Cloud

Prep Course - Certified Cloud Native Platform Engineer (CNPE)

Master cloud-native platform engineering with CNPE. Build secure, scalable IDPs using Kubernetes, GitOps, Crossplane, ArgoCD, observability, and policy-as-code through hands-on labs then confidently clear your certification exam.
Nourhan Mohamed
DevOps Lead | Cloud Native Enthusiast | Golden Kubestronaut
DevOps Pre-Requisite Course
Play Button
Fill this form to get a notification when course is released.
book
7
Lessons
book
Challenges
Article icon
106
Topics

What you’ll learn

Our students work at..

Description

The Certified Cloud Native Platform Engineering (CNPE) course is expertly designed to help you confidently prepare for and clear the CNPE certification exam. Tailored for platform engineers, DevOps professionals, cloud architects, and senior infrastructure practitioners, this course builds upon foundational platform engineering knowledge and focuses on designing, operating, securing, and scaling production-grade cloud-native platforms.

Through a blend of theoretical concepts, hands-on demonstrations, practical labs, scenario-based learning, and knowledge checks, you'll develop the expertise required to architect modern internal developer platforms (IDPs), implement GitOps-driven delivery workflows, create self-service platform capabilities, enforce security and governance policies, and operate highly observable cloud-native environments at scale.

The curriculum emphasizes real-world platform engineering practices and industry-standard cloud-native technologies including Kubernetes, ArgoCD, Crossplane, Prometheus, OpenTelemetry, Istio, Tekton, OPA Gatekeeper, and Kyverno. By the end of this course, you'll be equipped to build platforms that improve developer productivity, enhance operational reliability, and support secure software delivery across complex enterprise environments.

Course Modules & Learning Outcomes

1. Platform Architecture and Infrastructure

The Platform Architecture and Infrastructure module focuses on designing scalable, efficient, and cost-conscious cloud-native platforms. You'll learn platform architecture principles, workload resource management, multi-tenancy strategies, storage provisioning, networking fundamentals, and cost optimization techniques.

By completing this module, you'll gain the skills to:

  • Design scalable platform architectures for enterprise workloads.
  • Implement resource governance using requests, limits, quotas, and policies.
  • Build multi-tenant Kubernetes environments with appropriate isolation models.
  • Manage persistent storage using volumes, claims, and storage classes.
  • Understand platform networking and traffic flow patterns.
  • Optimize infrastructure utilization and reduce platform costs using tools such as OpenCost.

2. GitOps and Continuous Delivery

This module explores modern software delivery practices centered around GitOps and continuous delivery. You'll learn how to manage desired state, structure repositories, implement deployment automation, and safely release applications using progressive delivery techniques.

By completing this module, you'll be able to:

  • Implement GitOps workflows using declarative infrastructure and reconciliation principles.
  • Design repository structures that support multi-environment deployments.
  • Deploy and manage applications using ArgoCD.
  • Build and understand Kubernetes-native CI/CD pipelines with Tekton.
  • Implement canary and blue-green deployment strategies using Argo Rollouts.
  • Integrate service meshes into progressive delivery workflows.
  • Troubleshoot delivery failures and configuration drift effectively.

3. Platform APIs and Self-Service Capabilities

The Platform APIs and Self-Service Capabilities module focuses on building extensible platforms that empower developers through automation and self-service workflows. You'll learn how to extend Kubernetes, design platform APIs, and automate infrastructure provisioning.

By completing this module, you'll gain the ability to:

  • Design platform APIs that serve as clear contracts between platform and application teams.
  • Extend Kubernetes using Custom Resource Definitions (CRDs).
  • Implement Kubernetes operators and understand reconciliation patterns.
  • Build automated workflows using Argo Workflows.
  • Create reusable infrastructure abstractions using Crossplane compositions and functions.
  • Evaluate when to use operators, workflows, or pipelines for platform automation.
  • Deliver self-service infrastructure capabilities that improve developer experience.

4. Observability and Operations

This module teaches the principles and practices required to operate cloud-native platforms reliably at scale. You'll learn how to collect, analyze, and visualize telemetry data while developing effective incident response workflows.

By completing this module, you'll learn to:

  • Build observability strategies using metrics, logs, traces, and alerts.
  • Implement monitoring solutions with Prometheus and Grafana.
  • Configure alerting systems and notification routing using Alertmanager.
  • Create dashboards that provide actionable operational insights.
  • Implement distributed tracing with OpenTelemetry and Jaeger.
  • Design scalable logging architectures.
  • Diagnose platform issues and execute structured incident response processes.

5. Security and Policy Enforcement

The Security and Policy Enforcement module focuses on securing cloud-native platforms through governance, policy automation, identity management, and supply chain security practices.

By completing this module, you'll be able to:

  • Apply platform security best practices and threat mitigation strategies.
  • Implement role-based access control (RBAC) using least-privilege principles.
  • Enforce governance policies using admission controllers and policy engines.
  • Implement policy-as-code using OPA Gatekeeper and Kyverno.
  • Apply Kubernetes Pod Security Standards to strengthen workload security.
  • Secure service-to-service communication using Istio and mutual TLS (mTLS).
  • Integrate security controls into software delivery pipelines, including image scanning and supply chain protection.

Course Features

Exam-focused preparation

Every module is aligned with the CNPE certification objectives, ensuring you develop the knowledge and practical skills required to confidently pass the certification exam.

Extensive hands-on labs

Gain real-world experience through practical exercises covering Kubernetes resource management, GitOps workflows, Crossplane, ArgoCD, Tekton, Prometheus, OpenTelemetry, Istio, Gatekeeper, Kyverno, and more.

Production-grade platform engineering practices

Learn the techniques used by modern platform teams to design, automate, secure, and operate cloud-native platforms at scale.

Scenario-based learning

Develop problem-solving skills through realistic platform engineering scenarios that mirror challenges encountered in enterprise environments.

Modern cloud-native ecosystem

Build expertise with widely adopted CNCF and cloud-native technologies including Kubernetes, ArgoCD, Crossplane, Tekton, Prometheus, Grafana, OpenTelemetry, Jaeger, Istio, OPA Gatekeeper, and Kyverno.

Security, governance, and reliability focus

Master the operational and security practices necessary to run resilient and compliant cloud-native platforms.

Career advancement

Ideal for professionals seeking senior platform engineering, cloud architecture, DevOps leadership, and infrastructure engineering roles.

About This Certification

The Certified Cloud Native Platform Engineering (CNPE) certification validates advanced platform engineering knowledge and practical skills required to build, operate, secure, and scale cloud-native platforms in modern organizations.

The certification focuses on core platform engineering disciplines including platform architecture, GitOps and continuous delivery, self-service infrastructure provisioning, observability, operations, security, and policy enforcement. It demonstrates a candidate's ability to leverage cloud-native technologies and platform engineering principles to create reliable internal developer platforms that accelerate software delivery while maintaining governance and operational excellence.

Earning the CNPE certification showcases your expertise in designing production-ready cloud-native platforms, implementing automation at scale, and enabling developer self-service through modern platform engineering practices. It provides industry-recognized validation of your ability to lead platform initiatives and support large-scale cloud-native adoption.

Who Should Enroll?

  • Platform engineers seeking advanced cloud-native platform engineering expertise.
  • DevOps engineers looking to deepen their knowledge of GitOps, automation, and platform operations.
  • Cloud architects responsible for designing scalable and secure cloud-native platforms.
  • Kubernetes administrators and infrastructure engineers expanding into platform engineering roles.
  • Site Reliability Engineers (SREs) working with cloud-native infrastructure and platform operations.
  • Professionals preparing for the Certified Cloud Native Platform Engineering (CNPE) certification exam.

Equip yourself with the skills and confidence to architect, automate, secure, and operate production-grade cloud-native platforms. Through hands-on labs, real-world scenarios, and comprehensive coverage of modern platform engineering practices, this course prepares you to successfully clear the CNPE certification exam and excel as a cloud-native platform engineering professional.

Read More

What our students say

About the instructor

Nourhan Mohamed is a DevOps Instructor and Cloud Native Enthusiast at KodeKloud, specializing in Kubernetes, Docker, CI/CD, and cloud-native technologies. As a Golden Kubestronaut, she focuses on container orchestration, automation, and troubleshooting. At KodeKloud, she designs hands-on DevOps labs that bridge theory with real-world application, empowering learners to build scalable and resilient systems.

No items found.

Course Introduction

lock
lock
6
Topics
Lesson Content

Module Content

Welcome to CNPE: Platform Engineering for the Exam & the Real World04:06
Why CNPE?03:59
CNPE Certification Overview04:25
List of Useful Pre-requisite Courses
Knowledge Check: CNPE Foundations
How to Reach Out to KodeKloud and Engage with the Community

Platform Architecture and Infrastructure

lock
lock
15
Topics
Lesson Content

Module Content

Your Platform Blueprint: Architecture That Scales11:27
Right-Sizing 101: Requests, Limits, QoS, and Scheduling14:24
Multi-Tenancy Made Practical: Models, Tradeoffs, Guardrails16:47
Resource Governance: Defaults, Limits, and Quotas09:12
Defaults & Budgets: Designing LimitRanges and Quotas09:46
Lab: Using LimitRange and ResourceQuota
Persistent Storage Concepts: Volumes, Claims, and Provisioners10:46
Demo: Storage Classes in Action10:22
Lab: Assigning Storage to Workloads
Platform Networking Concepts13:13
Demo: Traffic Flow with Services and Ingress10:34
Cost for Platforms: What Drives Spend and How to Reduce It10:30
Demo: Cost Visibility with OpenCost07:07
Lab: Optimizing Workloads with OpenCost
Quiz: Architecture & Infrastructure

