GCP Google Cloud Professional Cloud Security Engineer Practice Questions At Lumivanta Systems, a fictional company, application logs are backed up to a Cloud Storage bucket shared by analysts and an administrator.
GCP Google Cloud Professional Cloud Security Engineer Practice Questions
0% Completed
Premium Set: 1 [ + Detailed Explanations] Free Preview
At Quoratrix Keyworks, a fictional company, you must ensure that keys used for at-rest encryption comply with your organization's security controls.
Reading
At Cindralex Web Services, a fictional company, you plan to use Google Cloud Armor preconfigured WAF rules with a classic Application Load Balancer.
Reading
At Arcluma Technologies, a fictional company, you need to connect the organization's on-premises network to an existing Google Cloud environment that contains one Shared VPC with Production and Non-Production subnets.
Reading
At Cinderlume Software, a fictional company, your organization relies heavily on Cloud Run for containerized applications.
Reading
At Lumivanta Systems, a fictional company, application logs are backed up to a Cloud Storage bucket shared by analysts and an administrator.
Reading
At Gravellix Storage, a fictional company, you manage data in Cloud Storage and must retain the objects.
Reading
At Quoranta Compute, a fictional company, you will create a new service account that should be able to list Compute Engine instances in the project.
Reading
At Asterbyte Relay Labs, a fictional company, a messaging application must comply with FIPS 140-2 requirements, and the company has decided to use Google Cloud compute and network services.
Reading
At Nexoralyx Cloud, a fictional company, you are managing a Google Cloud environment organized into folders that represent different teams.
Reading
At Cindara Cloudworks, a fictional company, the organization is evaluating Google Cloud for certain IT workloads.
Reading
At Arctenova Webworks, a fictional company, a threat actor is targeting organizations like yours.
Reading
At Velorix Compliance Systems, a fictional company, for compliance reporting purposes, the internal audit department needs you to provide a list of virtual machines (VMs).
Reading
At Pyravex Networks, a fictional company, which type of load balancer should you use when you need the original client source IP address to be preserved by default and you also need to use Standard Network Service Tier?
Reading
At Floravex Media, a fictional company, your application is deployed as a highly available cross-region service behind a global external Application Load Balancer.
Reading
At Lumivanta Commerce, a fictional company, users report an outage on a public-facing application hosted on Compute Engine.
Reading
At Nexlume Harborworks, a fictional company, compliance requirements state that in-scope PCI Kubernetes Pods must reside only on in-scope nodes, and those nodes must contain only the in-scope Pods.
Reading
At Deltavara Web Services, a fictional company, you run a web application on Cloud Run that is exposed through an external Application Load Balancer.
Reading
At Ceralume Payments, a fictional company, your development team is launching a new financial application.
Reading
At Velmorian Apps, a fictional company, your Google Cloud environment has one organization resource, one folder named "Apps", and several projects within that folder.
Reading
At Bravelynx Technologies, a fictional company, a customer terminates an engineer and needs to ensure that the engineer's Google account is automatically deprovisioned.
Reading
At Bravora Holdings, a fictional company, you implemented domain-restricted sharing by using the current managed organization policy constraint constraints/iam.managed.
Reading
At Bravionex Compute, a fictional company, you have placed several Compute Engine instances in a private subnet without external IP addresses.
Reading
At Deltanova Security, a fictional company, a user-managed service account key has been exposed in multiple public source-code repositories.
Reading
At Arclunex Administration, a fictional company, an administrative web application runs on virtual machines in a managed instance group and listens on port 5601.
Reading
At Elarivex Software, a fictional company, your organization is concerned about application vulnerabilities that have led to recent industry breaches.
Reading
A security architect at Myravale Digital, a fictional company, is reviewing international compliance standards.
Reading
At Velqora Health Systems, a fictional company, you manage a Google Cloud organization with many projects around the world.
Reading
At Arvelune Clinical Research, a fictional company, clinical-trial results are stored in BigQuery.
Reading
At Nexavora Analytics, a fictional company, users access data in a BigQuery table.
Reading
At KestrelNova Dataworks, a fictional company, you want data on Compute Engine disks to be encrypted at rest with keys managed by Cloud Key Management Service (Cloud KMS).
Reading
At Doralyn Financial, a fictional company, you work for a financial organization in a highly regulated industry that is subject to active regulatory compliance.
Reading
At Brinovexa Analytics, a fictional company, your organization publishes yearly reports of website-usage analytics.
Reading
At Halvorix Hybrid Apps, a fictional company, your organization has a centralized identity provider that manages human and machine identities.
Reading
At Braventra Infrastructure, a fictional company, your organization is moving virtual machines to Google Cloud.
Reading
At Nexoriva Analytics, a fictional company, you have a highly sensitive BigQuery workload containing personally identifiable information (PII).
Reading
At Halcyora Enterprises, a fictional company, employees currently use personal computers to access the organization's Google Cloud console.
