The syllabus follows the CNAPP and Runtime Security exam domains, with the most time spent on the heaviest-weighted areas and your weakest topics.
Code and software supply-chain security
Admission policy and posture
Kubernetes workload hardening
Evidence, exceptions and governance
Failure, recovery, cost and cleanup
Runtime syscall and eBPF concepts
Falco rules, outputs and tuning
Detection engineering and telemetry health
Containment, forensics and recovery
Privacy, cost and cleanup
Multi-cluster and multi-cloud inventory
Posture and CIS baseline evidence
Effective entitlements and identity
Runtime correlation and incident response
Governance, metrics, cost and privacy
Domain weights come from the published exam outline used in PrepKloud projects. We recheck the latest official Cloud-Native Security objectives with you in the first session.