About the CKS Exam
Kubernetes security — hardening, supply chain, runtime defence
200 original practice questions for the CNCF Certified Kubernetes Security Specialist (CKS) exam. Covers cluster hardening, system security, microservice vulnerabilities, supply chain security, and runtime threat detection with Falco, Trivy, and OPA/Gatekeeper.
Who Should Take This Exam?
The CKS is designed for experienced professionals seeking advanced validation. 2+ years of hands-on experience recommended.
Typical study time: 8-12 weeks of intensive study
Exam Quick Facts
| Detail | Value |
|---|---|
| Exam Code | CKS |
| Title | Certified Kubernetes Security Specialist |
| Duration | 120 minutes |
| Questions | 15–20 (hands-on) |
| Pass Score | 67% |
| Cost | $395 USD |
| Provider | Linux Foundation / PSI |
| Validity | 2 years |
| Question Types | Performance-based (CLI tasks) |
| Official Page | View on CNCF → |
Exam Domains & Weights
The CKS exam covers 6 domains. Focus your study time based on the weights below — higher-weighted domains have more exam questions.
| Domain | Weight | Practice Qs |
|---|---|---|
| Cluster Setup | 15% | 30 |
| Cluster Hardening | 15% | 30 |
| System Hardening | 10% | 20 |
| Minimize Microservice Vulnerabilities | 20% | 40 |
| Supply Chain Security | 20% | 40 |
| Monitoring, Logging, and Runtime Security | 20% | 40 |
| Total | 100% | 200 |
💡 Study tip: Minimize Microservice Vulnerabilities carries the most weight (20%) — start there. System Hardening has the least (10%), but don’t skip it — exam questions can come from any domain.
Practice Exam — 200 Questions
Prepare for the CKS with our 200-question practice exam covering all 6 exam domains. Every question includes detailed explanations and maps to official exam objectives.
What you get:
- ✅ Exam simulation mode with timer
- ✅ Spaced repetition for weak areas
- ✅ Detailed explanations for every question
- ✅ Progress tracking across domains
- ✅ 20 free questions — no account needed
CNCF Certification Path
Start with KCNA (Kubernetes & Cloud Native Associate) for fundamentals, then CKA (admin) or CKAD (developer), then CKS (security) or KCSA (security associate).
Related CNCF Certifications
If you’re studying for the CKS, you might also be interested in these CNCF certifications:
- CKA: CNCF CKA (Certified Kubernetes Administrator) — 200 practice questions
- KCSA: CNCF KCSA (Kubernetes and Cloud Native Security Associate) — 200 practice questions
- CKAD: CNCF CKAD (Certified Kubernetes Application Developer) — 200 practice questions
- KCNA: CNCF Kubernetes and Cloud Native Associate — 200 practice questions
Study Tips
- Start with the heaviest domain — focus your time where the exam focuses its questions
- Use our practice exam — try the 20 free questions first to gauge your readiness
- Review explanations — don’t just check if you got it right; read why each answer is correct
- Simulate exam conditions — use the timed exam mode to practice under pressure
- Check the official page — official exam details always have the latest objectives