Reading
At Cindralume Compute, a fictional company, company-approved Compute Engine images are stored in a central image project that is inside a VPC Service Controls perimeter with other projects in the organization.
Reading
At Orvanta Manufacturing, a fictional company, a security assessment found that multiple Compute Engine VMs have external IP addresses.
Reading
At Nexavara Health, a fictional company, you are working with protected health information for an electronic health record system.
Reading
At Graventra Identity Services, a fictional company, your organization uses Microsoft Active Directory and wants to configure Security Assertion Markup Language (SAML) single sign-on for its managed Google identities.
Reading
At Deltavine Software, a fictional company, you are setting up a CI/CD pipeline to deploy containerized applications to production Google Kubernetes Engine clusters.
Reading
At Solvexa Infrastructure, a fictional company, you want to prevent users from accidentally removing the lien that protects a Shared VPC host project from deletion.
Reading
At Velmora Nexus, a fictional company, your organization acquired a new workload.
Reading
At Lumivanta AI Labs, a fictional company, your organization uses Gemini Enterprise Agent Platform Workbench instances.
Reading
At Evorlix Applications, a fictional company, a mission-critical application runs on Google Kubernetes Engine (GKE).
Reading
At Floraventa AI Systems, a fictional company, your organization has an operational image-classification model running on a managed AI service on Google Cloud.
Reading
At Asterovix Marketing, a fictional company, your organization is developing a sophisticated machine-learning model to predict customer behavior for targeted marketing campaigns.
Reading
At Velmora Quanta Systems, a fictional company, a manager wants to start retaining security event logs for 2 years while minimizing costs.
Reading
At Elarion Security, a fictional company, during a routine security review your team discovers a suspicious service account impersonation attempt involving a highly privileged and regularly used service account from an unfamiliar source.
Reading
At Orbinex Analytics, a fictional company, an analytics workload runs on Compute Engine and should have limited internet access.
Reading
Premium Set: 2 [ + Detailed Explanations] Free Preview
At Bravelynx Applications, a fictional company, you are developing an application that runs on a Compute Engine VM.
Reading
An engineering team at Quenvorix Media, a fictional company, is launching a public web application hosted in multiple Google Cloud regions.
Reading
At Avelora Global, a fictional company, the chief information security officer (CISO) requires business data to be stored in specific locations because of regulatory requirements affecting the company's global expansion plans.
Reading
At Veltraxis Cloud, a fictional company, you run applications on Cloud Run.
Reading
At Pyralis Security, a fictional company, you need to export and audit security logs that identify the users or service accounts responsible for Google Cloud console and API operations that modify Google Cloud resource configuration.
Reading
At Arclunexa Research, a fictional company, your organization must store highly sensitive data within Google Cloud.
Reading
At Cinderlume AI Works, a fictional company, your organization wants to remain a software-innovation leader.
Reading
At Tessanova Industries, a fictional company, the organization is starting to move its infrastructure from its on-premises environment to Google Cloud.
Reading
At Meridoxa Storage, a fictional company, existing Cloud Storage objects are encrypted with Google-owned and Google-managed encryption keys, but a new internal policy requires customer-managed encryption keys (CMEKs).
Reading
At Nexloria Analytics, a fictional company, your team maintains 1 PB of sensitive data in BigQuery that contains personally identifiable information (PII).
Reading
At Isolavanta Recommendations, a fictional company, your organization is building a real-time recommendation engine.
Reading
At Asterlume Data, a fictional company, you need an encryption-at-rest strategy that protects sensitive data while reducing key-management complexity for non-sensitive data.
Reading
At Koralume Multicloud, a fictional company, your organization has applications that run in multiple public clouds.
Reading
Solvanta Ridge Analytics, a fictional company, runs an analytics workload on Google Cloud in which Compute Engine instances access data stored in Cloud Storage.
Reading
Last week, Velmoric Data Systems, a fictional company, deployed a new App Engine application that writes logs to BigQuery.
Reading
At Isovara DevOps, a fictional company, your organization is rolling out a new CI/CD process for deploying infrastructure and applications to Google Cloud.
Reading
At Floranexa Security Operations, a fictional company, a team collects logs in an on-premises security information and event management system.
Reading
At Doralix Compliance, a fictional company, the organization operates in a regulated industry with strict data-protection requirements.
Reading
At Orvanta Geospatial, a fictional company, your organization uses Google Cloud to process large amounts of potentially sensitive location data for analysis and visualization.
Reading
At Arvonex Hybrid Systems, a fictional company, on-premises hosts need private access to Google Cloud APIs.
Reading
At Quorixa Security, a fictional company, your security team uses symmetric encryption keys in Cloud Key Management Service to protect user data.
Reading
At Braventra Databases, a fictional company, a database administrator notices malicious activity involving a Cloud SQL instance.
Reading
At Lumetrix Networks, a fictional company, you are auditing all Google Cloud resources in a production project.
Reading
At Kestralume Identity Group, a fictional company, you plan to synchronize identities into Cloud Identity from a third-party identity provider (IdP).
Reading
At Halvorix Regulated Systems, a fictional company, your organization operates in a highly regulated environment and must encrypt sensitive data while it is actively being processed in memory.
Reading
At Velmora Circuit Systems, a fictional company, you recently implemented a 100-Gbps Dedicated Interconnect connection between Google Cloud and your on-premises edge router.
Reading
At Solvexa Data Labs, a fictional company, sensitive data is stored in Cloud Storage.
Reading
At Pyralume Services, a fictional company, your organization runs Cloud Run services in multiple projects under a non-production folder.
Reading
At Bravora Compliance, a fictional company, industry regulations require all new Cloud Storage resources in the Google Cloud organization org1 to use customer-managed encryption keys.
Reading
At Isolara Data Services, a fictional company, your organization is migrating a sensitive data-processing workflow from on-premises infrastructure to Google Cloud.
Reading
At Merovanta Data Exchange, a fictional company, your organization has two VPC Service Controls service perimeters, Perimeter-A and Perimeter-B.
Reading
At Nexalume Security, a fictional company, your zero-trust strategy uses Identity-Aware Proxy (IAP) to protect multiple applications.
Reading
At Arvelune Enterprises, a fictional company, your organization is adopting Google Cloud.
Reading
At Cindervex Global, a fictional company, the Google Cloud organization contains about 200 projects and 1,500 virtual machines.
Reading
At Velnorix Systems, a fictional company, you need to configure Cloud Interconnect between an on-premises data center and a VPC host network.
Reading
At Elvarin Security, a fictional company, you are configuring Security Command Center for the organization's Google Cloud environment.
Reading
At Cinderlume Analytics, a fictional company, application logs are initially uploaded to a Cloud Storage bucket that is accessible only to an administrator.
Reading
At Junovara Records, a fictional company, customers upload scanned contracts and driver licenses to a web portal backed by Cloud Storage.
Reading
At Junavex AI Labs, a fictional company, your organization is building a generative AI chatbot for internal employees.
Reading
At Praxenvale Holdings, a fictional company, your team wants to limit the number of users who have administrative privileges at the organization level.
Reading
At Terranova Compliance, a fictional company, regulatory requirements require business data to reside only in approved Google Cloud locations.
Reading
At Gravionyx Networks, a fictional company, your Google Cloud organization is divided into three folders: production, development, and networking.
Reading
At Nimbrava CRM, a fictional company, a customer wants to make it convenient for a mobile workforce to access a CRM web interface hosted on Google Cloud.
Reading
At Velquanta Systems, a fictional company, you are running code in Google Kubernetes Engine (GKE) containers in Google Cloud that requires access to objects stored in a Cloud Storage bucket.
Reading
At Luminara Financial Modeling, a fictional company, a financial-modeling application is already deployed on Google Cloud and processes large amounts of sensitive customer financial data.
Reading
At Nexovara Production Systems, a fictional company, the information security team has mandated that all new Cloud Run jobs and services in production must have Binary Authorization enabled.
Reading
At Veldrix Infrastructure, a fictional company, the security team is reviewing the shared security responsibility model for infrastructure as a service (IaaS).
Reading
The security and risk management teams at Asterquill Systems, a fictional company, are concerned about the boundary between their responsibilities and Google's responsibilities for production workloads running on Google Cloud.
Reading
At Meridoxa Database Systems, a fictional company, you want to set up a secure internal network in Google Cloud for database servers.
Reading
At Arclume Security, a fictional company, a security engineer is reviewing envelope encryption.
Reading
Premium Set: 3 [ + Detailed Explanations]
At Deltoriva Identity Systems, a fictional company, employees frequently use the organization's corporate domain name to create unmanaged consumer Google Accounts.
Reading
At Isovara Consulting, a fictional company, an organization is evaluating a migration from a private cloud to Google Cloud.
Reading
At Halvoris Analytics, a fictional company, you manage a BigQuery analytical data warehouse.
Reading
At Deltara Cloud Governance, a fictional company, the Google Cloud organization contains thousands of projects whose teams have project-level Owner access.
Reading
At Elarion Research, a fictional company, your organization must keep Cloud Logging data for a new Netherlands workload in the europe-west4 region.
Reading
At Elarvex Infrastructure, a fictional company, your organization uses folders to represent different teams in Google Cloud.
Reading
At Merovanta Container Security, a fictional company, your organization uses a microservices architecture on Google Kubernetes Engine (GKE).
Reading
At Ceralune Platform Group, a fictional company, your organization is migrating a complex application to Google Cloud.
Reading
At Lumetraxis Services, a fictional company, a service account is used to authenticate data transfers from a specific Compute Engine VM to a Cloud Storage bucket.
Reading
At Koralume Applications, a fictional company, your organization is implementing a new Python application on Cloud Run.
Reading
At Gravonexa Commerce, a fictional company, your organization operates a critical web application on Google Cloud for international customers.
Reading
At Korlume Identity Services, a fictional company, the organization enforces 2-Step Verification (2SV) for all managed users.
Reading
You are the security administrator at Virelto Development, a fictional company.
Reading
At Lumetrix Commerce, a fictional company, customers report errors when accessing your organization's website.
Reading
As adoption of Sensitive Data Protection grows at Oridexa Research, a fictional company, you need to optimize inspection usage to reduce cost.
Reading
At Gravonix Federation Labs, a fictional company, applications running outside Google Cloud use Workload Identity Federation to access Google Cloud resources without service account keys.
Reading
At Isovexa DevOps, a fictional company, your team uses Packer to build Compute Engine images by creating a temporary VM.
Reading
At Floravex Enterprises, a fictional company, you have observed an increase in phishing attacks against enterprise user accounts.
Reading
Terralume Commerce, a fictional company, has an application whose frontend is deployed in a managed instance group in subnet A.
Reading
At Halvoria Group, a fictional company, the CEO recently sold two business divisions.
Reading
At Orelith Privacy Labs, a fictional company, the privacy team uses crypto-shredding, meaning destruction of encryption key material, as a method of rendering personally identifiable information (PII) inaccessible.
Reading
At Norvanta Webworks, a fictional company, Google Cloud VMs are deployed by a managed instance group (MIG) in a service project attached to a Shared VPC host project.
Reading
You are part of the security team at Nexorvale Systems, a fictional company, and you are investigating a compromised service account key.
Reading
At Dovarex Compliance Labs, a fictional company, your organization operates in a highly regulated industry and uses Access Approval to control qualifying Google personnel access to sensitive data.
Reading
At Merovexa Sovereign Services, a fictional company, the organization wants Google Cloud controls that support an EU data-residency and operational-sovereignty requirement for workloads subject to its GDPR compliance program.
Reading
At Lumivara Security, a fictional company, your Google Cloud environment contains publicly exposed network assets.
Reading
Marivexa Applications, a fictional company, operates an application instance group behind an external Application Load Balancer in the us-central1 region using the Standard Network Service Tier.
Reading
At Floravanta Regulatory Systems, a fictional company, your organization has one workload that is regulated by European laws.
Reading
At Myravex Security, a fictional company, you want to update an existing VPC Service Controls service perimeter so that it uses a new access level.
Reading
At Isolavex Migration Services, a fictional company, your organization is migrating its primary web application from on-premises infrastructure to Google Kubernetes Engine (GKE).
Reading
At Junoriva Partner Services, a fictional company, your application is being integrated with a partner application that requires read access to customer data in one of your Cloud Storage buckets to process customer orders.
Reading
At Junelora Storage, a fictional company, Security Command Center Standard identifies several Cloud Storage buckets that were accidentally made public.
Reading
At Luminexa Integration Services, a fictional company, applications in Google Cloud need controlled access to specific external web services.
Reading
At Florentra Security, a fictional company, your organization uses Security Command Center Premium as its central threat-detection platform.
Reading
You are the security administrator at Bravionyx Security, a fictional company.
Reading
At Luminara Applications, a fictional company, which Google Cloud service should you use when you need to enforce identity-aware access control policies in front of supported applications and resources?
Reading
At Solvarix Compute, a fictional company, your organization relies heavily on Compute Engine VMs.
Reading
At Floravanta Compute, a fictional company, you use Security Command Center to protect Google Cloud workloads and need to detect cryptocurrency-mining software running on Compute Engine virtual machines.
Reading
At Gravelynx Health, a fictional company, you work for a healthcare provider that is expanding to Google Cloud to store and process sensitive patient data.
Reading
At Junovex Engineering, a fictional company, the security team wants to reduce the risk that user-managed service account keys are mishandled or compromised.
Reading
At Asterivon Payments, a fictional company, your organization must follow the Payment Card Industry Data Security Standard (PCI DSS).
Reading
At Graventa Financial, a fictional company, your organization hosts a financial-services application on Compute Engine instances.
Reading
You are the security administrator at Deltanoric Storage, a fictional company.
Reading
At Kestralune Processing, a fictional company, a customer wants to run a batch-processing system on Compute Engine VMs and store output files in a Cloud Storage bucket.
Reading
At Quoravex Security, a fictional company, your organization hosts a sensitive web application in Google Cloud.
Reading
At Elvaris Data Security, a fictional company, your organization has sensitive data stored in BigQuery and Cloud Storage.
Reading
Auronexa Global, a fictional company, needs to provide managed corporate Google accounts to developers and operations staff who require direct access to Google Cloud resources.
Reading
At Koralume Software, a fictional company, your organization wants only trusted, centrally managed container images to be deployed on Google Kubernetes Engine clusters in a project.
Reading
At Merovanta Global, a fictional company, your multinational organization uses several cloud providers and maintains an extensive on-premises security information and event management (SIEM) platform.
Reading
At Halvoryx Container Services, a fictional company, your organization deploys many containerized applications on Google Kubernetes Engine (GKE).
