Pearson
Certified Kubernetes Security Specialist (CKS) 专项课程
Pearson

Certified Kubernetes Security Specialist (CKS) 专项课程

Your Ultimate Resource for Acing the CKS Exam. Learn key Kubernetes security for CKS with hands-on demos, real scenarios, and expert insights.

Pearson

位教师:Pearson

包含在 Coursera Plus

深入学习学科知识
中级 等级

推荐体验

4 周 完成
在 5 小时 一周
灵活的计划
自行安排学习进度
深入学习学科知识
中级 等级

推荐体验

4 周 完成
在 5 小时 一周
灵活的计划
自行安排学习进度

您将学到什么

  • Build, secure, and manage Kubernetes clusters using industry best practices, including CIS benchmarking, network security policies, and role-based access control (RBAC).

  • Harden Kubernetes environments by minimizing attack surfaces, implementing pod and kernel security standards, and protecting sensitive data and service accounts.

  • Develop hands-on expertise in securing cloud-native applications, verifying platform binaries, and managing secrets, while preparing effectively for the CKS certification exam.

要了解的详细信息

可分享的证书

添加到您的领英档案

授课语言:英语(English)
最近已更新!

August 2025

了解顶级公司的员工如何掌握热门技能

Petrobras, TATA, Danone, Capgemini, P&G 和 L'Oreal 的徽标

精进特定领域的专业知识

  • 向大学和行业专家学习热门技能
  • 借助实践项目精通一门科目或一个工具
  • 培养对关键概念的深入理解
  • 通过 Pearson 获得职业证书

专业化 - 8门课程系列

您将学到什么

  • Understand CKS certification requirements and create a tailored study strategy for exam success.

  • Build and manage a Kubernetes home lab environment for hands-on, practical learning.

  • Master foundational and advanced Kubernetes security principles, including threat modeling and public key infrastructure.

  • Analyze real-world security incidents and top OWASP risks to identify and mitigate vulnerabilities in Kubernetes environments.

您将获得的技能

类别:Public Key Infrastructure
类别:Kubernetes
类别:Cloud Security
类别:Cloud-Native Computing
类别:Infrastructure Security
类别:Open Web Application Security Project (OWASP)
类别:Threat Modeling
类别:Threat Management
类别:Application Security
类别:Cloud Applications
类别:Vulnerability Assessments
类别:Threat Detection

您将学到什么

  • Configure and secure Kubernetes clusters using industry-standard network policies and CIS benchmarks.

  • Implement secure ingress with TLS and protect node metadata and endpoints from unauthorized access.

  • Verify platform binaries to ensure authenticity and integrity before deployment.

  • Manage Kubernetes Dashboard security with role-based access control for safe cluster administration.

您将获得的技能

类别:Kubernetes
类别:Network Security
类别:Cloud Security
类别:Application Security
类别:Cyber Security Policies
类别:Encryption
类别:Infrastructure Security
类别:Verification And Validation
类别:Role-Based Access Control (RBAC)
类别:Configuration Management

您将学到什么

  • Implement and verify secure access controls for the Kubernetes API server.

  • Configure and manage role-based access control (RBAC) for efficient and secure cluster administration.

  • Protect and audit service accounts to minimize security risks within your Kubernetes environment.

  • Plan and execute Kubernetes upgrades to maintain security and operational efficiency.

您将获得的技能

类别:Role-Based Access Control (RBAC)
类别:Kubernetes
类别:User Accounts
类别:Security Controls
类别:Authorization (Computing)
类别:Patch Management
类别:Hardening
类别:Authentications
类别:Identity and Access Management

您将学到什么

  • Minimize host operating system and network exposure to reduce Kubernetes attack surfaces.

  • Harden the kernel using SecComp, AppArmor, and rigorous security testing.

  • Implement least privilege identity and access management for both host and cloud environments.

  • Configure and validate host firewalls to secure node network access.

您将获得的技能

类别:Hardening
类别:Identity and Access Management
类别:Kubernetes
类别:Infrastructure Security
类别:Network Security
类别:Role-Based Access Control (RBAC)
类别:Security Controls
类别:System Configuration
类别:Firewall
类别:Authorization (Computing)
类别:Linux Administration

您将学到什么

  • Enforce pod security standards and prevent privilege escalation using security contexts and policy tools.

  • Securely manage Kubernetes secrets, including encryption at rest and best practices for sensitive data.

  • Implement advanced container isolation with sandbox pods, GVisor, and Kata Containers.

  • Enable pod-to-pod encryption with Celium to protect inter-service communications.

您将获得的技能

类别:Kubernetes
类别:Encryption
类别:Containerization
类别:Cloud Security
类别:Infrastructure Security
类别:Microservices
类别:Security Controls
类别:Network Security

您将学到什么

  • Secure image registries and enforce image signing to prevent unauthorized access and tampering.

  • Perform static analysis of workloads and containers to identify and remediate security vulnerabilities.

  • Minimize base image footprints to reduce attack surfaces in containerized environments.

  • Scan container images for known vulnerabilities and automate security policy enforcement.

您将获得的技能

类别:Vulnerability Scanning
类别:Image Analysis
类别:Security Controls
类别:Docker (Software)
类别:Vulnerability Management
类别:Containerization
类别:CI/CD
类别:DevSecOps
类别:Kubernetes
类别:Infrastructure Security
类别:Hardening

您将学到什么

  • Enforce container immutability and implement runtime security policies to maintain application integrity.

  • Configure and manage Kubernetes audit logs for comprehensive security oversight and efficient log management.

  • Detect and respond to malicious activity using behavioral analysis and real-time monitoring tools like Falco.

  • Investigate signs of compromise and apply the MITRE ATT&CK framework for effective incident response.

您将获得的技能

类别:Incident Response
类别:Continuous Monitoring
类别:Threat Detection
类别:Containerization
类别:Anomaly Detection
类别:Intrusion Detection and Prevention
类别:Kubernetes
类别:System Monitoring
类别:Event Monitoring
类别:MITRE ATT&CK Framework
类别:Infrastructure Security
类别:DevSecOps
类别:Docker (Software)
类别:Security Controls
类别:Security Engineering

您将学到什么

  • Apply Kubernetes security best practices in realistic, exam-like scenarios.

  • Secure API access, enforce pod security standards, and implement robust network policies.

  • Detect and mitigate vulnerabilities using runtime security tools and advanced monitoring.

  • Configure secret encryption, secure ingress, and enforce network encryption for comprehensive protection.

您将获得的技能

类别:Hardening
类别:Infrastructure Security
类别:Continuous Monitoring
类别:Authorization (Computing)
类别:Authentications
类别:Security Engineering
类别:Scenario Testing
类别:Network Security
类别:API Gateway
类别:Threat Detection
类别:Containerization
类别:Kubernetes
类别:Encryption
类别:Application Security

获得职业证书

将此证书添加到您的 LinkedIn 个人资料、简历或履历中。在社交媒体和绩效考核中分享。

位教师

Pearson
Pearson
268 门课程9,891 名学生

提供方

Pearson

人们为什么选择 Coursera 来帮助自己实现职业发展

Felipe M.
自 2018开始学习的学生
''能够按照自己的速度和节奏学习课程是一次很棒的经历。只要符合自己的时间表和心情,我就可以学习。'
Jennifer J.
自 2020开始学习的学生
''我直接将从课程中学到的概念和技能应用到一个令人兴奋的新工作项目中。'
Larry W.
自 2021开始学习的学生
''如果我的大学不提供我需要的主题课程,Coursera 便是最好的去处之一。'
Chaitanya A.
''学习不仅仅是在工作中做的更好:它远不止于此。Coursera 让我无限制地学习。'
Coursera Plus

通过 Coursera Plus 开启新生涯

无限制访问 10,000+ 世界一流的课程、实践项目和就业就绪证书课程 - 所有这些都包含在您的订阅中

通过在线学位推动您的职业生涯

获取世界一流大学的学位 - 100% 在线

加入超过 3400 家选择 Coursera for Business 的全球公司

提升员工的技能,使其在数字经济中脱颖而出

常见问题