
Google CloudProfessional Security Operations Engineer
Domain 2Objective 1
2.1 Ingesting Logs for Security Tooling PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice Questions (Page 3)
Part of the Data management domain, which accounts for 14% of the PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER exam.
29questions here
6free pages
8concepts
14%of the exam
Questions 11–15
- 11
A company is concerned about the cost of ingesting all logs into Google SecOps. They have a mix of high-value security logs and verbose application logs that are rarely used for detection. What is the most cost-effective approach that still maintains security visibility?
Select an answer first - 12
A company ingests logs from multiple sources: firewall, Windows Event Logs, and custom applications. They want to enable cross-source correlation in Google SecOps. What is the most important step to achieve this?
Select an answer first - 13
A security analyst is evaluating a Google SecOps parser for a new log source. The parser is listed as 'beta' and does not extract all fields correctly. The analyst needs to use the logs for detection. What should the analyst do?
Select an answer first - 14
What is the goal of data normalization in Google SecOps?
Select an answer first - 15
In Google SecOps, what is the purpose of a parser?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Google Cloud. “PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER” is a trademark of its owner, used for identification only.