Exam Prep · Common preparation · Checklist

The exam-readiness checklist

One list, two exams. Phases ①–④ get you ready for the Certified Cloud Native Platform Engineer (CNPE) — the performance-based professional exam, where reading about a canary is not the same as shipping one. Phases ⑤–⑦ get you ready for the Cloud Native Platform Engineering Associate (CNPA) — the knowledge-based associate exam, where nothing is graded but your answers and there is no documentation tab to fall back on. Tick items off as you go; your progress is saved in this browser.

☺ Explain it like I’m 10

It’s the packing list before a big trip — except there are two different trips. On one of them you have to build things at a real terminal, so the boxes say “I’ve done this with my own hands.” On the other you have to answer things from memory, so the boxes say “I can explain this without looking.” Tick each box only when it’s really true, so nothing catches you out on the day.

🐢Your host for this topic: Timmy the Turtle — slow, careful, and he never walks into an exam room until every box is genuinely ticked.

Which phases apply to you

Sitting CNPE? Work phases ①–④: Foundations & mindset (think like a platform product owner), Domain mastery (get the reps in on real tools), Observe & secure (run it well and guard it), and Exam readiness (the terminal habits and logistics that win the clock). Those four map onto the five CNPE domains — see the exam guide for the weights.

Sitting CNPA? Work phases ⑤–⑦: Blueprint & vocabulary, Domain recall, and Question technique & the sitting. They map onto the six CNPA domains — see the CNPA hub for the weights. Phase is worth ticking too: the platform-as-a-product ideas in it are examined on both papers, and CNPA leans on them harder than CNPE does.

Sitting both? Do phase ① once, then ⑤–⑦ for the associate and ②–④ for the professional — in that order, because the associate material is the conceptual half of the professional one. And whichever you are sitting, the three shared pages apply: how to study for a CNCF exam, the Kubernetes baseline you need before either paper, and exam day — proctoring & environment.

🐢 Timmy’s dry run · 15 min

Pick one imagined internal platform — say, the Golden Path for a twenty-team org. Walk it down this whole list out loud: what path are you paving and is it a product with Dot as the customer? What’s reconciled from Git, and how does a bad canary roll itself back? Which CRD or Backstage template lets Dot self-serve? What SLO tells you it’s healthy, and what policy, RBAC, and mTLS keep it safe? If you can narrate every line — and you’ve actually done the Phase ② and ③ items with your hands — you can platform-engineer end to end. Sitting CNPA instead? Same drill, no cluster: narrate the same platform, then close your eyes and recite the six domains, their weights, and one sentence per competency. Where the narration goes vague is exactly where the paper will find you.

🐢 Timmy’s checkpoint

1. CNPE is performance-based — you’ll be at a real Linux terminal with live clusters, not a multiple-choice screen. Which items on this list must you have genuinely done with your hands before exam day, not merely read about? 2. Which single CNPE prep step do people most often skip — and most regret? 3. CNPA is knowledge-based and closed-book: which phases here are yours, and what does “closed-book” change about how you revise?

Check your answers
  1. Hands-on before exam day: all of Phase ② (a GitOps sync + self-heal, a CI pipeline, a canary with auto-rollback, a CRD reconciled by an operator, a Crossplane claim, a Backstage template) and the doing-items in Phase ③ (wire Prometheus/Alertmanager/Grafana, triage a broken pod, enforce a Kyverno/Gatekeeper policy, set RBAC + NetworkPolicy + mTLS, add an SBOM + image scan). The exam scores what you produce in a live cluster, so your fingers need the muscle memory — reading isn’t enough.
  2. Most-skipped, most-regretted: the two killer.sh sessions plus the kubectl-speed and set-your-namespace-every-task habits. Candidates run out of time, not knowledge — the ones who finish are those who practised the clock and never lost a task to “oops, wrong namespace.” Timmy books his killer.sh time before he books the exam.
  3. CNPA: phases ⑤, ⑥ and ⑦ are yours, and phase is worth ticking as well because the platform-as-a-product ideas are examined on both papers. Closed-book means there is no documentation tab to rescue a half-remembered idea, so the unit of revision is retrieval, not lookup: shut the page and explain the thing out loud. If you can only recognise it when you see it, you do not yet know it.