🔥 40% Off Crucial Exams Memberships — Deal ends today!

2 hours, 27 minutes remaining!

GCP Professional Cloud Security Engineer Practice Question

A European bank runs its core payment system in Google Cloud projects under a production folder. Auditors must obtain tamper-evident records whenever Google staff access customer data or configurations in Cloud Spanner, BigQuery, or other services to satisfy GDPR accountability. All Cloud Audit Logs are already exported to an Object Versioning Cloud Storage bucket using an aggregated organization-level sink. Which action meets the requirement with the least additional operational overhead while keeping the audit trail in the same bucket?

  • Enable Access Transparency on each production project and create a dedicated logging sink per project that exports only Access Transparency entries to the bucket.

  • Enable Access Transparency at the organization level and rely on the existing aggregated log sink so the new entries are exported automatically.

  • Enable Access Approval on all production projects so auditors can review and approve every Google support access request before it occurs.

  • Grant auditors the Logs Explorer role (roles/logging.privateLogViewer) on every production project and instruct them to query for Google access in Admin Activity logs.

GCP Professional Cloud Security Engineer
Supporting compliance requirements
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot