🔥 40% Off Crucial Exams Memberships — Deal ends today!

9 minutes, 57 seconds remaining!

GCP Professional Cloud Security Engineer Practice Question

Your company runs hundreds of Google Cloud projects. VPC Flow Logs, Firewall Rules Logging, and Cloud IDS are enabled everywhere, and an organization-level log retention policy already applies through a centralized Cloud Logging bucket. Security operations engineers now request the ability to run ad-hoc SQL joins that correlate findings from Cloud IDS with VPC Flow Logs across all projects. You must satisfy this request while 1) re-using existing Cloud Logging access controls, 2) avoiding the overhead of managing separate analytical storage, and 3) keeping additional storage costs to a minimum. What should you do?

  • Stream all network logs to Pub/Sub and process them with a Dataflow pipeline that writes into a manually managed BigQuery dataset; have the SOC query the dataset with SQL.

  • Forward network logs to Security Command Center and use its query interface to perform the required cross-log correlation analysis.

  • Create an aggregated sink at the organization level that routes all network logs into a new centralized log bucket and enable Log Analytics on that bucket; instruct SOC analysts to run SQL queries from Logs Explorer against the bucket.

  • Configure a project-level log sink in every project that exports network logs to a dedicated BigQuery dataset; grant the SOC BigQuery Data Viewer access so they can run SQL joins in the BigQuery console.

GCP Professional Cloud Security Engineer
Managing operations
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot