An enterprise is deploying a zero-trust architecture across their Kubernetes environments. They mandate that all container images must be signed using Cosign and verified at admission time using Kyverno. This technical control directly hardens which of the 4Cs layers?
Image signatures and registry verification protect the integrity of the Container layer.
Why this answer
Container image signing and admission verification ensure the integrity of container images before they run, addressing the Container layer.