No Installation Required, Instantly Prepare for the Professional-Cloud-Security-Engineer exam and please click the below link to start the Professional-Cloud-Security-Engineer Exam Simulator with a real Professional-Cloud-Security-Engineer practice exam questions.
Use directly our on-line Professional-Cloud-Security-Engineer exam dumps materials and try our Testing Engine to pass the Professional-Cloud-Security-Engineer which is always updated.
A company has redundant mail servers in different Google Cloud Platform regions and wants to route customers to the nearest mail server based on location.
How should the company accomplish this?
Correct Answer:D
An organization is evaluating the use of Google Cloud Platform (GCP) for certain IT workloads. A well- established directory service is used to manage user identities and lifecycle management. This directory service must continue for the organization to use as the “source of truth” directory for identities.
Which solution meets the organization's requirements?
Correct Answer:B
An organization is migrating from their current on-premises productivity software systems to G Suite. Some network security controls were in place that were mandated by a regulatory body in their region for their previous on-premises system. The organization’s risk team wants to ensure that network security controls are maintained and effective in G Suite. A security architect supporting this migration has been asked to ensure that network security controls are in place as part of the new shared responsibility model between the organization and Google Cloud.
What solution would help meet the requirements?
Correct Answer:B
A customer wants to move their sensitive workloads to a Compute Engine-based cluster using Managed Instance Groups (MIGs). The jobs are bursty and must be completed quickly. They have a requirement to be able to manage and rotate the encryption keys.
Which boot disk encryption solution should you use on the cluster to meet this customer’s requirements?
Correct Answer:B
Reference https://cloud.google.com/kubernetes-engine/docs/how-to/dynamic-provisioning-cmek
Your team needs to make sure that their backend database can only be accessed by the frontend application and no other instances on the network.
How should your team design this network?
Correct Answer:A