GitOps and Continuous Delivery

lock
lock
20
Topics
Lesson Content

Module Content

GitOps Explained: Desired State, Drift, and Reconciliation09:44
Repo Design That Works: Apps, Infra, Environments, Promotion09:46
Configuration Templating: Parameterization and Environment Management08:05
GitOps Tool Landscape: ArgoCD vs Flux08:59
ArgoCD Overview: Applications, Sync Policies, and Helm Integration09:00
Demo: GitOps Delivery with ArgoCD - UI08:19
Demo: GitOps Delivery with ArgoCD - CLI06:45
Lab: Deploying Apps with ArgoCD
Lab: ArgoCD with Helm
CI/CD on Kubernetes: Pipelines, Tasks, Artifacts, and Flow10:32
Demo: Tekton Pipelines16:49
Lab: Exploring Tekton Pipelines
Progressive Delivery: Canary, Blue-Green, and Safe Rollbacks07:26
Service Mesh Integration for Progressive Delivery07:41
Demo: Progressive Delivery with Argo Rollouts13:05
Lab: Canary Releases with Argo Rollouts
Lab: Progressive Delivery with Istio VirtualService
Delivery Troubleshooting: Drift, Permissions, and Bad Configs09:30
Lab: Diagnosing Delivery Failures
Quiz: GitOps & Delivery

Platform APIs and Self-Service Capabilities

lock
lock
20
Topics
Lesson Content

Module Content

APIs as Products: Designing Your Platform Contract10:34
Extending Kubernetes: Custom Resources and API Extensions09:42
CRD Design Patterns: Versioning, Status, and Printer Columns09:02
Demo: Building a Custom Resource Definition11:12
Lab: Working with CRDs
Operators & Controllers: Reconcile Like a Pro12:49
Demo: Reading Operator Status and Conditions07:27
Lab: Exploring Operator Behavior
Workflow Orchestration: DAGs, Steps, and Event-Driven Automation10:25
Demo: Workflow Automation with Argo Workflows19:26
Lab: Creating Workflows with Argo
Lab: Updating Argo Workflows
Platform Building Blocks: Crossplane XRs, Compositions, and Functions10:30
Demo: Compositions with Crossplane09:41
Lab: Compositions with Crossplane
Crossplane Functions10:39
Demo: Crossplane Functions18:25
Lab: Crossplane Functions
Choosing the Right Engine: Operators vs Workflows vs Pipelines09:04
Quiz: Platform APIs & Self-Service

Observability and Operations

lock
lock
18
Topics
Lesson Content

Module Content

Observability for Platforms: What to Measure and Why06:53
Metrics Architecture: Collection, Storage, and Querying06:36
Demo: Metrics Collection with Prometheus07:22
Lab: Working with Prometheus
Prometheus Alerting: Rules, AlertManager, and Notification Routing06:26
Lab: Working with Alert Manager
Visualization and Dashboards: Turning Data into Insight05:24
Demo: Connecting a Datasource in Grafana03:14
Demo: Building Dashboards in Grafana07:49
Lab: Building a Complete Monitoring Stack
Distributed Tracing: Context Propagation and Trace Analysis07:27
Trace Visualization and Root Cause Analysis05:53
Demo: Tracing with OpenTelemetry and Jaeger07:59
Lab: OpenTelemetry with Jaeger
Logging for Platforms: Patterns That Scale07:18
Incident Playbook: Triage, Fix, Validate, Repeat07:08
Lab: Repair a Broken Stack
Quiz: Observability & Operations

Security and Policy Enforcement

lock
lock
23
Topics
Lesson Content

Module Content

Platform Security, Simplified: Threats, Guardrails, and Trust05:12
RBAC You Can Live With: Least Privilege Without Pain04:47
Demo: RBAC Roles and Bindings09:44
Lab: Configuring RBAC Policies
Admission Control: Policies That Prevent Bad Deployments05:40
Demo: Admission Webhooks in Action06:19
Lab: Admission Control on Kubernetes
OPA Gatekeeper: Constraint-Based Policy Enforcement05:04
Demo: Policy as Code with Gatekeeper09:59
Lab: Policy as Code with Gatekeeper
Kyverno: Kubernetes-Native Policy Management05:28
Demo: Supply Chain Guardrails with Kyverno11:27
Lab: Supply Chain Guardrails with Kyverno
Kyverno Cluster Policy Deprecation
Pod Security Standards: Your Baseline Safety Net04:47
Demo: Applying Pod Security Standards11:26
Lab: Exploring Pod Security Standards
Service Mesh Security: Encryption and Identity05:20
Demo: mTLS with Istio10:46
Lab: Implementing mTLS with Istio
Security in Delivery: Build Pipelines That Ship Safely05:20
Lab: Securing Your Pipeline with Image Scanning
Quiz: Security & Policy

Conclusion

lock
lock
4
Topics
Lesson Content

Module Content

Course Conclusion05:51
Exam Tips and Tricks05:53
Exam Resources
Mock Exam 1
Play Button
Fill this form to get a notification when course is released.
This course comes with hands-on cloud labs
book
7
Modules
book
Lessons
Article icon
106
Lessons
check mark
Course Certificate
Videos icon
10:05
Hours of Video
laptop
Hours of Labs
Story Format
Videos icon
Videos
Case Studies
ondemand_video icon
Demo
laptop
Labs
laptop
Cloud Labs
checklist
Mock exams
Quizzes
Discord Community Support
people icon
Community support
language icon
Closed Captions
Golden Kubestronaut
Cloud