- 302
- 650 472
IT Certification and Training Materials
India
เข้าร่วมเมื่อ 2 ต.ค. 2016
My Channel for Hyperscaler related trainings and Subsequent certifications. Follow the training materials and Certification practice questions to Pass the certifications.
Google Professional Cloud Security Engineer Practice Exam Questions 141 to 150
Below are the Practice Questions for Google Cloud Security Engineer Professional
Question #141
You have been tasked with configuring Security Command Center for your organization's Google Cloud environment. Your security team needs to receive alerts of potential crypto mining in the organization's compute environment and alerts for common Google Cloud misconfigurations that impact security. Which Security
Command Center features should you use to configure these alerts? (Choose two.)
Question #142
You have noticed an increased number of phishing attacks across your enterprise user accounts. You want to implement the Google 2-Step Verification (2SV) option that uses a cryptographic signature to authenticate a user and verify the URL of the login page. Which Google 2SV option should you use?
Question #143
Your organization hosts a financial services application running on Compute Engine instances for a third-party company. The third-party company's servers that will consume the application also run on Compute Engine in a separate Google Cloud organization. You need to configure a secure network connection between the Compute Engine instances. You have the following requirements:
· The network connection must be encrypted.
· The communication between servers must be over private IP addresses.
What should you do?
Question #144
Your company's new CEO recently sold two of the company's divisions. Your Director asks you to help migrate the Google Cloud projects associated with those divisions to a new organization node. Which preparation steps are necessary before this migration occurs? (Choose two.)
Question #145
You are a consultant for an organization that is considering migrating their data from its private cloud to Google Cloud. The organization's compliance team is not familiar with Google Cloud and needs guidance on how compliance requirements will be met on Google Cloud. One specific compliance requirement is for customer data at rest to reside within specific geographic boundaries. Which option should you recommend for the organization to meet their data residency requirements on Google Cloud?
Question #146
Your security team wants to reduce the risk of user-managed keys being mismanaged and compromised. To achieve this, you need to prevent developers from creating user-managed service account keys for projects in their organization. How should you enforce this?
Question #147
You are responsible for managing your company's identities in Google Cloud. Your company enforces 2-Step Verification (2SV) for all users. You need to reset a user's access, but the user lost their second factor for 2SV. You want to minimize risk. What should you do?
Question #148
Which Google Cloud service should you use to enforce access control policies for applications and resources?
Question #149
You want to update your existing VPC Service Controls perimeter with a new access level. You need to avoid breaking the existing perimeter with this change, and ensure the least disruptions to users while minimizing overhead. What should you do?
Question #150
Your organization's Google Cloud VMs are deployed via an instance template that configures them with a public IP address in order to host web services for external users. The VMs reside in a service project that is attached to a host (VPC) project containing one custom Shared VPC for the VMs. You have been asked to reduce the exposure of the VMs to the internet while continuing to service external users. You have already recreated the instance template without a public IP address configuration to launch the managed instance group (MIG). What should you do?
#Google_Professional_Cloud_Security_Engineer
#Exam_Actual_Questions
#clouds
#security
#certification
#gcp
Question #141
You have been tasked with configuring Security Command Center for your organization's Google Cloud environment. Your security team needs to receive alerts of potential crypto mining in the organization's compute environment and alerts for common Google Cloud misconfigurations that impact security. Which Security
Command Center features should you use to configure these alerts? (Choose two.)
Question #142
You have noticed an increased number of phishing attacks across your enterprise user accounts. You want to implement the Google 2-Step Verification (2SV) option that uses a cryptographic signature to authenticate a user and verify the URL of the login page. Which Google 2SV option should you use?
Question #143
Your organization hosts a financial services application running on Compute Engine instances for a third-party company. The third-party company's servers that will consume the application also run on Compute Engine in a separate Google Cloud organization. You need to configure a secure network connection between the Compute Engine instances. You have the following requirements:
· The network connection must be encrypted.
· The communication between servers must be over private IP addresses.
What should you do?
Question #144
Your company's new CEO recently sold two of the company's divisions. Your Director asks you to help migrate the Google Cloud projects associated with those divisions to a new organization node. Which preparation steps are necessary before this migration occurs? (Choose two.)
Question #145
You are a consultant for an organization that is considering migrating their data from its private cloud to Google Cloud. The organization's compliance team is not familiar with Google Cloud and needs guidance on how compliance requirements will be met on Google Cloud. One specific compliance requirement is for customer data at rest to reside within specific geographic boundaries. Which option should you recommend for the organization to meet their data residency requirements on Google Cloud?
