I will conduct a kubernetes and container security audit
Cloud Security Architect for Hybrid Cloud, IAM and Zero Trust
Vetted by Fiverr Pro
Marlon Costa was selected by the Fiverr Pro team for their expertise.
Vetted for
Cybersecurity
About this Gig
Vetted Pro
Is your cloud-native environment exposing your business to container-level attacks?
You will receive a professional Kubernetes and Container Security Audit focused on identifying critical control weaknesses across your clusters.
Kubernetes is complex, and default configurations are rarely secure. I deliver a risk-based review covering the areas that matter most in live K8s and Docker environments.
What this audit evaluates:
- Cluster Configuration & Hardening (CIS Benchmarks)
- RBAC & Service Account permissions
- Container runtime and workload hardening
- Network Policies and pod isolation
- Secrets management handling
What you will receive:
- Clear Findings Report
- Prioritized Remediation Roadmap
- Architecture and Policy recommendations
I approach Kubernetes security as both a technical and business risk, translating deep technical flaws into actionable priorities for your DevOps and Platform teams.
Please send me a message or book a Consultation Call through my profile before ordering to align on your cluster footprint.
Expertise:
Audit
•
Configuration management
•
Risk assessment
Technology:
Cloud - IaaS
•
Networking
•
OS
•
Saas
•
Web application
Regulation:
ISO
My Portfolio
Other Cybersecurity Services I Offer
FAQ
Do you need direct access to my Kubernetes environment?
No. In many cases, I can work from documentation, exported evidence, screenshots, configuration samples, architecture diagrams, and live walkthroughs. If direct access is available, we can define a limited and appropriate review model.
What kinds of issues can this review identify?
This review can highlight risks related to cluster configuration, RBAC, service accounts, secrets handling, workload hardening, network policies, policy enforcement, logging, monitoring, and runtime visibility.
Is this a penetration test or a formal compliance audit?
No. This project is a security review and advisory assessment. It is designed to identify control gaps, security weaknesses, and practical hardening priorities, but it is not a penetration test or an official audit unless separately defined.
What will I receive at the end of the project?
Depending on the selected tier, you will receive a structured review with findings, risk observations, practical recommendations, and, in higher tiers, a more detailed roadmap and executive-ready summary.
Can you review managed Kubernetes platforms like EKS, AKS, or GKE?
Yes. This project can be applied to managed Kubernetes services as well as self-managed environments, as long as the scope and available evidence are clearly defined.

