PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #289
Your organization is using Security Command Center Premium as a central tool to detect and alert on security threats. You also want to alert on suspicious outbound traffic that is targeting domains…
The correct answer is D. Create an egress firewall policy with Threat Intelligence as the destination. Attach this policy to all. https://cloud.google.com/firewall/docs/firewall-policies-rule-details#threat-intelligence-fw-policy Firewall policy rules let you secure your network by allowing or blocking traffic based on Google Threat Intelligence data. For egress rules, specify the destination by using one…
Question
Options
- ACreate a DNS Server Policy in Cloud DNS and turn on logs. Attach this policy to all Virtual Private
- BForward all logs to Chronicle Security Information and Event Management. Create an alert for
- CCreate a Cloud Intrusion Detection endpoint. Connect this endpoint to all Virtual Private Cloud
- DCreate an egress firewall policy with Threat Intelligence as the destination. Attach this policy to all
How the community answered
(48 responses)- A6% (3)
- B4% (2)
- C19% (9)
- D71% (34)
Explanation
https://cloud.google.com/firewall/docs/firewall-policies-rule-details#threat-intelligence-fw-policy Firewall policy rules let you secure your network by allowing or blocking traffic based on Google Threat Intelligence data. For egress rules, specify the destination by using one or more destination Google Threat Intelligence lists.
Topics
Community Discussion
No community discussion yet for this question.