Reading
Premium Set: 4 [ + Detailed Explanations]
At Graventa Messaging, a fictional company, Project A is protected by a VPC Service Controls service perimeter that restricts Pub/Sub.
Reading
At Evorix Data Labs, a fictional company, sensitive personally identifiable information (PII) is ingested during a daily ETL process from an on-premises environment into BigQuery.
Reading
At Deltavera Webworks, a fictional company, you are deploying a web application on Compute Engine.
Reading
At Arclunexa Holdings, a fictional company, your organization is implementing a Zero Trust security model and uses Chrome Enterprise Premium.
Reading
At Brinova Enterprises, a fictional company, the organization plans to move most of its IT infrastructure to Google Cloud while keeping its existing on-premises Microsoft Active Directory as the authoritative identity source.
Reading
At Arvenza Cloudworks, a fictional company, the security team wants to ensure that a Cloud Storage bucket in Project A can be read only by authorized workloads or principals in Project B.
Reading
At Nexoriva Cloud, a fictional company, company security policy states that Compute Engine VM instances must not have external IP addresses.
Reading
At Doventra Public Services, a fictional company, you have been tasked with protecting a public web application on Google Cloud against common web application attacks.
Reading
At Elarion Kubernetes Group, a fictional company, your organization plans to deploy a large number of Google Kubernetes Engine clusters for business applications in multiple folders and projects.
Reading
At Bravelis Global Services, a fictional company, your organization is migrating business-critical applications to Google Cloud across multiple projects.
Reading
At Velmorian Data Systems, a fictional company, your organization has recently migrated sensitive customer data to Cloud Storage buckets.
Reading
At Trellivon Enterprises, a fictional company, the organization has implemented user synchronization and SAML federation between Cloud Identity and Microsoft Active Directory.
Reading
At Caldriva Manufacturing, a fictional company, you are a security administrator.
Reading
At Deltanora Partner Services, a fictional company, a vendor needs access to your company's Google Cloud environment.
Reading
At Bravelume Security, a fictional company, you are responsible for configuring Identity and Access Management in your organization's Google Cloud environment.
Reading
At Halverix Governance, a fictional company, you define central security controls in Google Cloud.
Reading
At Axionmere Logistics, a fictional company, an application running on Compute Engine must securely store and retrieve sensitive configuration values such as passwords, API credentials, or other application secrets.
Reading
At Arvexis Software, a fictional company, your organization uses GitHub Actions as its continuous integration and continuous delivery platform.
Reading
At Nexoriva AI Labs, a fictional company, your organization is using AI to improve products through innovation.
Reading
At Gravellix Cloud, a fictional company, you are implementing data protection by design for a regulated environment.
Reading
At Braventra Identity Group, a fictional company, groups are used to manage user permissions in Google Cloud.
Reading
At Floraventa Hybrid Systems, a fictional company, your organization is migrating a three-tier web application to Google Cloud.
Reading
At Solvanta Storage Group, a fictional company, you want to ensure that Cloud Storage buckets across the organization cannot expose objects publicly through either IAM or legacy object ACLs.
Reading
At Meridaxon Health Systems, a fictional company, you are the project owner and IAM administrator for a regulated workload.
Reading
At Nexalora Health Systems, a fictional company, your organization processes sensitive health information.
Reading
At Halcyonex Development, a fictional company, you recently deployed Secure Web Proxy in Google Cloud.
Reading
At Cinderwave Compliance, a fictional company, your organization wants continuous evaluation against the current CIS GCP Foundations Benchmark v3.0 in Security Command Center Premium.
Reading
At Floravex Data Services, a fictional company, you are migrating an on-premises data warehouse to BigQuery, Cloud SQL, and Cloud Storage.
Reading
At Evoranta Cloud Strategy, a fictional company, your organization is preparing to build business services in Google Cloud for the first time.
Reading
At Velmora Ridge Systems, a fictional company, your organization is moving to Google Cloud.
Reading
At Graventa Internal Apps, a fictional company, an application is hosted on Cloud Run and protected by Identity-Aware Proxy (IAP).
Reading
At Ceralume Industries, a fictional company, you are creating a new Google Cloud organization resource.
Reading
At Pluravex Credit Labs, a fictional company, you want to determine which products could help customers improve their credit scores by age range.
Reading
At Halvorix Web Security, a fictional company, your organization is deploying a new web application on Compute Engine and needs robust perimeter security.
Reading
At Veltrion Web Systems, a fictional company, you are on the development team.
Reading
At Ardentex Analytics, a fictional company, you need to use Cloud External Key Manager to protect specific BigQuery data at rest with an encryption key that remains in a supported external key-management system.
Reading
At Cinderlume Compliance, a fictional company, your organization stores regulated data in Cloud Storage.
Reading
At Gravonexa AI Services, a fictional company, your organization is building a generative AI application that uses sensitive internal data with Gemini models in Gemini Enterprise Agent Platform, which is generally available in the selected region.
Reading
At Norvessa Financial Services, a fictional company, you are responsible for protecting highly sensitive data in BigQuery.
