Harden a Linux Container Runtime Against Privilege Escalation
Overview
What this challenge is about.
Harden EKS worker nodes with AppArmor and Falco, then replay the attack chain to prove it fails. Get a verifiable certificate.
The scenario
The SaaS (regulated under SOC 2 + ISO 27001, EU customers under GDPR) cannot wait for the next vendor-image release — a 90-day fix window is in the contract.
The Brief
What you'll do, and what you'll demonstrate.
Re-baseline and harden a Kubernetes worker-node OS posture, deploy runtime detection, and prove the documented attack chain is now blocked.
Earning criteria — what you'll demonstrate
- Baseline OS posture with kube-bench, Trivy, and OSCAP
- Write workload-class AppArmor profiles that don't break the app
- Deploy runtime detection (Falco) with high-signal rules
- Validate hardening against a known attack chain end-to-end
Program Fit
Where this fits in your program.
Sharpens the same skills your degree expects you to demonstrate.
Aligned coursework coming soon.
Skills
Skills you'll demonstrate.
Each one shows up on your verified credential.
- Os Security
Apply os security to solve real industry problems and demonstrate production-level capability.
- Linux Hardening
Apply linux hardening to solve real industry problems and demonstrate production-level capability.
- Apparmor
Apply apparmor to solve real industry problems and demonstrate production-level capability.
- Falco
Apply falco to solve real industry problems and demonstrate production-level capability.
- Kubernetes
Apply kubernetes to solve real industry problems and demonstrate production-level capability.
- Attack Mitigations
Apply attack mitigations to solve real industry problems and demonstrate production-level capability.
Careers
Career paths this challenge builds toward
Completing this challenge demonstrates skills that transfer directly to these roles: