Professional-Cloud-Security-Engineer 무료 덤프문제 온라인 액세스
| 시험코드: | Professional-Cloud-Security-Engineer |
| 시험이름: | Google Cloud Certified - Professional Cloud Security Engineer Exam |
| 인증사: | |
| 무료 덤프 문항수: | 320 |
| 업로드 날짜: | 2026-08-30 |
A customer needs to launch a 3-tier internal web application on Google Cloud Platform (GCP). The customer' s internal compliance requirements dictate that end-user access may only be allowed if the traffic seems to originate from a specific known good CIDR. The customer accepts the risk that their application will only have SYN flood DDoS protection. They want to use GCP's native SYN flood protection.
Which product should be used to meet these requirements?
An office manager at your small startup company is responsible for matching payments to invoices and creating billing alerts. For compliance reasons, the office manager is only permitted to have the Identity and Access Management (IAM) permissions necessary for these tasks. Which two IAM roles should the office manager have? (Choose two.)
Which two security characteristics are related to the use of VPC peering to connect two VPC networks?
(Choose two.)
Your organization enforces a custom organization policy that disables the use of Compute Engine VM instances with external IP addresses. However, a regulated business unit requires an exception to temporarily use external IPs for a third-party audit process. The regulated business workload must comply with least privilege principles and minimize policy drift. You need to ensure secure policy management and proper handling. What should you do?
You are implementing data protection by design and in accordance with GDPR requirements. As part of design reviews, you are told that you need to manage the encryption key for a solution that includes workloads for Compute Engine, Google Kubernetes Engine, Cloud Storage, BigQuery, and Pub/Sub. Which option should you choose for this implementation?