Examtopics

Professional Cloud Security Engineer
  • Topic 1 Question 314

    Your organization operates in a highly regulated environment and has a stringent set of compliance requirements for protecting customer data. You must encrypt data while in use to meet regulations. What should you do?

    • Enable the use of customer-supplied encryption keys (CSEK) keys in the Google Compute Engine VMs to give your organization maximum control over their VM disk encryption.

    • Establish a trusted execution environment with a Confidential VM.

    • Use a Shielded VM to ensure a secure boot with integrity monitoring for the application environment.

    • Use customer-managed encryption keys (CMEK) and Cloud KSM to enable your organization to control their keys for data encryption in Cloud SQL.


    シャッフルモード