Reading
At Arvanta Health Data, a fictional company, your EU-based organization stores both personally identifiable information (PII) and non-PII data in Cloud Storage across multiple Google Cloud regions.
Reading
At Cinderova Networks, a fictional company, you are designing a secure network architecture.
Reading
At Deltalume Identity Services, a fictional company, Cloud Identity is the identity provider for your Google Cloud users.
Reading
At Nexlume Machine Intelligence, a fictional company, you are working with developers to secure custom training jobs running on Gemini Enterprise Agent Platform.
Reading
At Sylvaris Data Group, a fictional company, you need an encryption-at-rest strategy that minimizes key-management complexity for non-sensitive data while giving you direct control over key location and rotation schedules for sensitive data.
Reading
At Floravex Hybrid Development, a fictional company, your organization operates a hybrid environment and recently created a private Artifact Registry repository in Google Cloud.
Reading
At Deltanova Networks, a fictional company, you route internet-bound traffic from Google Cloud workloads through your on-premises internet connection so that the traffic passes through your on-premises security controls.
Reading
At Velmorian Systems, a fictional company, you need to centralize your team's logs for production projects.
Reading
At Elaris Workspace Services, a fictional company, your organization uses Google Workspace Enterprise for workforce authentication.
Reading
At Velmora Axis Systems, a fictional company, compliance requirements state that certain Compute Engine workloads in specified projects must run only in approved Google Cloud regions within the European Union (EU).
Reading
At Floranex Security, a fictional company, a client is concerned about encryption-key custody for sensitive data.
Reading
Premium Set: 5 [ + Detailed Explanations]
At Lumivara Records, a fictional company, your organization's records are stored in Cloud Storage.
Reading
At Quendrix Works, a fictional company, the organization wants to deploy 2-Step Verification (2SV).
Reading
At Halcyonara Apps, a fictional company, which Identity-Aware Proxy IAM role should you grant to a principal that needs permission to access HTTPS resources protected by IAP?
Reading
At Luminexar Holdings, a fictional company, the security team believes that a former employee gained unauthorized access to Google Cloud resources during the past two months by using a service account key.
Reading
At Cinderwave Compliance, a fictional company, you are migrating an application to Google Cloud.
Reading
At Kestrelume Applications, a fictional company, you are responsible for Cloud Run functions in your organization's Google Cloud environment.
Reading
At Asterlume Dataworks, a fictional company, your security team wants to implement a defense-in-depth approach to protect sensitive data stored in a Cloud Storage bucket.
Reading
At Lumivex SaaS, a fictional company, your organization is developing a new SaaS application on Google Cloud.
Reading
At Merovara Payments Lab, a fictional company, an application team is releasing a critical feature and needs 10,000 realistic transaction records for final testing.
Reading
At Novalume Systems, a fictional company, your organization recently deployed a new application on Google Kubernetes Engine (GKE).
Reading
At Koralune Operations, a fictional company, you have many Compute Engine VMs that have only private IP addresses.
Reading
At Kestrelora Industries, a fictional company, the organization is moving applications to Google Cloud while maintaining several mission-critical applications on-premises.
Reading
At Astravine Analytics, a fictional company, you manage a set of Google Cloud projects contained in a folder named Data Warehouse.
Reading
At Luminaryx Security, a fictional company, you need to inspect complete IP packets, including headers and payload data, for invalid or malicious content in Google Cloud network traffic.
Reading
At Pyranova Secure Compute, a fictional company, you have created a hardened custom OS image that complies with your organization's security standards.
Reading
At Braventa Analytics, a fictional company, you are implementing communication restrictions for selected Google Cloud services.
Reading
At Isolara Engineering, a fictional company, your organization has published a security policy to minimize user-managed service account keys.
Reading
At Velquora Systems, a fictional company, you have the following Google Cloud resource hierarchy and policies for the legacy managed constraint constraints/compute.restrictLoadBalancerCreationForTypes.
Reading
At Isolara Logging, a fictional company, you created a new Cloud Logging log bucket to replace the _Default log bucket for future routed logs.
Reading
At Halcyvora Industries, a fictional company, each business unit contains thousands of users.
Reading
At Velatrix Digital, a fictional company, your organization has experienced several recent DNS-related attacks.
Reading
At Orbelis Capital, a fictional company, you are a security engineer.
Reading
At Junovexa Security, a fictional company, a security assessment found that administrators sometimes leave Google Cloud CLI sessions active for days.
Reading
At Nexoria DevCloud, a fictional company, your organization has European data-location requirements as part of its GDPR compliance program.
Reading
At Cinderlume Global, a fictional company, your organization uses a third-party identity provider to centrally manage workforce users.
Reading
At Nexavora Data Services, a fictional company, you must secure a collection of Cloud Storage buckets that contain sensitive customer data.
Reading
At Ventorix Platforms, a fictional company, you are designing a governance model for application secrets stored in Secret Manager. Production and non-production applications currently access secrets by using service accounts.
