About
This skill provides a comprehensive framework for securing Kubernetes clusters using defense-in-depth strategies. It enables developers and DevOps engineers to implement network segmentation through NetworkPolicies, enforce Pod Security Standards (Privileged, Baseline, Restricted), and configure least-privilege RBAC. By leveraging industry best practices and compliance frameworks like CIS Benchmarks, it helps prevent unauthorized access and ensures secure multi-tenant environments through automated policy enforcement with OPA Gatekeeper and Istio service mesh security templates.