exam questions

Exam Professional Cloud Security Engineer All Questions

View all questions & answers for the Professional Cloud Security Engineer exam

Exam Professional Cloud Security Engineer topic 1 question 265 discussion

Actual exam question from Google's Professional Cloud Security Engineer
Question #: 265
Topic #: 1
[All Professional Cloud Security Engineer Questions]

Your organization must follow the Payment Card Industry Data Security Standard (PCI DSS). To prepare for an audit, you must detect deviations on an infrastructure-as-a-service level in your Google Cloud landing zone. What should you do?

  • A. Create a data profile covering all payment relevant data types. Configure Data Discovery and a risk analysis job in Google Cloud Sensitive Data Protection to analyze findings.
  • B. Use the Google Cloud Compliance Reports Manager to download the latest version of the PCI DSS report Analyze the report to detect deviations.
  • C. Create an Assured Workloads folder in your Google Cloud organization. Migrate existing projects into the folder and monitor for deviations in the PCI DSS.
  • D. Activate Security Command Center Premium. Use the Compliance Monitoring product to filter findings that may not be PCI DSS compliant.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
1e22522
Highly Voted 7 months, 3 weeks ago
Selected Answer: D
It's 100% D
upvoted 5 times
...
zanhsieh
Most Recent 4 months, 1 week ago
Selected Answer: D
D. A: No. This option only covers the data protection. PCI-DSS has other requirements, e.g. IAM, EKM, etc. B: No. This only download the checklist of PCI-DSS items. Not reflect to the snapshot of current infra. C: No. Only address controls, no data privacy.
upvoted 1 times
...
Zek
4 months, 2 weeks ago
Selected Answer: D
https://cloud.google.com/security-command-center/docs/compliance-management For each supported security standard, Security Command Center checks a subset of the controls. For the controls checked, Security Command Center shows you how many are passing. For the controls that are not passing, Security Command Center shows you a list of findings that describe the control failures.
upvoted 2 times
...
MoAk
5 months ago
Selected Answer: D
https://cloud.google.com/security-command-center/docs/compliance-management
upvoted 1 times
...
yokoyan
7 months, 3 weeks ago
Selected Answer: A
I think it's A.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago