Browse and take tests to sharpen your skills
Advanced cluster hardening: RBAC least privilege, NetworkPolicy segmentation, secret lifecycle and rotation, non-root pod security, and admission control concepts for certification-style scenarios.
Advanced IAM: zero-trust access patterns, token binding, privilege boundaries, policy-as-code, and identity threat detection. Mix of single-answer and multiple-answer items.
Intermediate IAM: federation protocols, OAuth/OIDC concepts, groups vs roles, secrets for workloads, and access reviews. Mix of single-answer and multiple-answer items.
Identity and access management foundations: authentication vs authorization, least privilege, MFA, and basic role ideas. Mix of single-answer and multiple-answer items.
Advanced OWASP builder awareness: defense-in-depth, API/auth pitfalls, deserialization and race themes, ASVS-style thinking, and secure operations. Mix of single-answer and multiple-answer items.
Intermediate OWASP awareness: SSRF, XSS types, CSRF, supply chain, insecure design, and practical mitigations for builders. Mix of single-answer and multiple-answer items.
OWASP Top 10 awareness for builders: core risk categories, safe defaults, and defensive habits. Mix of single-answer and multiple-answer items; multi-select questions ask you to select every correct statement.
Advanced hardening of containerized Node.js services: least privilege, secure images, supply-chain controls, runtime isolation, network threats, and vulnerability response.
OWASP-class issues, secure SDLC basics, cloud IAM, and logging. Single- and multiple-choice.
Core security vocabulary: CIA triad, authn vs authz, phishing, patching, and password hygiene. Single- and multiple-choice.
Threat modeling, zero trust concepts, cloud hardening, cryptography usage, and detection. Mixed choice types.
Tell us which topic or difficulty level you need — no account required.