
Google CloudProfessional Cloud Security Engineer
Domain 3Objective 2
3.2 Managing Encryption at Rest, in Transit, and in Use PROFESSIONAL-CLOUD-SECURITY-ENGINEER Practice Questions (Page 3)
Part of the Ensuring data protection domain, which accounts for 23% of the PROFESSIONAL-CLOUD-SECURITY-ENGINEER exam.
36questions here
8free pages
12concepts
23%of the exam
Questions 11–15
- 11
Which type of data does Confidential Computing primarily protect?
Select an answer first - 12
A customer wants to use Cloud EKM with a supported external key management partner. What is the first step to enable this?
Select an answer first - 13
What is the primary purpose of Confidential Computing?
Select an answer first - 14
A customer wants to automatically change the encryption key used for new data every 90 days. What should they configure in Cloud KMS?
Select an answer first - 15
A customer needs to use encryption keys that are protected by a hardware security module (HSM) but does not want to manage the HSM infrastructure. Which Google Cloud service provides HSM-backed keys?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Google Cloud. “PROFESSIONAL-CLOUD-SECURITY-ENGINEER” is a trademark of its owner, used for identification only.