KCSA — Kubernetes Security Associate
KCSA 는 '보안 도구 사용법'이 아니라 '쿠버네티스가 어디서 어떻게 뚫리는가'를 묻는 시험입니다. 이 코스는 4C 계층에서 시작해 apiserver·etcd·kubelet 의 인증 경로를 따라가고, STRIDE 로 위협을 분류한 뒤, PSA 라벨과 RBAC 감사를 직접 클러스터에 걸어 봅니다. 끝나면 처음 보는 매니페스트에서 권한 상승 경로를 짚어내고, 클러스터 하드닝 리포트를 근거와 함께 쓸 수 있습니다.
중급 · 레슨 34 · 실습 10
커리큘럼
Cloud Native Security Overview
Cluster Component Security
The Kubernetes Threat Model
Platform Security
- Why PSP Died and What PSA Does Differently reading
- Secrets — Better to Revoke Quickly Than to Hide Well reading
- Applying Pod Security Admission With Labels lab
- Allowed to Create Pods, but Privileged Pods Must Be Stopped lab
- Is Today's nginx:latest the Same Image as Yesterday's? lab
- Quiz: Platform Security quiz