Reading
At Nexavora Platforms, a fictional company, you need to create a VPC environment that lets the security team centrally control network resources such as firewall rules while developers manage their own application resources.
Reading
At Braventa Secrets Labs, a fictional company, data residency requirements state that Secret Manager secret payloads must be stored only in europe-west1 and europe-west4.
Reading
At Zephralis Systems, a fictional company, your organization recently enabled Security Command Center at the organization level.
Reading
At Junavora Audit Services, a fictional company, you manage security logs in your Google Cloud environment.
Reading
At Merovanta Secure Compute, a fictional company, you need to protect Compute Engine workloads against boot-level and kernel-level.
Reading
At Koralume Identity Group, a fictional company, your organization uses a third-party identity provider that currently authenticates users only with a username and password.
Reading
At Kestrava Identity Group, a fictional company, you are responsible for identification, authentication, and authorization for Google Cloud users.
Reading
At Veltrona Banking Group, a fictional company, you are migrating sensitive customer data to Google Cloud that is currently encrypted at rest in the on-premises environment.
Reading
At Velmora Cyberworks, a fictional company, you are migrating users to Google Cloud.
Reading
At Arclume Digital Services, a fictional company, your organization is developing an application that will serve both corporate users and members of the public.
Reading
At Nexavora Global, a fictional company, you want users to authenticate the Google Cloud CLI through a third-party SAML.
Reading
At LumoraEdge Technologies, a fictional company, your organization is deploying a large number of containerized applications to Google Kubernetes Engine (GKE).
Reading
At Juniperex Platform Services, a fictional company, you are creating an infrastructure CI/CD pipeline that will deploy hundreds of short-lived projects in your Google Cloud organization.
Reading
At Orbinara Networks, a fictional company, the security and network engineering teams need detailed visibility into network anomalies.
Reading
At Lumivex Hybrid Cloud, a fictional company, your organization has an on-premises data center connected to Google Cloud through Dedicated Interconnect.
Reading
At Orbelixa Identity Labs, a fictional company, you are onboarding new users into Cloud Identity and discover that some employees have created consumer Google Accounts using email addresses in the corporate domain.
Reading
At Isolatrix Networks, a fictional company, you are auditing network segmentation between Production and Non-Production Compute Engine environments in a custom VPC network.
Reading
At Ellumora Ventures, a fictional company, an office manager is responsible for matching payments to invoices and creating Cloud Billing budget alerts.
Reading
At Isolara Financial Networks, a fictional company, your organization operates in a regulated industry that requires encrypted private connectivity from on-premises data centers to Google Cloud.
Reading
At Junavora Cloud Governance, a fictional company, Google Cloud usage has grown substantially and many independent teams operate different resources across the organization.
Reading
At Arclune BioSystems, a fictional company, you manage a mission-critical workload in a highly regulated industry.
Reading
At Orvexia Holdings, a fictional company, your organization enforces an Organization Policy that prevents Compute Engine VM instances from receiving external IP addresses.
Reading
At Merovanta Batch Services, a fictional company, a batch job running on Compute Engine needs temporary write-only access to create objects in one Cloud Storage bucket.
Reading
Premium Set: 6 [ + Detailed Explanations]
At Merovex Batch Systems, a fictional company, you are developing an application that runs exclusively on Compute Engine VMs.
Reading
At Florvanta Analytics, a fictional company, your organization uses BigQuery to process highly sensitive structured datasets.
Reading
At Virelta Operations, a fictional company, your organization runs Compute Engine VMs with only private IP addresses in a VPC network.
Reading
At Halcyonex Regulated Cloud, a fictional company, you are deploying regulated workloads on Google Cloud.
Reading
At Koralyn Networks, a fictional company, you control network traffic for a folder that contains multiple projects and VPC networks.
Reading
At Terralune Networks, a fictional company, the security and network engineering teams must identify network anomalies and capture full packet payloads from selected VPC traffic for deep inspection.
Reading
At Isolume Keyworks, a fictional company, your organization requires full external custody of the keys used to protect data at rest in Google Cloud.
Reading
At Gravonex Software, a fictional company, your organization relies heavily on serverless applications and uses Cloud Build as the CI/CD build system for container images.
Reading
At Lumivara Commerce, a fictional company, your ecommerce organization stores sensitive customer data across multiple Google Cloud regions.
Reading
At Kestoria Workspace Group, a fictional company, your organization uses Google Workspace as the primary identity provider for Google Cloud.
Reading
At Floravex Commerce, a fictional company, your organization operates an internet-facing application behind a load balancer.
Reading
At Deltanova Cloud, a fictional company, you need to introduce VPC Service Controls and evaluate changes to service perimeters in existing environments without blocking access to resources while you test the configuration.
Reading
At Solvanta Storage Services, a fictional company, the storage team manages all product images in one Google Cloud project.
Reading
At Asterwyn Engineering, a fictional company, you plan to deploy cloud infrastructure by using a CI/CD cluster hosted on Compute Engine.
