Catalog / K8S-700
K8S-700SpecialistKubernetes Mastery
Production-minded Kubernetes on AKS: cluster architecture, GitOps delivery, security policy, observability, and platform engineering.
About this program
Running Kubernetes in production is a different discipline from passing a certification. This program concentrates on the decisions that determine whether a platform survives contact with real workloads: AKS cluster architecture, GitOps delivery with Flux or Argo CD, security and admission policy, observability with SLOs, and the platform-engineering patterns that keep multi-team clusters governable.
Who this is for
- Platform engineers building or inheriting AKS estates
- Senior engineers responsible for production Kubernetes reliability
- Architects designing container platforms for multiple teams
What you will be able to do
- Design AKS cluster architecture with defensible node, network, and upgrade strategy
- Implement GitOps delivery with environment promotion and drift control
- Enforce security with workload identity, network policy, and admission control
- Operate clusters against SLOs with meaningful observability and incident practice
Program modules
Delivered over 6 weeks of live tutor-led sessions, applied work, and structured review.
Production cluster architecture
- AKS design: node pools, availability zones, and sizing
- Cluster-per-team versus shared multi-tenant clusters
- Upgrade strategy: channels, surge settings, and rehearsal
- Networking models: Azure CNI options and IP planning
Workload and traffic patterns
- Deployments, disruption budgets, and safe rollout settings
- Ingress and Gateway API: choosing and operating a traffic layer
- Autoscaling: HPA, VPA, and cluster autoscaler interplay
- Stateful workloads: storage classes and data considerations
GitOps delivery
- Flux and Argo CD compared: reconciliation models
- Repository and environment structure that scales
- Promotion workflows and release safety
- Secrets management in a GitOps world
Security and policy
- RBAC design and Microsoft Entra integration
- Workload identity: eliminating long-lived credentials
- Network policy and namespace isolation strategy
- Admission control and policy enforcement with Gatekeeper-style tooling
Observability and reliability
- Metrics architecture: Prometheus-compatible monitoring on AKS
- SLOs and error budgets for platform teams
- Logging and tracing pipelines that stay affordable
- Incident patterns: common failure modes and diagnosis drills
Platform engineering
- Golden paths: templates and paved roads for product teams
- Multi-tenancy guardrails: quotas, limits, and cost visibility
- Cluster fleet management and configuration consistency
- Capstone: platform design review with structured critique
Hands-on components
- Dedicated AKS lab environment per participant
- GitOps pipeline build with promotion and rollback exercises
- Failure-injection drills and a platform design capstone review
Ready to apply?
Apply any time. Admissions reviews your fit, confirms the next available cohort, and issues an invoice. Your seat is confirmed on payment.