🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 51 minutes remaining!

GCP Professional Cloud Security Engineer Practice Question

Your company stores sensitive healthcare records in a BigQuery dataset located in the europe-west1 multi-region. During a compliance audit, the security team is asked to demonstrate exactly which identities have executed SELECT queries against the dataset over the last 12 months. Admin Activity audit logs are already being exported to a central logging project, but the auditors state the evidence is insufficient. Which configuration change will most directly close this gap?

  • Enable Data Access audit logs for BigQuery at the required scope and update the centralized log sink to capture and retain those logs.

  • Increase Cloud Trace sampling to 100 percent so every BigQuery API call is traced and stored.

  • Activate Access Transparency for the organization to log any data access performed by Google personnel.

  • Turn on VPC Flow Logs for the subnet that serves BigQuery traffic and set retention to 400 days.

GCP Professional Cloud Security Engineer
Supporting compliance requirements
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot