
Google CloudProfessional Security Operations Engineer
Domain 5Objective 1
5.1 Containing and Investigating Security Incidents PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice Questions (Page 1)
Part of the Incident response domain, which accounts for 21% of the PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER exam.
21questions here
5free pages
7concepts
21%of the exam
Questions 1–5
- 1
What is the primary goal of isolating affected services and processes during incident response?
Select an answer first - 2
An incident responder needs to find all log entries related to a specific user's activity across multiple Google Cloud projects over the past 7 days. Which tool is most appropriate for this scope analysis?
Select an answer first - 3
Which Google Cloud security tool is specifically designed to provide a centralized view of security alerts and findings across an organization?
Select an answer first - 4
After a security incident, the security team identifies that the root cause was a misconfigured firewall rule that allowed excessive access. The network engineering team is responsible for firewall rules. The security team wants to ensure the misconfiguration is fixed and that similar misconfigurations are prevented in the future. What is the most effective way to achieve this?
Select an answer first - 5
An incident responder identifies a compromised compute instance that is communicating with a known command-and-control server. Which action is most directly an isolation step to contain the incident?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Google Cloud. “PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER” is a trademark of its owner, used for identification only.