Question #146
Your security team wants to reduce the risk of user-managed keys being mismanaged and compromised. To achieve this, you need to prevent developers from creating user-managed service account keys for projects in their organization. How should you enforce this?
Question #147
You are responsible for managing your company's identities in Google Cloud. Your company enforces 2-Step Verification (2SV) for all users. You need to reset a user's access, but the user lost their second factor for 2SV. You want to minimize risk. What should you do?
Question #148
Which Google Cloud service should you use to enforce access control policies for applications and resources?
Question #149
You want to update your existing VPC Service Controls perimeter with a new access level. You need to avoid breaking the existing perimeter with this change, and ensure the least disruptions to users while minimizing overhead. What should you do?
Question #150
Your organization's Google Cloud VMs are deployed via an instance template that configures them with a public IP address in order to host web services for external users. The VMs reside in a service project that is attached to a host (VPC) project containing one custom Shared VPC for the VMs. You have been asked to reduce the exposure of the VMs to the internet while continuing to service external users. You have already recreated the instance template without a public IP address configuration to launch the managed instance group (MIG). What should you do?
#Google_Professional_Cloud_Security_Engineer
#Exam_Actual_Questions
#clouds
#security
#certification
#gcp
มุมมอง: 103
วีดีโอ
Google Professional Cloud Security Engineer Practice Exam Questions 131 to 140
มุมมอง 81หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question #131 You perform a security assessment on a customer architecture and discover that multiple VMs have public IP addresses. After providing a recommendation to remove the public IP addresses, you are told those VMs need to communicate to external sites as part of the customer's typical operations. What shou...
Google Professional Cloud Security Engineer Practice Exam Questions 121 to 130
มุมมอง 77หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question #121 You manage your organization's Security Operations Center (SOC). You currently monitor and detect network traffic anomalies in your Google Cloud VPCs based on packet header information. However, you want the capability to explore network flows and their payload to aid investigations. Which Google Clou...
Google Professional Cloud Security Engineer Practice Exam Questions 111 to 120
มุมมอง 772 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question #111 Your company requires the security and network engineering teams to identify all network anomalies within and across VPCs, internal traffic from VMs to VMs, traffic between end locations on the internet and VMs, and traffic between VMs to Google Cloud services in production. Which method should you us...
Google Professional Cloud Security Engineer Practice Exam Questions 101 to 110
มุมมอง 622 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question #101 Your company wants to determine what products they can build to help customers improve their credit scores depending on their age range. To achieve this, you need to join user information in the company's banking app with customers' credit score data received from a third party. While using this raw d...
Google Professional Cloud Security Engineer Practice Exam Questions 91 to 100
มุมมอง 982 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question 91 You need to provide a corporate user account in Google Cloud for each of your developers and operational staff who need direct access to GCP resources. Corporate policy requires you to maintain the user identity in a third-party identity management provider and leverage single sign-on. You learn that a ...
Google Professional Cloud Security Engineer Practice Exam Questions 81 to 90
มุมมอง 782 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question 81 A customer is running an analytics workload on Google Cloud Platform (GCP) where Compute Engine instances are accessing data stored on Cloud Storage. Your team wants to make sure that this workload will not be able to access, or be accessed from, the internet. Which two strategies should your team use t...
Google Professional Cloud Security Engineer Practice Exam Questions 71 to 80
มุมมอง 692 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question 71 You will create a new Service Account that should be able to list the Compute Engine instances in the project. You want to follow Google-recommended practices. What should you do? Question 72 In a shared security responsibility model for IaaS, which two layers of the stack does the customer share respon...
Google Professional Cloud Security Engineer Practice Exam Questions 61 to 70
มุมมอง 552 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question 61 A customer wants to deploy a large number of 3-tier web applications on Compute Engine. How should the customer ensure authenticated network separation between the different tiers of the application? Question 62 A manager wants to start retaining security event logs for 2 years while minimizing costs. Y...
Google Professional Cloud Security Engineer Practice Exam Questions 51 to 60
มุมมอง 892 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Question 51 You want to limit the images that can be used as the source for boot disks. These images will be stored in a dedicated project. What should you do? Question 52 Your team needs to prevent users from creating projects in the organization. Only the DevOps team should be allowed to create projects on behalf...
Google Professional Cloud Security Engineer Practice Exam Questions 41 to 50
มุมมอง 1363 หลายเดือนก่อน
Below are the Practice Questions for Google Cloud Security Engineer Professional Q41. Your company runs a website that will store PII on Google Cloud Platform. To comply with data privacy regulations, this data can only be stored for a specific amount of time and must be fully deleted after this specific period. Data that has not yet reached the time period should not be deleted. You want to au...
