GCP Professional Cloud Architect Practice Question

Your healthcare analytics team is moving a new application to Google Cloud. Patient records will arrive via HTTPS to a private GKE cluster, be archived in Cloud Storage, and later analyzed in BigQuery. No customer-managed or customer-supplied encryption keys, VPNs, or additional network controls have been planned. During a security review an external auditor asks how these data will be protected while stored and while travelling between Google services and data centers under this default design. Which statement accurately addresses the auditor's concern?

  • Traffic inside individual Google data centers is encrypted, but inter-region traffic travels unencrypted unless you create Private Service Connect endpoints and use Dedicated Interconnect.

  • Customer data is stored in plaintext unless Cloud KMS with customer-supplied keys is enabled, and network traffic remains unencrypted unless a Cloud VPN tunnel is configured.

  • Cloud Storage provides default encryption, but BigQuery tables are left unencrypted unless you explicitly enable customer-managed encryption keys for every dataset.

  • Google Cloud encrypts all customer data at rest with Google-managed AES keys and secures data in transit on both public TLS connections and Google's internal backbone by default, so no extra configuration is required for baseline encryption.

GCP Professional Cloud Architect
Designing for security and compliance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot