
Google CloudProfessional Security Operations Engineer
Domain 5Objective 1
5.1 Containing and Investigating Security Incidents PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice Questions (Page 4)
Part of the Incident response domain, which accounts for 21% of the PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER exam.
21questions here
5free pages
7concepts
21%of the exam
Questions 16–20
- 16
Which of the following is a key outcome of effective collaboration between security and engineering teams during incident response?
Select an answer first - 17
A security team is investigating a data exfiltration incident. They have identified a set of suspicious API calls in Cloud Audit Logs. The team needs to determine the full scope of the exfiltration, including which data was accessed and whether the attacker used multiple accounts. They have access to BigQuery and Google SecOps. What is the most efficient approach?
Select an answer first - 18
During an incident investigation, the security team discovers that a vulnerability in a custom application was exploited. The application team is responsible for the code. The security team needs to ensure that the vulnerability is fixed and that the detection is improved. What should the security team do?
Select an answer first - 19
Which Google Cloud security tool can be used to perform root cause analysis by correlating security findings and logs?
Select an answer first - 20
During an incident investigation, the security team identifies a suspicious binary on a compromised VM. They also have the hash of the binary and a network connection to an external IP. What is the most effective way to determine if this binary is known malware?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Google Cloud. “PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER” is a trademark of its owner, used for identification only.