GCP Professional Cloud Security Engineer Practice Question

An online banking platform subject to GDPR must process personal data exclusively within Germany. Their risk-analytics application requires 64 vCPUs, 512 GB of RAM, and must run on Google Confidential VMs for in-memory encryption. As the security engineer, which Compute Engine deployment best satisfies both the compliance mandate and the technical requirements while keeping management effort low?

  • Provision a GKE Autopilot cluster in europe-west3 with shielded nodes and auto-provisioned node pools.

  • Deploy the service on App Engine flexible environment in the europe-west EU multi-region and encrypt data at rest with customer-managed keys.

  • Create a Compute Engine n2d-highmem-64 Confidential VM in europe-west3 and enforce the gcp.resourceLocations organization policy to restrict all projects to that region.

  • Create a Compute Engine n2-highmem-64 Confidential VM in europe-west1 and protect the project with VPC Service Controls to prevent data egress.

GCP Professional Cloud Security Engineer
Supporting compliance requirements
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot