The Eastasouth Journal of Information System and Computer Science
Vol. 1 No. 01 (2023): The Eastasouth Journal of Information System and Computer Science (ESISCS)

Systematic Enforcement of CIS-Aligned Security Controls for Kubernetes Worker Nodes

Alti, Balaramakrishna (Unknown)



Article Info

Publish Date
31 Aug 2023

Abstract

Securing Kubernetes worker nodes remains a persistent challenge in enterprise environments due to configuration drift, inconsistent operating system hardening, and limited visibility into runtime security posture. While the Center for Internet Security (CIS) provides benchmark recommendations for Kubernetes and Linux systems, manual enforcement of these controls is error-prone and difficult to sustain at scale. This paper presents an automated approach for hardening Kubernetes worker nodes by integrating CIS benchmark compliance with Linux security controls using configuration management automation. The proposed framework focuses on repeatable enforcement, continuous compliance validation, and operational stability. We describe the system architecture, control mapping strategy, and automation workflow, and evaluate its impact on configuration compliance and operational availability in a controlled Kubernetes environment. Results demonstrate measurable improvements in benchmark compliance while maintaining cluster stability, highlighting the feasibility of automation-driven security hardening for Kubernetes worker nodes.

Copyrights © 2023






Journal Info

Abbrev

esiscs

Publisher

Subject

Computer Science & IT

Description

ESISCS - The Eastasouth Journal of Information System and Computer Science is a peer-reviewed journal and open access three times a year (April, August, December) published by Eastasouth Institute. ESISCS aims to publish articles in the field of Enterprise systems and applications, Database ...