Google Professional Cloud Security Engineer Practice Exam Questions 31 to 40
มุมมอง 1223 หลายเดือนก่อน
Google Professional Cloud Security Engineer Practice Exam Questions 31 to 40
Google Professional Cloud Security Engineer Practice Exam Questions 21 to 30
มุมมอง 853 หลายเดือนก่อน
Google Professional Cloud Security Engineer Practice Exam Questions 21 to 30
Google Professional Cloud Security Engineer Practice Exam Questions 11 to 20
มุมมอง 1133 หลายเดือนก่อน
Google Professional Cloud Security Engineer Practice Exam Questions 11 to 20
Google Professional Cloud Security Engineer Practice Exam Questions 1 to 10
มุมมอง 2013 หลายเดือนก่อน
Google Professional Cloud Security Engineer Practice Exam Questions 1 to 10
Q268.You manage a system that runs on stateless Compute Engine VMs and Cloud Run instances. Cloud Ru
มุมมอง 2.6K8 หลายเดือนก่อน
Q268.You manage a system that runs on stateless Compute Engine VMs and Cloud Run instances. Cloud Ru
Q267.You need to containerize a web application that will be hosted on Google Cloud behind a global
มุมมอง 1.7K8 หลายเดือนก่อน
Q267.You need to containerize a web application that will be hosted on Google Cloud behind a global
Q266. You are planning to migrate your on-premises data to Google Cloud. The data includes: 200 TB
มุมมอง 1.9K8 หลายเดือนก่อน
Q266. You are planning to migrate your on-premises data to Google Cloud. The data includes: 200 TB
Q265. You just installed the Google Cloud CLI on your new corporate laptop. You need to list the exi
มุมมอง 1.9K8 หลายเดือนก่อน
Q265. You just installed the Google Cloud CLI on your new corporate laptop. You need to list the exi
Q264. The core business of your company is to rent out construction equipment at large scale. All th
มุมมอง 1.9K8 หลายเดือนก่อน
Q264. The core business of your company is to rent out construction equipment at large scale. All th
Q263. Your customer wants you to create a secure website with autoscaling based on the compute insta
มุมมอง 1.8K8 หลายเดือนก่อน
Q263. Your customer wants you to create a secure website with autoscaling based on the compute insta
Q262. You need to extract text from audio files by using the Speech-to-Text API. The audio files are
มุมมอง 1.8K8 หลายเดือนก่อน
Q262. You need to extract text from audio files by using the Speech-to-Text API. The audio files are
Q261. You are in charge of provisioning access for all Google Cloud users in your organization. Your
มุมมอง 1.7K8 หลายเดือนก่อน
Q261. You are in charge of provisioning access for all Google Cloud users in your organization. Your
Q260. You are building a backend service for an ecommerce platform that will persist transaction dat
มุมมอง 1.6K8 หลายเดือนก่อน
Q260. You are building a backend service for an ecommerce platform that will persist transaction dat
Q259. Your Dataproc cluster runs in a single Virtual Private Cloud (VPC) network in a single subnet
มุมมอง 1.4K8 หลายเดือนก่อน
Q259. Your Dataproc cluster runs in a single Virtual Private Cloud (VPC) network in a single subnet
Q258. You are configuring service accounts for an application that spans multiple projects. Virtual
มุมมอง 1.8K8 หลายเดือนก่อน
Q258. You are configuring service accounts for an application that spans multiple projects. Virtual
Q257. After a recent security incident, your startup company wants better insight into what is happe
มุมมอง 1.7K8 หลายเดือนก่อน
Q257. After a recent security incident, your startup company wants better insight into what is happe
Q256. You have deployed an application on a Compute Engine instance. An external consultant needs to
มุมมอง 1.7K8 หลายเดือนก่อน
Q256. You have deployed an application on a Compute Engine instance. An external consultant needs to
Q254. Your company's security vulnerability management policy wants a member of the security team to
มุมมอง 1.8K8 หลายเดือนก่อน
Q254. Your company's security vulnerability management policy wants a member of the security team to
Q255. You want to enable your development team to deploy new features to an existing Cloud Run servi
มุมมอง 1.6K8 หลายเดือนก่อน
Q255. You want to enable your development team to deploy new features to an existing Cloud Run servi
Thank you very much 😍😍😍. I passed Google Cloud ACE using your " Google ACE" Playlist 🎉🎉
Do you by any chance have Google Professional Cloud Architect?
yes will post in some time
@@awstrainingmaterials1055 Please post if you have..I am writing on the 25th of September 2024🙏
Hi,Thank you so much for this.I managed to pass my GCP ACE exams using this content.
