GCP Professional Cloud Security Engineer Practice Question

Your financial-services security team is creating a controls matrix for auditors before moving a payment-processing workload to Compute Engine. The document must list activities that remain solely the customer's responsibility under Google Cloud's shared responsibility model for IaaS services. Which activity will your organization, and not Google, be accountable for implementing and maintaining?

  • Monitoring and replacing failed physical storage devices in the data centers where your persistent disks reside.

  • Patching the hypervisor layer that hosts your virtual machines to address newly disclosed vulnerabilities.

  • Encrypting data stored on persistent disks at the storage layer using Google-supplied AES-256 encryption.

  • Regularly applying security patches to the guest operating system and configuring host-based firewalls on each Compute Engine VM.

GCP Professional Cloud Security Engineer
Supporting compliance requirements
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot