Professional-Cloud-Security-Engineer Exam Question 101

You are the security admin of your company. You have 3,000 objects in your Cloud Storage bucket. You do not want to manage access to each object individually. You also do not want the uploader of an object to always have full control of the object. However, you want to use Cloud Audit Logs to manage access to your bucket.
What should you do?
  • Professional-Cloud-Security-Engineer Exam Question 102

    A retail customer allows users to upload comments and product reviews. The customer needs to make sure the text does not include sensitive data before the comments or reviews are published.
    Which Google Cloud Service should be used to achieve this?
  • Professional-Cloud-Security-Engineer Exam Question 103

    Your team needs to configure their Google Cloud Platform (GCP) environment so they can centralize the control over networking resources like firewall rules, subnets, and routes. They also have an on-premises environment where resources need access back to the GCP resources through a private VPN connection. The networking resources will need to be controlled by the network security team.
    Which type of networking design should your team use to meet these requirements?
  • Professional-Cloud-Security-Engineer Exam Question 104

    Your team needs to configure their Google Cloud Platform (GCP) environment so they can centralize the control over networking resources like firewall rules, subnets, and routes. They also have an on-premises environment where resources need access back to the GCP resources through a private VPN connection. The networking resources will need to be controlled by the network security team.
    Which type of networking design should your team use to meet these requirements?
  • Professional-Cloud-Security-Engineer Exam Question 105

    You need to follow Google-recommended practices to leverage envelope encryption and encrypt data at the application layer.
    What should you do?