@@mamphomoneatse8295 yes, will post soon.
Are you guys sure about the correct answer? Because first logical step generally seems to be B. Table is overwritten each night. In the morning, charts are broken. So the problem is probably with the underlying data. Data is loaded by a nightly job. So first step - check the nightly job, is probably a good starting point. It should be quick and, in such cases, the underlying data is often the source of the problem. If you don't succeed here, you can go on to Cloud Logging and analyze Data Studio items, but I would say logical step is go and see if the nightly job was OK.
Thank you for highlighting this. yes a logical approach will be starting to look at the error in the Data. if we do not get anything there we should looks into the Data Studio. Please consider the Correct Answer as B. Apologies for the Wrong Answer.
What is the context here? Is that the first-ever instance to be created based on the template, or did it create (for example) 4 instances before and the 5th failed? I am asking because if it was the second case, then we could presume the template is fine and would rather lead to answer C? Ofc if it's the first instance and failed, then the template is probably wrong and needs to be replaced?
yes this is a tricky question. however I think answer is A. The option C talks about updating the instance template BUT as per google documentation you cannot delete an instance template nor update it if it is in use. So A is the only one the makes sense here. Also the same instance template was working before, so why would you need to edit it? the issue should be in the disk name.
can we go with option C? Coz creating app engine service kinda looks like roundabout which can be avoided.
The keyword is "No development cost". you can remove the options of BigQuery and Google App Engine.
The right answer is c.
why do you think so?
wrong description of the question
Not sure. what do you mean?
Hi sir/ mam Send All questions and answers in one PDF
please view the Playlist that should help you
Exam link please
I passed the test. When do I receive my badge? any idea
Honestly, I donot know how to get it.
Thanks man, you're a life saver !
Happy to help
Ho to apply for this accreditation exam ?? is there any prereq. , i mean from certification side ( any prior certs should be taken before ? )
There is no Prerequisite certification is required. I got the link of this as a Partner Program
Thank You For this Video Even Now it is helpful and I scored 87%
I am glad to hear thank you
Greetings, when taking the AWS Certified Cloud Practitioner certification exam, is it possible to copy and paste the names of some words to translate or look up their meaning?
No, you won't be allowed to copy into Search Engine of other Browser while taking the actual exam.
All the below certification are free or paid? please let me know -AWS Business Professional Accreditation -AWS Cloud Economics -AWS Technical Professional -AWS Training for Partners Foundation (Business) -AWS Training for Partners Foundation (Technical) Steps to access these certificates and where to register.
AWS techincal Professional
I did not have to pay for it as this came from Partner Program.
@@awstrainingmaterials1055 from where to get this partner program?
Thanks
how do you get the badge after that? I have passed but I can't see the badge
They r repeated questions?
Yes think so
Can you please upload a video of Business Accreditation assessment as well
th-cam.com/video/c7TC84c_ENs/w-d-xo.html
Hi Paul, I followed your tutorial and I got it almost to the first, I did not see the "inet6 addr: 2600: 1f16: 8a1: 2b00: xxxx: xxxx: xxxx: xxxx / 128 Scope: Global", but in the end I I agreed to do a "systemctl restart networking.service" and it started working perfectly. Later I had to create a DNS record type AAAA in the place where I registered the domain, it is different from the place where it is hosted, 30 minutes later it had already spread through the DNS servers of the planet and I could do tests from different sites, it works very all right. Thank you very much for explaining so in detail and for that wonderful calm when it comes to doing things. Health and luck. Paul( en Español )Hi Paul, he seguido tu tutorial y lo he conseguido casi a la primera, no me aparecía el "inet6 addr: 2600:1f16:8a1:2b00:xxxx:xxxx:xxxx:xxxx/128 Scope:Global", pero al final me acordé de hacer un "systemctl restart networking.service" y empezó a funcionar perfectamente.Mas tarde tuve que crear un registro DNS tipo AAAA en el lugar donde tengo registrado el dominio, es diferente del lugar donde está alojado, 30 minutos después ya se había propagado por los servidores DNS del planeta y pude hacer pruebas desde diferentes sitios, funciona muy bien.Muchas gracias por explicarlo tan detalladamente y por esa maravillosa calma a la hora de hacer las cosas.Salud y suerte. Paul
Hi Akash I'm not familiar with ipv6 but I followed your tutorial and in the end i didn't got the scope:global ipv6 to connect outside, just the scope:link and btw what is the egress only gateway? Thanks a lot!!!