About
This skill provides a comprehensive toolkit for securing Kubernetes environments through defense-in-depth strategies. It enables developers and DevOps engineers to implement granular RBAC hierarchies, enforce Pod Security Standards (PSS), and manage sensitive data via the External Secrets Operator. By providing production-ready patterns for Kyverno, OPA Gatekeeper, and container image signing with Cosign, this skill ensures clusters meet rigorous compliance frameworks like SOC2, PCI-DSS, and HIPAA while simplifying the troubleshooting of complex access control and network policy issues.