Run kube-bench for CIS compliance - Enumerate RBAC policies for overpermissioning - Check network policies for segmentation - Review pod security standards / pod security policies - Assess Secrets management practices