nerdexam
GoogleGoogle

PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #40

PROFESSIONAL-CLOUD-SECURITY-ENGINEER Question #40: Real Exam Question with Answer & Explanation

Sign in or unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to reveal the answer and full explanation for question #40. The question stem and answer options stay visible for context.

Submitted by alyssa_d· Apr 18, 2026Ensuring data protection

Question

A customer wants to move their sensitive workloads to a Compute Engine-based cluster using Managed Instance Groups (MIGs). The jobs are bursty and must be completed quickly. They have a requirement to be able to manage and rotate the encryption keys. Which boot disk encryption solution should you use on the cluster to meet this customer's requirements?

Options

  • ACustomer-supplied encryption keys (CSEK)
  • BCustomer-managed encryption keys (CMEK) using Cloud Key Management Service (KMS)
  • CEncryption by default
  • DPre-encrypting files before transferring to Google Cloud Platform (GCP) for analysis

Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to see the answer

You've previewed enough free PROFESSIONAL-CLOUD-SECURITY-ENGINEER questions. Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Encryption#Cloud KMS#Compute Engine#Key Management
Full PROFESSIONAL-CLOUD-SECURITY-ENGINEER PracticeBrowse All PROFESSIONAL-CLOUD-SECURITY-ENGINEER Questions