Question 91

When creating a secure container image, which two items should you incorporate into the build if possible? (Choose two.)
  • Question 92

    You need to follow Google-recommended practices to leverage envelope encryption and encrypt data at the application layer.
    What should you do?
  • Question 93

    An organization's security and risk management teams are concerned about where their responsibility lies for certain production workloads they are running in Google Cloud Platform (GCP), and where Google's responsibility lies. They are mostly running workloads using Google Cloud's Platform-as-a-Service (PaaS) offerings, including App Engine primarily.
    Which one of these areas in the technology stack would they need to focus on as their primary responsibility when using App Engine?
  • Question 94

    An organization is starting to move its infrastructure from its on-premises environment to Google Cloud Platform (GCP). The first step the organization wants to take is to migrate its current data backup and disaster recovery solutions to GCP for later analysis. The organization's production environment will remain on-premises for an indefinite time. The organization wants a scalable and cost-efficient solution.
    Which GCP solution should the organization use?
  • Question 95

    Your team wants to make sure Compute Engine instances running in your production project do not have public IP addresses. The frontend application Compute Engine instances will require public IPs. The product engineers have the Editor role to modify resources. Your team wants to enforce this requirement.
    How should your team meet these requirements?