nerdexam
Google

PROFESSIONAL-DATA-ENGINEER · Question #379

You migrated your on-premises Apache Hadoop Distributed File System (HDFS) data lake to Cloud Storage. The data scientist team needs to process the data by using Apache Spark and SQL. Security…

The correct answer is D. Create a new Cloud KMS key. Create a new Cloud Storage bucket configured to use the new key as the default CMEK key. Copy all objects from the old. Explanation/Reference: KMS key in the copy command. bucket to the new bucket without specifying a key. Explanation/Reference:

Submitted by skyler.x· Mar 30, 2026Designing data processing systems

Question

You migrated your on-premises Apache Hadoop Distributed File System (HDFS) data lake to Cloud Storage. The data scientist team needs to process the data by using Apache Spark and SQL. Security policies need to be enforced at the column level. You need a cost-effective solution that can scale into a data mesh. What should you do?

Options

  • ARotate the Cloud KMS key version. Continue to use the same Cloud Storage bucket.
  • BCreate a new Cloud KMS key. Set the default CMEK key on the existing Cloud Storage bucket to the new one.
  • CCreate a new Cloud KMS key. Create a new Cloud Storage bucket. Copy all objects from the old bucket to the new one bucket while specifying the new Cloud
  • DCreate a new Cloud KMS key. Create a new Cloud Storage bucket configured to use the new key as the default CMEK key. Copy all objects from the old

How the community answered

(26 responses)
  • A
    8% (2)
  • B
    12% (3)
  • C
    4% (1)
  • D
    77% (20)

Explanation

Explanation/Reference: KMS key in the copy command. bucket to the new bucket without specifying a key. Explanation/Reference:

Topics

#CMEK#Cloud Storage#data lake migration#column-level security

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-DATA-ENGINEER Practice