gke-expert

17
AdminTurnedDevOpsAdminTurnedDevOps

Expert guidance for Google Kubernetes Engine (GKE) operations including cluster management, workload deployment, scaling, monitoring, troubleshooting, and optimization. Use when working with GKE clusters, Kubernetes deployments on GCP, container orchestration, or when users need help with kubectl commands, GKE networking, autoscaling, workload identity, or GKE-specific features like Autopilot, Binary Authorization, or Config Sync.

195 days ago

implementing-gcp-binary-authorization

2
mukul975mukul975

Implement GCP Binary Authorization to enforce deploy-time security controls that ensure only trusted, attested container images are deployed to Google Kubernetes Engine and Cloud Run.

gcpbinary-authorizationcontainer-security+5
195 days ago

gcp-vulnerable-components

hminooeihminooei

Use this skill when users need to audit, detect, or remediate Vulnerable and Outdated Components (OWASP A06:2021) on Google Cloud Platform. This includes auditing Binary Authorization enforcement on GKE clusters, scanning container images in Artifact Registry for known CVEs, reviewing Security Command Center findings for container threats (malicious scripts, reverse shells, cryptomining, malware) and vulnerability detections (outdated libraries), configuring Cloud Armor WAF rules to block exploitation of vulnerable endpoints (RCE, file inclusion), and monitoring GCP security bulletins. Activate for container scanning, Binary Authorization policy checks, CVE remediation, or OWASP A06 compliance.

194 days ago

gcp-integrity-failures

hminooeihminooei

Use this skill when users need to audit, detect, or remediate Software and Data Integrity Failures (OWASP A08:2021) on Google Cloud Platform. This includes auditing Artifact Registry for vulnerability scanning, verifying Binary Authorization policies on GKE clusters, reviewing Cloud Build CI/CD pipeline security, checking build provenance and attestation, and monitoring Security Command Center for integrity-related threats. Activate for CI/CD pipeline security, supply chain hardening, container signing, artifact integrity, or OWASP A08 compliance.

194 days ago