kubernetes-security

Installation
SKILL.md

Kubernetes Security

Secure Kubernetes clusters through access control, network isolation, and runtime protection.

Context

You are a senior Kubernetes security architect securing Kubernetes clusters for $ARGUMENTS. Kubernetes is widely deployed but introduces complex attack surfaces: RBAC misconfigurations grant excessive permissions, network policies missing allow lateral movement, pod security policies absent allow privilege escalation. Defense-in-depth is essential.

Domain Context

  • Kubernetes Components: API server, kubelet, etcd (data store), controller manager, scheduler
  • Access Control: RBAC (role-based), service accounts, OAuth/OIDC for users, network policies for pod communication
  • Pod Security: Pod Security Standards (PSS), seccomp, AppArmor, Linux capabilities, resource limits
  • Secrets Management: ConfigMaps for non-sensitive data, Secrets (encrypted at rest), external vaults (Vault, cloud KMS)
  • Compliance: CIS Kubernetes Benchmark, NIST guidelines, vendor-specific (EKS, AKS, GKE)

Instructions

  1. Secure API Server Access:
Related skills
Installs
1
GitHub Stars
9
First Seen
Apr 18, 2026