Reading
At Junavera Holdings, a fictional company, the organization is concerned that users could be tricked by a fake Google login page in a person-in-the-middle phishing attack.
Reading
At Virelune Workspace Security, a fictional company, your organization uses Google Workspace, Google Cloud, and a third-party SIEM.
Reading
At Halcyora Regulated Services, a fictional company, your organization operates in a highly regulated industry and uses many Google Cloud services.
Reading
At Prysmora Defense Technologies, a fictional company, your organization is migrating top-secret classified data to BigQuery and Cloud Storage.
Reading
At Bravelynx Enterprises, a fictional company, users have historically been created manually in Cloud Identity to access Google Cloud resources.
Reading
At Virelune Operations, a fictional company, the security team wants to reduce the external attack surface of a Linux bastion host by removing all public IP addresses.
Reading
At Evoranta DevOps, a fictional company, your organization hired a temporary partner team for an 18-month engagement.
Reading
At Isolavex Global, a fictional company, your multinational organization is rapidly expanding its Google Cloud footprint.
Reading
At Luminetra Security, a fictional company, your Security Operations Center currently detects network anomalies in VPC networks by using network logs.
Reading
At Cindervale Confidential Systems, a fictional company, a client requires end-to-end protection of application data in Google Cloud.
Reading
At Merovanta Networks, a fictional company, you need two isolated network segments: an untrusted segment and a trusted segment.
Reading
At Deltarix Web Security, a fictional company, you are implementing a new web application on Google Cloud that will be accessed from your on-premises network.
Reading
At Kestrelume Applications, a fictional company, you manage multiple internal-only applications that are hosted in separate Google Cloud projects.
Reading
At Luminetra PKI, a fictional company, the customer has an existing on-premises public key infrastructure with a corporate root certificate authority.
Reading
At Quoralyn DevOps, a fictional company, you are developing an incident-response plan.
Reading
At Junorix Security, a fictional company, a security audit found inconsistencies in a project's Identity and Access Management configuration.
Reading
At Nexloria Hybrid Cloud, a fictional company, you need to set up a Cloud Interconnect connection between the company's on-premises data center and a VPC network.
Reading
At Merovex Engineering, a fictional company, your organization is implementing separation of duties in a Google Cloud project.
Reading
At Cindervale Analytics, a fictional company, you are troubleshooting access-denied errors between Compute Engine instances connected to a Shared VPC and BigQuery datasets.
Reading
At Nexloria Networks, a fictional company, you recently joined the networking team supporting the organization's Google Cloud environment.
Reading
At Caldrixa Regulatory Services, a fictional company, you are responsible for ongoing security of a regulated Google Cloud environment.
Reading
At Deltavara Software, a fictional company, the organization uses top-level folders to separate production and development environments.
Reading
At Nolvanta Financial Analytics, a fictional company, your organization needs to process customer personally identifiable information for analytics while meeting strict privacy requirements.
Reading
At Auralith Secure Cloud, a fictional company, your organization has a highly sensitive project inside a VPC Service Controls perimeter.
Reading
At Bravionyx Storage, a fictional company, you need to enforce a security policy across the Google Cloud organization that prevents users from exposing Cloud Storage buckets or objects to unauthenticated public access.
Reading
At Calyxora Security, a fictional company, your Security Operations Center currently detects network anomalies in Google Cloud VPC networks by analyzing packet-header and flow information.
Reading
At Solvaris People Analytics, a fictional company, the organization wants to analyze how bonus compensation has changed over time to identify outliers and correct earning disparities.
Reading
At Quoravex Applications, a fictional company, you are maintaining a legacy Cloud Logging export configuration that writes application logs to Cloud Storage.
Reading
At Novalyx AI Systems, a fictional company, your organization has deployed a sensitive artificial-intelligence model in a central project.
Reading
At Gravora Storage, a fictional company, you are creating a Cloud Storage bucket protected with a customer-managed encryption key.
Reading
At Meridexis Web Services, a fictional company, your organization hosts a critical web application on Google Cloud.
Reading
At Solventa Security, a fictional company, the security operations team needs read-only access to security-related logs for all projects in the organization.
Reading
At Elunexa FleetOps, a fictional company, you manage a large fleet of Compute Engine virtual machines and have found that many VMs are not being patched consistently.
Reading
At Aurivexa Software, a fictional company, the organization develops software that incorporates many open source projects and is concerned about software supply-chain threats.
Reading
At Merovexa Financial, a fictional company, you are recommending an encryption-key service for data that will be migrated to Google Cloud.
Reading
At Terravex Application Labs, a fictional company, a new application consists of two Cloud Run services.
Reading
Announcements Reviews Live Classes Course Info
PreviousNext

Action Disabled

<strong>Please enable JavaScript in your browser settings and refresh this page.</strong>

error:

Printing Disabled

Exporting or saving lessons as PDF is not permitted.
Please study online in your KloudExams account.

KLOUDExams • Protected