PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #117
Your company uses Google-managed images on Compute Engine VM instances extensively and has deployed Security Command Center Enterprise (SCCE) at the organization level Due to a recent increase in…
The correct answer is A. Enable VM Manager across your projects, and allow VM Manager to write findings to SCCE. Enabling VM Manager across your projects allows Google Cloud to automatically inventory VMs, scan for OS vulnerabilities, and write findings to Security Command Center Enterprise (SCCE). This managed solution provides comprehensive visibility into OS risks across your fleet…
Question
Your company uses Google-managed images on Compute Engine VM instances extensively and has deployed Security Command Center Enterprise (SCCE) at the organization level Due to a recent increase in vulnerability exploits, you want to improve visibility into operating system (OS) risks for all VMs in your organization. You want to use managed services to enhance security detection capabilities related to these vulnerabilities using minimal effort. What should you do?
Options
- AEnable VM Manager across your projects, and allow VM Manager to write findings to SCCE.
- BEnable Virtual Machine Threat Detection in SCCE, and allow it to generate findings.
- CSet up Google Open Source Vulnerability (OSV)-Scanner to scan all Compute Engine VMs.
- DCreate a custom Security Health Analytics (SHA) scanner to check the sourceImage of the
How the community answered
(30 responses)- A80% (24)
- B3% (1)
- C7% (2)
- D10% (3)
Explanation
Enabling VM Manager across your projects allows Google Cloud to automatically inventory VMs, scan for OS vulnerabilities, and write findings to Security Command Center Enterprise (SCCE). This managed solution provides comprehensive visibility into OS risks across your fleet with minimal setup and operational effort.
Topics
Community Discussion
No community discussion yet for this question.