exam questions

Exam Professional Cloud Security Engineer All Questions

View all questions & answers for the Professional Cloud Security Engineer exam

Exam Professional Cloud Security Engineer topic 1 question 214 discussion

Actual exam question from Google's Professional Cloud Security Engineer
Question #: 214
Topic #: 1
[All Professional Cloud Security Engineer Questions]

Your organization processes sensitive health information. You want to ensure that data is encrypted while in use by the virtual machines (VMs). You must create a policy that is enforced across the entire organization.

What should you do?

  • A. Implement an organization policy that ensures that all VM resources created across your organization use customer-managed encryption keys (CMEK) protection.
  • B. Implement an organization policy that ensures all VM resources created across your organization are Confidential VM instances.
  • C. Implement an organization policy that ensures that all VM resources created across your organization use Cloud External Key Manager (EKM) protection.
  • D. No action is necessary because Google encrypts data while it is in use by default.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ArizonaClassics
8 months ago
If your organization processes sensitive health information and you want to ensure that data is encrypted while in use by the virtual machines (VMs), the appropriate action would be: B. Implement an organization policy that ensures all VM resources created across your organization are Confidential VM instances. Confidential VMs offer memory encryption to secure data while it is "in use". They use AMD's Secure Encrypted Virtualization (SEV) feature to ensure that data remains encrypted when processed. This would help to meet the requirement of encrypting sensitive health information at rest in transit and while in use by the VMs.
upvoted 3 times
...
akg001
8 months, 2 weeks ago
Selected Answer: B
B- is correct
upvoted 2 times
...
alkaloid
8 months, 4 weeks ago
Selected Answer: B
B is correct: https://www.youtube.com/watch?v=cAEGCE1vNh4&t=22s
upvoted 4 times
...
pfilourenco
8 months, 4 weeks ago
Selected Answer: B
B - Confidential VM is a type of Compute Engine VM that ensures that your data and applications stay private and encrypted even while in use. + By enabling Confidential Computing organization policy constraint, you can ensure that all VM resources created across your organization are Confidential VM instances.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago