Professional-Cloud-Security-Engineer Exam Question 6

Your company has deployed an application on Compute Engine. The application is accessible by clients on port 587. You need to balance the load between the different instances running the application. The connection should be secured using TLS, and terminated by the Load Balancer.
What type of Load Balancing should you use?
  • Professional-Cloud-Security-Engineer Exam Question 7

    You have been tasked with inspecting IP packet data for invalid or malicious content. What should you do?
  • Professional-Cloud-Security-Engineer Exam Question 8

    An engineering team is launching a web application that will be public on the internet. The web application is hosted in multiple GCP regions and will be directed to the respective backend based on the URL request.
    Your team wants to avoid exposing the application directly on the internet and wants to deny traffic from a specific list of malicious IP addresses Which solution should your team implement to meet these requirements?
  • Professional-Cloud-Security-Engineer Exam Question 9

    For compliance reasons, an organization needs to ensure that in-scope PCI Kubernetes Pods reside on "in- scope" Nodes only. These Nodes can only contain the "in-scope" Pods.
    How should the organization achieve this objective?
  • Professional-Cloud-Security-Engineer Exam Question 10

    A company is backing up application logs to a Cloud Storage bucket shared with both analysts and the administrator. Analysts should only have access to logs that do not contain any personally identifiable information (PII). Log files containing PII should be stored in another bucket that is only accessible by the administrator.
    What should you do?