GCP Professional Cloud Security Engineer Practice Question
Your company is migrating an on-premises payment processing application to Google Cloud. The workload will run on Linux virtual machines in Compute Engine, and compliance advisors require a clear RACI chart based on the Google Cloud shared responsibility model. To avoid gaps, you need to identify which security operation will still be entirely the customer's duty once the VMs are live on Google's infrastructure. Which task belongs to your team rather than to Google?
Control badge-based entry to the Google data centers that house the servers.
Replace failed disks in the physical storage arrays used by Compute Engine.
Regularly install security and kernel patches on the guest Linux operating systems.
Apply firmware updates to the KVM hypervisor running on Google's host machines.
Under the IaaS model that Compute Engine follows, Google secures the physical facilities, networking, and virtualization layers, including host firmware and hypervisor maintenance. Customers, however, remain fully responsible for anything inside the virtual machine they create. That includes hardening and regularly patching the guest operating system, configuring host-based firewalls, and protecting application data. Hardware maintenance, physical security, and hypervisor updates are handled by Google and are therefore outside the customer's operational scope. Consequently, ensuring that each VM's OS receives timely security and kernel updates is the customer's sole responsibility, while the other listed tasks fall under Google's domain.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Google Cloud shared responsibility model?
Open an interactive chat with Bash
What does 'hardening' a guest operating system involve?
Open an interactive chat with Bash
What tools can be used to automate Linux VM patch management on Compute Engine?
Open an interactive chat with Bash
What is the Google Cloud shared responsibility model?
Open an interactive chat with Bash
Why is it important for customers to patch guest operating systems in Google Cloud?
Open an interactive chat with Bash
What security tasks does Google handle for Compute Engine under the shared responsibility model?
Open an interactive chat with Bash
GCP Professional Cloud Security Engineer
Supporting compliance requirements
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .